cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.3.5.60 par Nicolas Coolman, Update du 12/02/2013
Run by Pomme at 12/02/2013 21:38:27
State : Version � jour.
UAC : Deactivate by program


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421

---\\ Windows Product Information
~ Langage: Fran�ais
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 9YQTR
Windows License : OK
~ Windows Remaining Initializations Number : 1
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3982 MB (38% free)
System Restore: Activ� (Enable)
System drive C: has 154 GB (51%) free of 300 GB

---\\ Logged in mode
~ Computer Name: POMME-PC
~ User Name: Pomme
~ All Users Names: UpdatusUser, Pomme, HomeGroupUser$, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Pomme\AppData\Roaming\
~ %Desktop% : C:\Users\Pomme\Desktop\
~ %Favorites% : C:\Users\Pomme\Favorites\
~ %LocalAppData% : C:\Users\Pomme\AppData\Local\
~ %StartMenu% : C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 154 Go of 300 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 267 Go of 373 Go)
E:\ CD-ROM drive (Free 0 Go of 1 Go)
F:\ CD-ROM drive (Not Inserted)
Q:\ Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : Out Of Date
~ Scan Security Center in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.19/10/2011 - 03:54:37.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.5121DB613E10A46A3C5085B479026AA7] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/11/2012 - 07:04:11.) -- C:\Windows\System32\wininet.dll [1392128]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d�ouverture de session Windows.) (.20/11/2010 - 14:25:32.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioth�que de licences.) (.20/11/2010 - 14:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.19/10/2011 - 04:02:02.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parall�le.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.19/10/2011 - 03:34:22.) -- C:\Windows\system32\Drivers\volsnap.sys [296320]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 3/581
~ Mes Favoris (My Favorites) : 1/8
~ Mes Documents (My Documents) : 2/304
~ Mon Bureau (My Desktop) : 1/46
~ Menu demarrer (Programs) : 1/34
~ Scan Hidden Files in 00mn 01s



---\\ Processus lanc�s
[MD5.2DC64A3446C8C6E020E781456B46573D] - (.Microsoft Corporation - Tablet PC Input Panel Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe [10240] [PID.2804]
[MD5.ED759B7FD51466447CC31CBE79B99050] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1121448] [PID.2900]
[MD5.D9AB754613208112B840C75B6762B909] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322176] [PID.1328]
[MD5.F48ECBB9771865CDC5435BD9AF4564F0] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe [17872] [PID.2584]
[MD5.64A7C84C0A8C79B22033F92D43919062] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [102568] [PID.3968]
[MD5.98CADC34741738CFC24F5CDFDAA408FA] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [162456] [PID.3996]
[MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.4124]
[MD5.829F6239B032C1DAA490B74442B4C89F] - (.Sony - Sony PC Companion.) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [446648] [PID.6752]
[MD5.E0935512DA2BFEB80271EA523FEF174A] - (.Creative Technology Ltd - Creative Software.) -- C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe [405504] [PID.6904]
[MD5.E3CD0A561F3AABE8607BF1474F4AE1DD] - (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe [1354736] [PID.6944]
[MD5.CA1DC0FFE7DD4D633421B8BC39ED5FFD] - (.Intel Corporation - Bluetooth Media Player Controller.) -- C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe [936272] [PID.6984]
[MD5.8D069E28B1C2DC1EBD95466FBACB114D] - (...) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe [67072] [PID.7104]
[MD5.4D1DA8CE5E364D22B4FF00F163194514] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608] [PID.6680]
[MD5.BC31B27061F27E8968CD0435C038F712] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720] [PID.7188]
[MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016] [PID.7200]
[MD5.B9BF29CC884BDD499803C3ED1F97FA41] - (.ASUSTeK Computer Inc. - A program that manage wireless devices in s.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072] [PID.7208]
[MD5.D36DCD24C810EE89360F64A4FB94AF88] - (.CANON INC. - Canon IJ Network Scan Utility.) -- C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [206240] [PID.7216]
[MD5.12916E0642E92561C98B18A2A2D01B14] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848] [PID.7224]
[MD5.D3AC38E80E928CC61A22650E04423BB8] - (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe [979328] [PID.7272]
[MD5.0654E4C1F597FC07D6FC7443D4F94840] - (.Google Inc. - Google Chrome.) -- C:\Users\Pomme\AppData\Local\Google\Chrome\Application\chrome.exe [1248208] [PID.8160]
[MD5.8906FFADDF99ACCB5C751E75E879481F] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [5676032] [PID.4480]
[MD5.A3626C6D3F2DC95497F3F61842D7FD89] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [80512] [PID.1672]
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1392]
[MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.2312]
[MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.2364]
[MD5.20DDC9CED8BC8390138F3187E0FF7411] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [174720] [PID.2648]
[MD5.52436245AAEF3B65DF7859949AB6A14E] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120] [PID.3088]
[MD5.A52EA1D8C2900055323C93DDB252A3DA] - (.Intel Corporation - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1014096] [PID.3112]
[MD5.EA75E0837B21B46E88102E23438FE2CB] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe [289408] [PID.3132]
[MD5.A5BEA0E5C297F5F3835638A87E512FBA] - (.Creative Technology Ltd - CTDevSrv Window Service Application.) -- C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe [61440] [PID.3240]
[MD5.896AA2F1D79662B17D5DBBE588E24E30] - (...) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280] [PID.3348]
[MD5.3C6630473DD42FFC57D9F5564F533127] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.3400]
[MD5.C3CDDD18F43D44AB713CF8C4916F7696] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [219496] [PID.3856]
[MD5.392450754E17FF778CBC5B9D20583AD1] - (.Intel Corporation - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1104208] [PID.4088]
[MD5.13693B6354DD6E72DC5131DA7D764B90] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [508776] [PID.3444]
[MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe [2488888] [PID.4960]
[MD5.AA11E1368EEB237DD100BAC6AFFE1C57] - (.ASUS - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113208] [PID.1736]
[MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe [174648] [PID.1032]
[MD5.72794D112CBAFF3BC0C29BF7350D4741] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe [822624] [PID.5392]
[MD5.091210450CA7CED08F360D9D7FEC5D11] - (.Intel Corporation - Bluetooth Media Service.) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1304912] [PID.6304]
[MD5.9A5C9CAB7D90D93D23047BA38BA5D3F0] - (.Valve Corporation - Steam Client Service (buildbot_winslave04_s.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [541608] [PID.3764]
[MD5.2B23FAA39D8F949ED5EEE03ECA50BCD5] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.7528]
[MD5.3C5405EF78576E8E4D791EB18F6856A8] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.5344]
~ Scan Processes Running in 00mn 02s



---\\ Google Chrome, D�marrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Pomme\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Pomme\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Pomme\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.jerecherche.org
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.jerecherche.org
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.jerecherche.org
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.jerecherche.org
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.jerecherche.org
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Trend Micro NSC BHO [64Bits] - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} . (.Trend Micro Inc. - Trend Micro NSC IE Plug-In.) -- C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft� Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.dll
O2 - BHO: TmBpIeBHO [64Bits] - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} . (.Trend Micro Inc. - Trend Micro Browser Plug-In (IE).) -- C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s



---\\ Applications d�marr�es par registre & par dossier (O4)
O4 - HKLM\..\Run: [VizorHtmlDialog.exe] . (.Trend Micro Inc. - Trend Titanium.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe
O4 - HKLM\..\Run: [Trend Micro Client Framework] . (.Trend Micro Inc. - Trend Micro Client Session Agent Monitor.) -- C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe
O4 - HKLM\..\Run: [Trend Micro Titanium] . (.Trend Micro Inc. - VizorShortCut Dynamic Link Library.) -- C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe
O4 - HKLM\..\Run: [BLEServicesCtrl] . (.Intel Corporation - Bluetooth LE Services Control Program.) -- C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe
O4 - HKLM\..\Run: [BTMTrayAgent] . (.Intel Corporation - Bluetooth Shell Extension.) -- C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Pomme\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHBE.exe
O4 - HKCU\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKCU\..\Run: [tempHome] C:\Users\Pomme\AppData\Local\Temp\racourci.vbe (.not file.)
O4 - HKCU\..\Run: [Chat-Landmessenger] C:\Users\Pomme\chat-land\messenger.exe (.not file.)
O4 - HKCU\..\Run: [SoftAuto.exe] . (.Creative Technology Ltd - Creative Software.) -- C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSPRP] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\APRP.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ecareme - AsusWebStorage.) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Wow6432Node\Run: [Wireless Console 3] . (.ASUSTeK Computer Inc. - A program that manage wireless devices in s.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Wow6432Node\Run: [IJNetworkScanUtility] . (.CANON INC. - Canon IJ Network Scan Utility.) -- C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe
O4 - HKLM\..\Wow6432Node\Run: [EEventManager] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
O4 - HKLM\..\Wow6432Node\Run: [amd_dc_opt] . (.AMD - AMD Dual-Core Optimizer.) -- C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Pomme\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHBE.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [tempHome] C:\Users\Pomme\AppData\Local\Temp\racourci.vbe (.not file.)
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [Chat-Landmessenger] C:\Users\Pomme\chat-land\messenger.exe (.not file.)
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [SoftAuto.exe] . (.Creative Technology Ltd - Creative Software.) -- C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKUS\S-1-5-21-1201743652-456381110-1477124030-1001\..\Run: [Steam] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - Global Startup: C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Pomme\Desktop\Chat-Land site de chat et de rencontre gratuit.URL . (...) -- C:\Users\Pomme\Desktop\Chat-Land site de chat et de rencontre gratuit.URL
O4 - Global Startup: C:\Users\Pomme\Desktop\ClipConverter.lnk . (.Lunaweb Ltd..) -- C:\Users\Pomme\AppData\Roaming\Lunaweb\ClipConverter\ClipConverter.exe
O4 - Global Startup: C:\Users\Pomme\Desktop\Comptes Ana�s - Raccourci.lnk . (...) -- C:\Users\Pomme\Documents\Comptes\Comptes Ana�s.xls
O4 - Global Startup: C:\Users\Pomme\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Pomme\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Pomme\Desktop\GreenLuma - Raccourci.lnk . (.Steam006.) -- C:\Program Files (x86)\Steam\GreenLuma.exe
O4 - Global Startup: C:\Users\Pomme\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Pomme\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
~ Scan Global Startup in 00mn 00s



---\\ Invisibilit� de l'ic�ne d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s



---\\ Boutons situ�s sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer � OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.)
O9 - Extra button: Notes &li�es OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.)
~ Scan IE Extra Buttons in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d�affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
~ Scan Winsock in 00mn 00s



---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] *.chat-land.org
~ Scan IE Zone Confiance in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{AB575EC9-EAC4-4E61-8EBD-3C520448CADC}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{AB575EC9-EAC4-4E61-8EBD-3C520448CADC}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS2\Services\Tcpip\..\{AB575EC9-EAC4-4E61-8EBD-3C520448CADC}: DhcpNameServer = 212.27.40.240 212.27.40.241
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 306.) - C:\Windows\system32\nvinitx.dll
~ Scan AppInit DLL in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Se (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe
O23 - Service: Intel� Centrino� Wireless Bluetooth� + H (AMPPALR3) . (.Intel Corporation - Intel� Centrino� Wireless Bluetooth� + High.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Intel Corporation - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Intel Corporation - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth (BTHSSecurityMgr) . (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CT Device Query service (CTDevice_Srv) . (.Creative Technology Ltd - CTDevSrv Window Service Application.) - C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Capability Licensing Service In (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.9.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Servic (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O23 - Service: Intel(R) PROSet/Wireless Zero Configurat (ZeroConfigService) . (.Intel� Corporation - Intel� PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
~ Scan Services in 00mn 04s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\AutoKMS.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1201743652-456381110-1477124030-1001Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1201743652-456381110-1477124030-1001UA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
[MD5.EC807244904FA170C299AB06D87FBDBE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.3B9ED0E96B9E83B2CF2A57AF0FD3BB09] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe
[MD5.F48ECBB9771865CDC5435BD9AF4564F0] [APT] [ASUS Quick Gesture] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
[MD5.107DCA9FE75CAD5BED0EA9D2CB80440C] [APT] [ASUS Quick Gesture (x64)] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe
[MD5.ED759B7FD51466447CC31CBE79B99050] [APT] [ASUS USB Charger Plus] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
[MD5.D9AB754613208112B840C75B6762B909] [APT] [ATKOSD2] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
[MD5.07605ABEB10FC533881C91F19DECF69A] [APT] [AutoKMS] (...) -- C:\Windows\AutoKMS\AutoKMS.exe
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-1201743652-456381110-1477124030-1001Core] (.Google Inc..) -- C:\Users\Pomme\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-1201743652-456381110-1477124030-1001UA] (.Google Inc..) -- C:\Users\Pomme\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
[MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
~ Scan Scheduled Task in 00mn 03s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d�IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lanc�s au d�marrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (ATKWMIACPIIO) . (.ASUS - ATK WMIACPI Utility.) - C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-syst�me de mise en m�moire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (tmtdi) . (.Trend Micro Inc. - Trend Micro TDI Driver (amd64-fre).) - C:\Windows\System32\DRIVERS\tmtdi.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 00s



---\\ Logiciels install�s (O42)
O42 - Logiciel: 7-Zip 9.20 - (.Pas de propri�taire.) [HKLM][64Bits] -- 7-Zip
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- ABBYY FineReader 9.0 Sprint
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- {F9000000-0018-0000-0000-074957833700}
O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {D39F0676-163E-4595-A917-E28F99BBD4D2}
O42 - Logiciel: ASUS K45_K75_K95_Screensaver - (.ASUS.) [HKLM][64Bits] -- ASUS K45_K75_K95_Screensaver
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}
O42 - Logiciel: ASUS Virtual Touch - (.ASUS.) [HKLM][64Bits] -- {938CFBD4-0652-49E5-BB8B-153948865941}
O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Reader XI (11.0.01) - Fran�ais - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0
O42 - Logiciel: Batman : Arkham City� - (.WB Games.) [HKLM][64Bits] -- GFWL_{57520FA0-AC56-469B-9983-FF1000008300}
O42 - Logiciel: Batman : Arkham City� - (.WB Games.) [HKLM][64Bits] -- {57520FA0-AC56-469B-9983-FF1000008300}
O42 - Logiciel: Bubbletown - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115065740}
O42 - Logiciel: Canon IJ Network Scan Utility - (.Pas de propri�taire.) [HKLM][64Bits] -- Canon_IJ_Network_Scan_UTILITY
O42 - Logiciel: Canon IJ Network Tool - (.Pas de propri�taire.) [HKLM][64Bits] -- Canon_IJ_Network_UTILITY
O42 - Logiciel: Canon MP Navigator EX 3.0 - (.Pas de propri�taire.) [HKLM][64Bits] -- MP Navigator EX 3.0
O42 - Logiciel: Canon MP560 series MP Drivers - (.Pas de propri�taire.) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP560_series
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter
O42 - Logiciel: ClipConverter - (.Lunaweb.) [HKLM][64Bits] -- {D61442B3-97B4-4970-9F95-B38C9C6D9B84}
O42 - Logiciel: Creative Media Lite - (.Pas de propri�taire.) [HKLM][64Bits] -- Creative Media Lite
O42 - Logiciel: Creative Software Update - (.Creative Technology Ltd..) [HKLM][64Bits] -- {86604C06-DA30-425E-AECE-47304FE81C45}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
O42 - Logiciel: Deadtime Stories - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-118716773}
O42 - Logiciel: Download Navigator - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {E728441A-7820-4B1C-87C9-DE7BE37B2953}
O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}
O42 - Logiciel: Dream Vacation Solitaire - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111249233}
O42 - Logiciel: Dual-Core Optimizer - (.AMD.) [HKLM][64Bits] -- {9FD6F1A8-5550-46AF-8509-271DF0E768B5}
O42 - Logiciel: EPSON SX440 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX440 Series
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner
O42 - Logiciel: ETDWare PS/2-X64 10.5.9.0 - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}
O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3E31400D-274E-4647-916C-2CACC3741799}
O42 - Logiciel: Farm Frenzy 3 - Madagascar - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-119205603}
O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755}
O42 - Logiciel: Galapago - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}
O42 - Logiciel: Game Park Console - (.Oberon Media Inc..) [HKLM][64Bits] -- Game Park Console
O42 - Logiciel: Go Go Gourmet Chef of the Year - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115290153}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome
O42 - Logiciel: InstantOn for NB - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91}
O42 - Logiciel: Intel PROSet Wireless - (.Pas de propri�taire.) [HKLM][64Bits] -- ProInst
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2}
O42 - Logiciel: Intel(R) WiDi - (.Intel Corporation.) [HKLM][64Bits] -- {7FCB8D5D-9396-4D17-8CFA-349D6D49CD32}
O42 - Logiciel: Intel� PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {DF7756DD-656A-45C3-BA71-74673E8259A9}
O42 - Logiciel: Intel� Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {09536BA1-E498-4CC3-B834-D884A67D7E34}
O42 - Logiciel: Java 7 Update 9 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217007FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: KompoZer 0.8b3 - (.KompoZer.) [HKLM][64Bits] -- {20aa4150-b5f4-11de-8a39-0800200c9a66}_is1
O42 - Logiciel: MP3 Player Recovery Tool - (.Creative Labs.) [HKLM][64Bits] -- MP3 Player Recovery Tool_is1
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: Mahjong Memoirs - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117948443}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {F2508213-9989-4E85-A078-72BE483917EF}
O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {C78D3032-9DFD-41D0-9DE9-58EAE750CBA4}
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Mises � jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: NVIDIA Logiciel syst�me PhysX 9.12.0604 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {2FDD750F-49B7-40C1-9D5E-D2955BC0E2D8}
O42 - Logiciel: NVIDIA Pilote graphique 306.97 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3
O42 - Logiciel: Plants vs Zombies - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117080787}
O42 - Logiciel: Rayman Origins - (.Ubisoft.) [HKLM][64Bits] -- {DE491AB9-1D47-4FED-A8F5-4D4325B2EB4B}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: SceneSwitch - (.ASUS.) [HKLM][64Bits] -- {5172E572-C175-4F80-A6D5-5CB45826AD61}
O42 - Logiciel: Sony Ericsson Update Engine - (.Sony Ericsson Communications AB.) [HKLM][64Bits] -- Update Engine
O42 - Logiciel: Sony PC Companion 2.10.136 - (.Sony.) [HKLM][64Bits] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: Trend Micro Titanium Internet Security - (.Trend Micro Inc..) [HKLM][64Bits] -- {ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}
O42 - Logiciel: Trend Micro Titanium Internet Security - (.Trend Micro Inc..) [HKLM][64Bits] -- {ABBD4BA9-6703-40D2-AB1E-5BB1F7DB49A4}
O42 - Logiciel: Trine 2 - (.Pas de propri�taire.) [HKLM][64Bits] -- Trine 2_is1
O42 - Logiciel: Turbo Fiesta - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115320460}
O42 - Logiciel: VLC media player 2.0.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {19EA33FB-B34E-40EA-8B8A-61743AEB795A}
O42 - Logiciel: World of Goo - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-116672750}
O42 - Logiciel: World of Warcraft - (.Blizzard Entertainment.) [HKLM][64Bits] -- World of Warcraft
O42 - Logiciel: gedit 2.30.1 - (.GNOME.) [HKLM][64Bits] -- gedit_is1
O42 - Logiciel: �Torrent - (.BitTorrent Inc..) [HKLM][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\ABBYY]
[HKCU\Software\ASUS]
[HKCU\Software\ATK0100]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\BVRP Software]
[HKCU\Software\BitTorrent]
[HKCU\Software\Blizzard Entertainment]
[HKCU\Software\Canon]
[HKCU\Software\Caphyon]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Creative Tech]
[HKCU\Software\CyberLink]
[HKCU\Software\DT Soft]
[HKCU\Software\ECAREME]
[HKCU\Software\EPSON]
[HKCU\Software\Elantech]
[HKCU\Software\FLEXnet]
[HKCU\Software\Google]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lunaweb]
[HKCU\Software\Macromedia]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\SEIKO EPSON CORPORATION]
[HKCU\Software\Sony Ericsson]
[HKCU\Software\Sony]
[HKCU\Software\TrendMicro]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\Ubisoft]
[HKCU\Software\Valve]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\Zeon]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ASUS]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\CoreSecurity]
[HKLM\Software\DTS]
[HKLM\Software\Dolby]
[HKLM\Software\ECAREME]
[HKLM\Software\EPSON]
[HKLM\Software\EpsonNet]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Knowles]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\SonicFocus]
[HKLM\Software\Sonic]
[HKLM\Software\TrendMicro]
[HKLM\Software\TuneUp]
[HKLM\Software\Waves Audio]
[HKLM\Software\Wow6432Node\ABBYY]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\AMD]
[HKLM\Software\Wow6432Node\ASUS]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AsLdr]
[HKLM\Software\Wow6432Node\Blizzard Entertainment]
[HKLM\Software\Wow6432Node\Bunndle]
[HKLM\Software\Wow6432Node\Canon]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Creative Tech]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\DT Soft]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\ECAREME]
[HKLM\Software\Wow6432Node\EPSON]
[HKLM\Software\Wow6432Node\EpsonNet]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\MimarSinan]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Oberon Media]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\SEIKO EPSON CORPORATION]
[HKLM\Software\Wow6432Node\Sony]
[HKLM\Software\Wow6432Node\TuneUp]
[HKLM\Software\Wow6432Node\Ubisoft]
[HKLM\Software\Wow6432Node\Valve]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\Wow6432Node]
[HKLM\Software\Wow6432Node\trendmicro]
[HKLM\Software\Wow6432Node]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 27/12/2012 - 19:58:22 - [3,348] ----D C:\Program Files (x86)\7-Zip
O43 - CFD: 29/10/2012 - 19:23:14 - [173,312] ----D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 19/01/2013 - 17:27:11 - [119,659] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 31/12/2012 - 21:44:31 - [0,099] ----D C:\Program Files (x86)\AMD
O43 - CFD: 15/11/2012 - 18:02:17 - [1008,734] ----D C:\Program Files (x86)\ASUS
O43 - CFD: 18/10/2012 - 21:39:24 - [76,934] ----D C:\Program Files (x86)\Canon
O43 - CFD: 18/09/2012 - 21:57:17 - [6,757] ----D C:\Program Files (x86)\Cisco
O43 - CFD: 19/01/2013 - 17:27:11 - [357,872] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 20/12/2012 - 20:48:10 - [18,365] ----D C:\Program Files (x86)\Creative
O43 - CFD: 27/12/2012 - 20:16:51 - [26,650] ----D C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 29/10/2012 - 19:19:32 - [7,907] ----D C:\Program Files (x86)\epson
O43 - CFD: 29/10/2012 - 19:19:31 - [37,333] ----D C:\Program Files (x86)\EPSON Software
O43 - CFD: 09/02/2013 - 22:21:34 - [85,057] ----D C:\Program Files (x86)\gedit
O43 - CFD: 30/10/2012 - 20:50:32 - [78,053] ----D C:\Program Files (x86)\Google
O43 - CFD: 29/01/2013 - 13:17:48 - [82,741] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 07/11/2012 - 12:07:03 - [345,566] ----D C:\Program Files (x86)\Intel
O43 - CFD: 18/09/2012 - 21:59:41 - [70,627] ----D C:\Program Files (x86)\Intel Corporation
O43 - CFD: 13/12/2012 - 16:54:56 - [7,122] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 25/11/2012 - 13:29:27 - [121,165] ----D C:\Program Files (x86)\Java
O43 - CFD: 30/01/2013 - 07:48:12 - [22,831] ----D C:\Program Files (x86)\KompoZer
O43 - CFD: 15/11/2012 - 18:03:34 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 15/10/2012 - 20:41:02 - [38,002] ----D C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 23/09/2012 - 18:22:29 - [12,399] ----D C:\Program Files (x86)\Microsoft Application Virtualization Client
O43 - CFD: 31/12/2012 - 21:41:33 - [8,929] ----D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
O43 - CFD: 15/10/2012 - 20:44:40 - [955,493] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 02/10/2012 - 06:13:27 - [1,182] ----D C:\Program Files (x86)\Microsoft Security Client
O43 - CFD: 23/09/2012 - 19:08:32 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 15/10/2012 - 20:44:38 - [3,467] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 15/10/2012 - 20:44:38 - [0,757] ----D C:\Program Files (x86)\Microsoft Sync Framework
O43 - CFD: 15/10/2012 - 20:45:11 - [0,312] ----D C:\Program Files (x86)\Microsoft Synchronization Services
O43 - CFD: 15/10/2012 - 20:42:32 - [1,314] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 15/10/2012 - 20:44:38 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 15/10/2012 - 20:45:48 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 23/09/2012 - 18:13:26 - [109,430] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 18/09/2012 - 21:56:44 - [30,255] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 30/10/2012 - 14:55:24 - [96,692] ----D C:\Program Files (x86)\Sony
O43 - CFD: 30/10/2012 - 14:57:06 - [103,288] ----D C:\Program Files (x86)\Sony Ericsson
O43 - CFD: 12/02/2013 - 21:08:04 - [228,273] ----D C:\Program Files (x86)\Steam
O43 - CFD: 18/09/2012 - 21:56:07 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 15/10/2012 - 17:06:01 - [0,919] ----D C:\Program Files (x86)\uTorrent
O43 - CFD: 07/10/2012 - 17:57:52 - [92,145] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 27/09/2012 - 07:42:54 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 19/10/2011 - 05:22:00 - [329,419] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 27/09/2012 - 07:42:59 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 27/09/2012 - 07:42:57 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 27/09/2012 - 07:42:57 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 18/02/2011 - 21:09:10 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 27/09/2012 - 07:47:21 - [6,039] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 12/02/2013 - 21:38:36 - [11,466] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 29/10/2012 - 19:22:09 - [7,724] ----D C:\Program Files (x86)\Common Files\ABBYY
O43 - CFD: 19/01/2013 - 17:27:30 - [6,274] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 26/09/2012 - 21:43:53 - [1,870] ----D C:\Program Files (x86)\Common Files\Blizzard Entertainment
O43 - CFD: 19/09/2012 - 14:21:07 - [0,095] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 29/10/2012 - 19:17:40 - [1,609] ----D C:\Program Files (x86)\Common Files\EPSON
O43 - CFD: 18/09/2012 - 21:55:37 - [3,682] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 18/09/2012 - 21:49:50 - [0] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 18/09/2012 - 21:59:41 - [71,022] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 02/10/2012 - 19:16:54 - [1,184] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 15/10/2012 - 20:53:54 - [213,629] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 19/10/2011 - 05:26:30 - [0,338] ----D C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 18/09/2012 - 21:54:25 - [0,185] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 18/09/2012 - 22:01:45 - [0,187] ----D C:\Program Files (x86)\Common Files\SceneSwitch
O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 24/01/2013 - 22:47:20 - [0,517] ----D C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 15/11/2012 - 17:34:24 - [10,355] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 19/10/2011 - 05:11:54 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 29/10/2012 - 19:22:09 - [1,812] ----D C:\ProgramData\ABBYY
O43 - CFD: 19/01/2013 - 17:29:16 - [145,736] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 19/10/2011 - 05:34:31 - [20,323] ----D C:\ProgramData\Asus
O43 - CFD: 19/10/2011 - 05:25:11 - [0,002] ----D C:\ProgramData\ASUS WebStorage
O43 - CFD: 26/09/2012 - 21:05:48 - [134,637] ----D C:\ProgramData\Battle.net
O43 - CFD: 26/09/2012 - 21:43:53 - [0,544] ----D C:\ProgramData\Blizzard Entertainment
O43 - CFD: 26/09/2012 - 17:07:46 - [20,349] --H-D C:\ProgramData\CanonBJ
O43 - CFD: 18/10/2012 - 21:42:11 - [0,002] --H-D C:\ProgramData\CanonIJScan
O43 - CFD: 18/09/2012 - 13:42:12 - [4,685] ----D C:\ProgramData\ChangeFolderView
O43 - CFD: 27/12/2012 - 20:14:12 - [0,000] --H-D C:\ProgramData\Common Files
O43 - CFD: 20/12/2012 - 20:58:54 - [0,000] ----D C:\ProgramData\Creative
O43 - CFD: 23/12/2012 - 00:51:19 - [0,018] ----D C:\ProgramData\CyberLink
O43 - CFD: 15/10/2012 - 20:38:30 - [0,002] ----D C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 19/10/2011 - 05:27:00 - [562,558] ----D C:\ProgramData\Deadtime Stories
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 19/10/2011 - 05:11:26 - [18,933] ----D C:\ProgramData\Downloaded Installations
O43 - CFD: 31/12/2012 - 22:01:49 - [0,004] -SH-D C:\ProgramData\DSS
O43 - CFD: 29/10/2012 - 19:27:41 - [8,263] ----D C:\ProgramData\EPSON
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 19/10/2011 - 05:11:28 - [0,000] ----D C:\ProgramData\FLEXnet
O43 - CFD: 18/09/2012 - 13:39:12 - [1,058] ----D C:\ProgramData\FolderView
O43 - CFD: 18/09/2012 - 21:59:41 - [0,208] ----D C:\ProgramData\Intel
O43 - CFD: 31/12/2012 - 21:41:08 - [-1618,610] -S--D C:\ProgramData\Microsoft
O43 - CFD: 10/01/2013 - 15:00:06 - [0,062] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 19/01/2013 - 17:21:59 - [0] ----D C:\ProgramData\Nuance
O43 - CFD: 07/11/2012 - 16:29:35 - [8,076] ----D C:\ProgramData\NVIDIA
O43 - CFD: 18/09/2012 - 21:52:09 - [2,716] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 18/09/2012 - 22:00:28 - [0,003] ----D C:\ProgramData\P4G
O43 - CFD: 18/09/2012 - 21:57:48 - [0] ----D C:\ProgramData\Roaming
O43 - CFD: 18/09/2012 - 21:56:02 - [0,009] ----D C:\ProgramData\SonicFocus
O43 - CFD: 30/10/2012 - 14:55:24 - [14,568] ----D C:\ProgramData\Sony
O43 - CFD: 30/10/2012 - 14:57:38 - [237,574] ----D C:\ProgramData\Sony Ericsson
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 02/10/2012 - 19:16:55 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 18/09/2012 - 22:05:29 - [0,177] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 23/09/2012 - 17:02:07 - [23,820] ----D C:\ProgramData\Trend Micro
O43 - CFD: 27/12/2012 - 20:14:32 - [0,411] ----D C:\ProgramData\TuneUp Software
O43 - CFD: 18/09/2012 - 22:04:27 - [0] ----D C:\ProgramData\USBChargerPlus
O43 - CFD: 27/09/2012 - 08:27:08 - [0] ----D C:\ProgramData\VirtualizedApplications
O43 - CFD: 20/12/2012 - 20:48:13 - [3,208] --H-D C:\ProgramData\{26009715-9383-403E-996E-D70BE8109C3D}
O43 - CFD: 27/12/2012 - 20:14:12 - [23,027] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
O43 - CFD: 20/12/2012 - 20:45:38 - [0] ----D C:\ProgramData\{F40E9D30-5DFC-4B21-BFDB-A5CDEE6440A6}
O43 - CFD: 02/10/2012 - 15:40:52 - [11,062] ----D C:\Users\Pomme\AppData\Roaming\Acreon
O43 - CFD: 19/01/2013 - 17:28:26 - [0,074] ----D C:\Users\Pomme\AppData\Roaming\Adobe
O43 - CFD: 18/09/2012 - 13:41:58 - [0,000] ----D C:\Users\Pomme\AppData\Roaming\ASUS WebStorage
O43 - CFD: 18/10/2012 - 21:42:11 - [0,022] ----D C:\Users\Pomme\AppData\Roaming\Canon
O43 - CFD: 23/12/2012 - 00:51:13 - [0] ----D C:\Users\Pomme\AppData\Roaming\CyberLink
O43 - CFD: 15/10/2012 - 20:38:22 - [1,450] ----D C:\Users\Pomme\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 29/10/2012 - 19:45:46 - [0,007] ----D C:\Users\Pomme\AppData\Roaming\Epson
O43 - CFD: 18/09/2012 - 13:47:20 - [0,000] ----D C:\Users\Pomme\AppData\Roaming\FLEXnet
O43 - CFD: 09/02/2013 - 22:50:40 - [0,000] ----D C:\Users\Pomme\AppData\Roaming\gedit
O43 - CFD: 09/02/2013 - 22:45:59 - [0,000] ----D C:\Users\Pomme\AppData\Roaming\gtk-2.0
O43 - CFD: 18/09/2012 - 13:39:24 - [0] ----D C:\Users\Pomme\AppData\Roaming\Identities
O43 - CFD: 29/10/2012 - 19:17:52 - [0] ----D C:\Users\Pomme\AppData\Roaming\InstallShield
O43 - CFD: 18/09/2012 - 13:38:40 - [0,001] ----D C:\Users\Pomme\AppData\Roaming\Intel
O43 - CFD: 30/01/2013 - 07:48:23 - [0,298] ----D C:\Users\Pomme\AppData\Roaming\kompozer.net
O43 - CFD: 21/10/2012 - 13:18:14 - [114,486] ----D C:\Users\Pomme\AppData\Roaming\Lunaweb
O43 - CFD: 23/09/2012 - 16:45:47 - [0,000] ----D C:\Users\Pomme\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - 08:44:38 - [0] ----D C:\Users\Pomme\AppData\Roaming\Media Center Programs
O43 - CFD: 10/12/2012 - 18:56:25 - [19,901] -S--D C:\Users\Pomme\AppData\Roaming\Microsoft
O43 - CFD: 30/01/2013 - 07:48:23 - [0] ----D C:\Users\Pomme\AppData\Roaming\Mozilla
O43 - CFD: 18/09/2012 - 13:47:19 - [0,000] ----D C:\Users\Pomme\AppData\Roaming\Nuance
O43 - CFD: 31/12/2012 - 23:31:03 - [0] ----D C:\Users\Pomme\AppData\Roaming\NVIDIA
O43 - CFD: 27/12/2012 - 20:12:37 - [26,905] ----D C:\Users\Pomme\AppData\Roaming\OpenCandy
O43 - CFD: 22/10/2012 - 17:57:18 - [1,609] ----D C:\Users\Pomme\AppData\Roaming\SoftGrid Client
O43 - CFD: 19/09/2012 - 14:21:45 - [0] ----D C:\Users\Pomme\AppData\Roaming\TP
O43 - CFD: 03/01/2013 - 20:58:19 - [0,236] ----D C:\Users\Pomme\AppData\Roaming\Trine2
O43 - CFD: 27/12/2012 - 20:14:32 - [0,003] ----D C:\Users\Pomme\AppData\Roaming\TuneUp Software
O43 - CFD: 12/02/2013 - 20:12:53 - [3,831] ----D C:\Users\Pomme\AppData\Roaming\uTorrent
O43 - CFD: 10/02/2013 - 19:28:13 - [11,932] ----D C:\Users\Pomme\AppData\Roaming\vlc
O43 - CFD: 18/09/2012 - 13:47:16 - [0,144] ----D C:\Users\Pomme\AppData\Roaming\Zeon
O43 - CFD: 02/10/2012 - 15:42:37 - [0] ----D C:\Users\Pomme\AppData\Local\._Revolution_
O43 - CFD: 29/10/2012 - 19:22:40 - [1,831] ----D C:\Users\Pomme\AppData\Local\ABBYY
O43 - CFD: 19/01/2013 - 17:28:26 - [17,480] ----D C:\Users\Pomme\AppData\Local\Adobe
O43 - CFD: 18/09/2012 - 13:38:37 - [0] ----D C:\Users\Pomme\AppData\Local\Application Data
O43 - CFD: 23/09/2012 - 17:02:28 - [1,487] ----D C:\Users\Pomme\AppData\Local\Apps
O43 - CFD: 18/09/2012 - 13:38:41 - [0,000] ----D C:\Users\Pomme\AppData\Local\ASUS
O43 - CFD: 23/09/2012 - 17:03:53 - [0] ----D C:\Users\Pomme\AppData\Local\Deployment
O43 - CFD: 22/10/2012 - 00:00:16 - [0] ----D C:\Users\Pomme\AppData\Local\Diagnostics
O43 - CFD: 31/12/2012 - 21:44:22 - [1,009] ----D C:\Users\Pomme\AppData\Local\Downloaded Installations
O43 - CFD: 27/01/2013 - 15:41:42 - [0] ----D C:\Users\Pomme\AppData\Local\ElevatedDiagnostics
O43 - CFD: 30/10/2012 - 20:51:09 - [912,551] ----D C:\Users\Pomme\AppData\Local\Google
O43 - CFD: 18/09/2012 - 13:38:37 - [0] ----D C:\Users\Pomme\AppData\Local\Historique
O43 - CFD: 30/01/2013 - 07:48:23 - [2,529] ----D C:\Users\Pomme\AppData\Local\kompozer.net
O43 - CFD: 31/12/2012 - 22:00:20 - [347,382] ----D C:\Users\Pomme\AppData\Local\Microsoft
O43 - CFD: 21/10/2012 - 13:26:25 - [0,069] ----D C:\Users\Pomme\AppData\Local\Microsoft Help
O43 - CFD: 23/09/2012 - 17:40:02 - [0,039] ----D C:\Users\Pomme\AppData\Local\Power2Go
O43 - CFD: 27/12/2012 - 20:35:55 - [0,081] ----D C:\Users\Pomme\AppData\Local\SKIDROW
O43 - CFD: 19/09/2012 - 14:21:37 - [0,922] ----D C:\Users\Pomme\AppData\Local\SoftGrid Client
O43 - CFD: 12/02/2013 - 21:38:41 - [262,940] ----D C:\Users\Pomme\AppData\Local\Temp
O43 - CFD: 18/09/2012 - 13:38:37 - [0] ----D C:\Users\Pomme\AppData\Local\Temporary Internet Files
O43 - CFD: 30/01/2013 - 07:48:25 - [0,005] ----D C:\Users\Pomme\AppData\Local\VirtualStore
O43 - CFD: 30/09/2012 - 11:34:34 - [0] ----D C:\Users\Pomme\AppData\Local\{00AF8B99-5316-44E3-A147-81B87A8B2899}
O43 - CFD: 04/11/2012 - 13:53:10 - [0] ----D C:\Users\Pomme\AppData\Local\{06A1FC3B-1967-42AA-B100-5D5B71DAA083}
O43 - CFD: 05/12/2012 - 23:03:58 - [0] ----D C:\Users\Pomme\AppData\Local\{07236574-98DC-4700-BBA4-961B88032C7E}
O43 - CFD: 25/10/2012 - 18:10:32 - [0] ----D C:\Users\Pomme\AppData\Local\{088FF86B-35F3-47B4-A6FA-CA9D82C3C19B}
O43 - CFD: 30/09/2012 - 11:34:36 - [0] ----D C:\Users\Pomme\AppData\Local\{0966B739-F7AD-41AB-B535-22D5193B8171}
O43 - CFD: 07/11/2012 - 23:18:25 - [0] ----D C:\Users\Pomme\AppData\Local\{0CA4DE1F-B13A-47F8-9FF9-9E06BAC1DC83}
O43 - CFD: 10/11/2012 - 12:40:06 - [0] ----D C:\Users\Pomme\AppData\Local\{11653E10-E364-4177-B31F-2B6E1825D127}
O43 - CFD: 11/10/2012 - 16:42:12 - [0] ----D C:\Users\Pomme\AppData\Local\{20992FB0-A8B9-43AA-9F77-A194B1F31353}
O43 - CFD: 01/01/2013 - 12:21:00 - [0] ----D C:\Users\Pomme\AppData\Local\{258751E0-D92A-4D9D-B83E-0FBC78C09C9C}
O43 - CFD: 26/01/2013 - 12:07:45 - [0] ----D C:\Users\Pomme\AppData\Local\{31B34713-E97E-4A21-85AD-42CEF07A0CB4}
O43 - CFD: 26/10/2012 - 06:26:39 - [0] ----D C:\Users\Pomme\AppData\Local\{368C00F1-C12A-436E-A008-3789C33F1D3A}
O43 - CFD: 03/02/2013 - 11:09:50 - [0] ----D C:\Users\Pomme\AppData\Local\{40B21530-1878-42C4-8D41-EDDAC44CC461}
O43 - CFD: 30/10/2012 - 13:29:08 - [0] ----D C:\Users\Pomme\AppData\Local\{41813E0C-192D-4D39-806C-CC0D9BF97924}
O43 - CFD: 24/01/2013 - 11:20:48 - [0] ----D C:\Users\Pomme\AppData\Local\{4210E1AC-9C3E-40AD-8098-B7E1235F4A96}
O43 - CFD: 27/12/2012 - 13:10:11 - [0] ----D C:\Users\Pomme\AppData\Local\{426D5343-FE05-463B-A22F-BE0DCFC6BC9E}
O43 - CFD: 17/10/2012 - 07:49:30 - [0] ----D C:\Users\Pomme\AppData\Local\{444D8F18-D646-4421-9DE5-1554F606D3CC}
O43 - CFD: 24/01/2013 - 23:23:48 - [0] ----D C:\Users\Pomme\AppData\Local\{475DF0AE-C9F1-4531-A44F-0B0A3BEE2F63}
O43 - CFD: 02/12/2012 - 23:21:27 - [0] ----D C:\Users\Pomme\AppData\Local\{4B2F1EDA-59AD-40F0-85D2-89732A2D5A92}
O43 - CFD: 07/10/2012 - 10:26:54 - [0] ----D C:\Users\Pomme\AppData\Local\{596082FC-D438-4B12-BC45-B7532C7710B9}
O43 - CFD: 23/01/2013 - 23:20:36 - [0] ----D C:\Users\Pomme\AppData\Local\{5A7CDA90-B151-461B-98EF-2477C88B3745}
O43 - CFD: 15/10/2012 - 18:27:44 - [0] ----D C:\Users\Pomme\AppData\Local\{5CF202AA-6DBF-41DD-9187-4C8AD8C47DBB}
O43 - CFD: 03/11/2012 - 12:35:13 - [0] ----D C:\Users\Pomme\AppData\Local\{64FD6E1B-B342-4632-BFCD-0E161844B4FC}
O43 - CFD: 21/01/2013 - 11:22:12 - [0] ----D C:\Users\Pomme\AppData\Local\{6AD9A60E-5B0C-491E-8FCC-BCF79F08B58B}
O43 - CFD: 01/01/2013 - 12:20:28 - [0] ----D C:\Users\Pomme\AppData\Local\{6C58A282-C4B8-4A8B-8EC6-F7114B59F596}
O43 - CFD: 25/10/2012 - 06:10:07 - [0] ----D C:\Users\Pomme\AppData\Local\{726EFB3D-11B4-493B-AF46-07056555DAF0}
O43 - CFD: 22/10/2012 - 19:32:57 - [0] ----D C:\Users\Pomme\AppData\Local\{7EB06AAB-4CA5-4093-8814-6B3110757C00}
O43 - CFD: 05/02/2013 - 21:59:53 - [0] ----D C:\Users\Pomme\AppData\Local\{82E24F2F-EB2C-494E-9201-5DB3D6457C5D}
O43 - CFD: 03/12/2012 - 11:21:39 - [0] ----D C:\Users\Pomme\AppData\Local\{860CEBE0-32BB-401A-B249-6DB8100FCB54}
O43 - CFD: 31/10/2012 - 23:08:45 - [0] ----D C:\Users\Pomme\AppData\Local\{8893C5BF-877D-4257-B31A-4D8141E7E5FF}
O43 - CFD: 31/10/2012 - 11:08:23 - [0] ----D C:\Users\Pomme\AppData\Local\{88ADF122-61DB-4E42-8C5D-BFBDD89B71AD}
O43 - CFD: 21/11/2012 - 17:01:29 - [0] ----D C:\Users\Pomme\AppData\Local\{89C4214C-635B-431E-B45A-7048496BB5C4}
O43 - CFD: 27/10/2012 - 08:29:05 - [0] ----D C:\Users\Pomme\AppData\Local\{89DF9A76-2917-433A-AE1E-9D81510C1B5C}
O43 - CFD: 24/10/2012 - 15:33:20 - [0] ----D C:\Users\Pomme\AppData\Local\{8E3E9C32-4CC3-49F4-A459-5E605DE8CA5F}
O43 - CFD: 27/01/2013 - 13:40:07 - [0] ----D C:\Users\Pomme\AppData\Local\{8E57425E-9C69-4507-BCCD-B8E36F2405D9}
O43 - CFD: 03/01/2013 - 12:44:16 - [0] ----D C:\Users\Pomme\AppData\Local\{918A9A9E-BB38-44E4-ABA5-384773EC6B13}
O43 - CFD: 23/10/2012 - 11:56:01 - [0] ----D C:\Users\Pomme\AppData\Local\{91C0F9C5-D52F-426D-8F4F-941F9B34C205}
O43 - CFD: 06/02/2013 - 10:15:18 - [0] ----D C:\Users\Pomme\AppData\Local\{9580FACB-5669-4B54-AA21-9B6BC05F9EA4}
O43 - CFD: 22/11/2012 - 07:15:13 - [0] ----D C:\Users\Pomme\AppData\Local\{97EB55DC-9C90-4721-A0EF-807B14AF5C03}
O43 - CFD: 25/01/2013 - 18:13:23 - [0] ----D C:\Users\Pomme\AppData\Local\{9869FEB1-7ABC-43B9-B1B9-E3BB902555E0}
O43 - CFD: 12/02/2013 - 21:25:19 - [0] ----D C:\Users\Pomme\AppData\Local\{98ACDE8E-5BF8-491A-9BE9-EFE77D40956E}
O43 - CFD: 07/10/2012 - 22:49:45 - [0] ----D C:\Users\Pomme\AppData\Local\{99AEF707-2737-4B83-838C-0E5386251503}
O43 - CFD: 05/11/2012 - 09:32:47 - [0] ----D C:\Users\Pomme\AppData\Local\{9E3FEEC7-6C6F-4A88-A872-46B3A3E1D679}
O43 - CFD: 20/01/2013 - 13:09:48 - [0] ----D C:\Users\Pomme\AppData\Local\{A1F7A6F6-27D5-4A6D-89FE-A76749CEFD78}
O43 - CFD: 12/11/2012 - 09:13:29 - [0] ----D C:\Users\Pomme\AppData\Local\{A251CDF4-748F-4E24-9458-98D4890A280C}
O43 - CFD: 29/10/2012 - 11:01:43 - [0] ----D C:\Users\Pomme\AppData\Local\{A7BFB70E-5E28-4DE6-BFF4-0E09F5EC0ACB}
O43 - CFD: 08/10/2012 - 21:38:44 - [0] ----D C:\Users\Pomme\AppData\Local\{AAE2601E-15A5-4E30-92E8-D42FB403E2B9}
O43 - CFD: 03/11/2012 - 00:34:50 - [0] ----D C:\Users\Pomme\AppData\Local\{AB37759E-6F63-4AC6-A4B5-B16B7A7D97BC}
O43 - CFD: 31/12/2012 - 23:27:34 - [0] ----D C:\Users\Pomme\AppData\Local\{AC3DDCF4-DF47-43C7-A1E6-1F5D07739CD3}
O43 - CFD: 19/01/2013 - 23:45:36 - [0] ----D C:\Users\Pomme\AppData\Local\{B717C32C-6675-425F-A489-99FD00C4F77E}
O43 - CFD: 20/11/2012 - 20:06:34 - [0] ----D C:\Users\Pomme\AppData\Local\{BA1D4A3F-2931-4454-8431-EA40D8D2E371}
O43 - CFD: 18/01/2013 - 19:41:54 - [0] ----D C:\Users\Pomme\AppData\Local\{BAEDE934-5C21-4BBC-9C03-3D6C3587F05C}
O43 - CFD: 04/02/2013 - 17:51:23 - [0] ----D C:\Users\Pomme\AppData\Local\{BFF09B16-6F8A-4F99-969C-8819AFDCB9BA}
O43 - CFD: 06/12/2012 - 11:18:02 - [0] ----D C:\Users\Pomme\AppData\Local\{C1D34D7F-38E7-4A4D-B65C-5E9264C772F7}
O43 - CFD: 29/01/2013 - 22:39:54 - [0] ----D C:\Users\Pomme\AppData\Local\{C5813525-5F15-48EB-AC28-C5446CAF7087}
O43 - CFD: 07/11/2012 - 11:18:01 - [0] ----D C:\Users\Pomme\AppData\Local\{CC868D54-E5AA-41C9-AA73-3E7121F1AE2E}
O43 - CFD: 09/11/2012 - 07:26:07 - [0] ----D C:\Users\Pomme\AppData\Local\{CCA8C76E-245A-4BDB-9AF8-4A93C05DE0BB}
O43 - CFD: 01/02/2013 - 15:41:29 - [0] ----D C:\Users\Pomme\AppData\Local\{CCA905E9-0973-4F92-B923-214F2E43EC3A}
O43 - CFD: 01/11/2012 - 11:09:07 - [0] ----D C:\Users\Pomme\AppData\Local\{CD4900DB-1958-4F09-9115-D6FD76D8AF2F}
O43 - CFD: 03/10/2012 - 10:02:35 - [0] ----D C:\Users\Pomme\AppData\Local\{CDC1DD95-38D6-4BB6-8B68-4F5F3A1D636E}
O43 - CFD: 22/01/2013 - 23:13:06 - [0] ----D C:\Users\Pomme\AppData\Local\{D2B08370-2F80-418D-A02E-86BFF175AEA6}
O43 - CFD: 13/11/2012 - 17:11:00 - [0] ----D C:\Users\Pomme\AppData\Local\{D2FD3B3E-9B41-46F2-9CD0-B6A0C3B734DD}
O43 - CFD: 16/10/2012 - 12:04:30 - [0] ----D C:\Users\Pomme\AppData\Local\{D89F5D9D-449C-49A5-92A4-635CE63A7F14}
O43 - CFD: 06/11/2012 - 23:17:49 - [0] ----D C:\Users\Pomme\AppData\Local\{D940D3E9-107C-4D2E-A207-11FC20F311B3}
O43 - CFD: 27/10/2012 - 20:34:46 - [0] ----D C:\Users\Pomme\AppData\Local\{DAB7372D-4DF1-454E-BD24-776D99E9098F}
O43 - CFD: 02/10/2012 - 18:27:09 - [0] ----D C:\Users\Pomme\AppData\Local\{DBB45550-7CD0-4DC8-99F9-72DEDFEFE18C}
O43 - CFD: 09/11/2012 - 20:26:22 - [0] ----D C:\Users\Pomme\AppData\Local\{DE3FB9C8-F4B5-49BD-B0C5-1C4A67ADC8C8}
O43 - CFD: 23/09/2012 - 16:59:40 - [0] ----D C:\Users\Pomme\AppData\Local\{DE835E78-759D-4BF7-91C0-976BC424C774}
O43 - CFD: 02/11/2012 - 11:41:15 - [0] ----D C:\Users\Pomme\AppData\Local\{E3D586FD-937B-4A3C-AF8D-CEDC112DAEEA}
O43 - CFD: 07/02/2013 - 17:37:45 - [0] ----D C:\Users\Pomme\AppData\Local\{E44A5087-D8D3-4F0C-B02E-0BEC2C87E78C}
O43 - CFD: 08/11/2012 - 11:39:44 - [0] ----D C:\Users\Pomme\AppData\Local\{E5F644A4-6EB9-470C-8892-F8A9297D53BA}
O43 - CFD: 06/11/2012 - 11:17:37 - [0] ----D C:\Users\Pomme\AppData\Local\{EDF9FE7F-D862-4C4F-BC46-5E8AAF804E28}
O43 - CFD: 05/11/2012 - 23:17:25 - [0] ----D C:\Users\Pomme\AppData\Local\{F5EF6A0A-CC57-4C1B-B65D-CDC102E0D256}
O43 - CFD: 11/11/2012 - 16:11:09 - [0] ----D C:\Users\Pomme\AppData\Local\{F77B67A2-7C33-4628-A90C-DDA8F78417A7}
O43 - CFD: 11/11/2012 - 00:50:50 - [0] ----D C:\Users\Pomme\AppData\Local\{FD2F5F39-3EA2-4AF8-847F-DDF4E656E110}
O43 - CFD: 12/11/2012 - 21:13:42 - [0] ----D C:\Users\Pomme\AppData\Local\{FF48643A-F063-46FB-B198-F5934CE54731}
O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 23/09/2012 - 19:11:00 - [0,000] R---D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 21/10/2012 - 13:18:02 - [0,001] ----D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClipConverter
O43 - CFD: 29/10/2012 - 19:17:34 - [0,001] ----D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPSON Software
O43 - CFD: 12/01/2013 - 09:05:35 - [0,002] ----D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 15/11/2012 - 18:04:34 - [0,001] R---D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 18/09/2012 - 13:40:38 - [0,011] ----D C:\Users\Pomme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security
~ Scan Program Folder in 00mn 23s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.A69F4CC3C869234CA66F72B6E3A0B6D1] - 12/02/2013 - 21:21:46 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1891630]
O44 - LFC:[MD5.4AD3CDB1FCFB8136B8FCEDB7FC9F0E47] - 12/02/2013 - 21:14:34 . (...) -- C:\Windows\System32\perfc009.dat []
O44 - LFC:[MD5.19012C52D86C79FF04A34E345228AB20] - 12/02/2013 - 21:14:34 . (...) -- C:\Windows\System32\perfc00C.dat []
O44 - LFC:[MD5.DD1A828E7201FDF998B16AC95FF96BAC] - 12/02/2013 - 21:14:34 . (...) -- C:\Windows\System32\perfh009.dat []
O44 - LFC:[MD5.8BC649078B94511767F81AFF42A282FE] - 12/02/2013 - 21:14:34 . (...) -- C:\Windows\System32\perfh00C.dat []
O44 - LFC:[MD5.5A7BB54A994C07DC906C1807BA9307AC] - 12/02/2013 - 21:14:34 ----- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1694226]
O44 - LFC:[MD5.5A7BB54A994C07DC906C1807BA9307AC] - 12/02/2013 - 21:14:34 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1694226]
O44 - LFC:[MD5.4AD3CDB1FCFB8136B8FCEDB7FC9F0E47] - 12/02/2013 - 21:14:34 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [125026]
O44 - LFC:[MD5.19012C52D86C79FF04A34E345228AB20] - 12/02/2013 - 21:14:34 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [152738]
O44 - LFC:[MD5.DD1A828E7201FDF998B16AC95FF96BAC] - 12/02/2013 - 21:14:34 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [664012]
O44 - LFC:[MD5.8BC649078B94511767F81AFF42A282FE] - 12/02/2013 - 21:14:34 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [757170]
O44 - LFC:[MD5.3E9D211C838E1C1E6CA0C2AE45F66C53] - 12/02/2013 - 21:10:27 ---A- . (...) -- C:\Windows\setupact.log [60566]
O44 - LFC:[MD5.39CF8CD35D1B3CBFF67151FCF7D55FDC] - 12/02/2013 - 21:06:20 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.CB1FCD17722C7E0F2EE88836B63B45F8] - 12/02/2013 - 21:06:18 ---A- . (...) -- C:\Windows\MEMORY.DMP [598074530]
O44 - LFC:[MD5.94BCE5A03EF5F9340AD9095E0D409C82] - 30/01/2013 - 11:53:22 . (...) -- C:\Windows\System32\MpSigStub.exe []
O44 - LFC:[MD5.5C12C7EB236B65C0B202206ACD5FEFEC] - 29/01/2013 - 13:18:00 ---A- . (...) -- C:\Windows\DPINST.LOG [202690]
O44 - LFC:[MD5.267292589DABD52E45484A1B3D4F8F6F] - 19/01/2013 - 23:47:58 . (...) -- C:\Windows\System32\AutoRunFilter.ini []
O44 - LFC:[MD5.267292589DABD52E45484A1B3D4F8F6F] - 19/01/2013 - 23:47:58 ---A- . (...) -- C:\Windows\SysNative\AutoRunFilter.ini [2206]
O44 - LFC:[MD5.FEC0D974469B1C2FAFB7F6F1FFABC716] - 19/01/2013 - 23:47:53 . (...) -- C:\Windows\System32\ServiceFilter.ini [1694226]
O44 - LFC:[MD5.FEC0D974469B1C2FAFB7F6F1FFABC716] - 19/01/2013 - 23:47:53 ---A- . (...) -- C:\Windows\SysNative\ServiceFilter.ini [1721]
~ Scan Files in 00mn 13s



---\\ Op�rations et fonctions au d�marrage de Windows Explorer (O46)
O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook [64Bits] - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
~ Scan ShellExecuteHooks in 00mn 00s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l��diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ Scan Keys in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{5f5ca8f0-4ec4-11e2-8f85-685d4304bee6}\AutoRun\command. (.Frozenbyte - Trine 2 Setup.) -- E:\Setup.exe
O51 - MPSK:{a6e1f294-21f7-11e2-8d6e-685d4304bee6}\AutoRun\command. (...) -- G:\Startme.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\ACMON [Key] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
O53 - SMSR:HKLM\...\startupreg\ASUS Screen Saver Protector [Key] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe
O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (...) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\RTHDVCPL [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
~ Scan SMSR Keys in 00mn 00s



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Syst�me (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.16F6F6B7903B913AB41AB848C8BB5658] - 29/02/2012 - 19:08:34 ----- . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\Windows\SysWOW64\drivers\AiCharger.sys [17152]
~ Scan Drivers in 00mn 00s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.3.5 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 03/07/2009 - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys (ASMMAP64) .(.ASUS - Memory mapping Driver.) - LEGACY_ASMMAP64
O64 - Services: CurCS - 07/09/2011 - C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys (ATKWMIACPIIO) .(.ASUS - ATK WMIACPI Utility.) - LEGACY_ATKWMIACPIIO
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 17/09/2010 - C:\Windows\System32\DRIVERS\tmactmon.sys (tmactmon) .(.Trend Micro Inc. - TrendMicro Activity Monitor Module.) - LEGACY_TMACTMON
O64 - Services: CurCS - 17/09/2010 - C:\Windows\System32\DRIVERS\tmcomm.sys (tmcomm) .(.Trend Micro Inc. - TrendMicro Common Module.) - LEGACY_TMCOMM
O64 - Services: CurCS - 17/09/2010 - C:\Windows\System32\DRIVERS\tmevtmgr.sys (tmevtmgr) .(.Trend Micro Inc. - TrendMicro Event Management Module.) - LEGACY_TMEVTMGR
O64 - Services: CurCS - 17/09/2010 - C:\Windows\System32\DRIVERS\tmtdi.sys (tmtdi) .(.Trend Micro Inc. - Trend Micro TDI Driver (amd64-fre).) - LEGACY_TMTDI
~ Scan Services in 00mn 01s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Pomme\AppData\Local\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Pomme\AppData\Local\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Pomme\AppData\Local\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {557C21FE-7274-410D-853E-9ED4471BF193} [DefaultScope] - (jerecherche.org) - http://www.jerecherche.org
~ Scan Keys in 00mn 00s



---\\ Recherche des services d�marr�s par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d�acc�s distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l�application d�assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur h�te de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d�ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau � distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des th�mes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
~ Scan Services in 00mn 00s



---\\ Recherche particuliere � la racine de certains dossiers (O84)
[MD5.0D3B680986310AE5540578C0E481C6A0] [SPRF][06/10/2010] (...) -- C:\ProgramData\FullRemove.exe [131984]
[MD5.8390E3FF29B6C223A3039C4E339EC832] [SPRF][29/10/2012] (...) -- C:\Users\Pomme\AppData\Local\Temp\defaultCache.reg [1472412]
[MD5.BEB43F12E33B63594C924DB62CFE7C3C] [SPRF][27/12/2012] (.DT Soft Ltd - DAEMON Tools Lite Setup.) -- C:\Users\Pomme\AppData\Local\Temp\DTLite4461-0327.exe [14682176]
[MD5.EC3A1A84A0A407FE3985ED6F9A0CC436] [SPRF][27/09/2012] (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Users\Pomme\AppData\Local\Temp\jre-7u9-windows-i586-iftw.exe [895464]
[MD5.A876E5DD34259371C1AA5BC86D48E4D2] [SPRF][15/11/2012] (...) -- C:\Users\Pomme\AppData\Local\Temp\__PDFCORE_FMP.dat [126829]
[MD5.51687E46B122CAFBD9BA6BF8480E913C] [SPRF][12/02/2013] (...) -- C:\Users\Pomme\AppData\Roaming\sp_data.sys [380]
[MD5.3508AA430D53F53576ECE382A012A1BD] [SPRF][02/10/2012] (.Pas de propri�taire - WowMatrix 3.02 for Windows.) -- C:\Users\Pomme\Desktop\WowMatrix.exe [2852978]
~ Scan Files in 00mn 03s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "{2E0DFBD9-F3D3-477B-A24A-80BF4F9DDED6}" | In - Public - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: "{8824E6A9-C2DF-4DCF-8722-0D5F7EB70D23}" | In - Public - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: "{8B952B75-D137-49E5-AB93-EDDF949860F0}" | In - None - P17 - TRUE | .(.Pas de propri�taire - Wireless PAN DHCP and DNS Server.) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O87 - FAEL: "{C38EC7F4-3CDE-41F7-9CE7-2FA0141C4520}" | In - None - P17 - TRUE | .(.Intel Corporation - WiDiApp.) -- C:\Program Files (x86)\Intel Corporation\Intel WiDi\WiDiApp.exe
O87 - FAEL: "{76880609-64BF-4ED5-B963-D7BB1D9B5526}" | In - Private - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: "{67ABAB03-69C5-4356-973C-540EBB9FBEFD}" | In - Private - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: "{F0591AFC-B3F2-4B4F-B4A5-13F1EF9FB676}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{F906DC4D-4BD7-40DA-BEAD-32ECBF656553}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{CF84E4AB-B7F7-429C-9BC4-5714191DBAE5}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{24382A03-494F-4C95-AA2B-F17FF1CC871A}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "TCP Query User{5D8F07AA-74EB-43B9-B05B-069ED06C537F}D:\world of warcraft\launcher.patch.exe" |In - Private - P6 - TRUE | .(...) -- D:\world of warcraft\launcher.patch.exe (.not file.)
O87 - FAEL: "UDP Query User{566D64BC-D9C6-4396-A64A-436347785DF8}D:\world of warcraft\launcher.patch.exe" |In - Private - P17 - TRUE | .(...) -- D:\world of warcraft\launcher.patch.exe (.not file.)
O87 - FAEL: "{731D05D0-C120-4FF3-ADAC-5F563AF3FAD9}" |In - Private - P6 - TRUE | .(...) -- D:\World of Warcraft\Launcher.exe (.not file.)
O87 - FAEL: "{84ADA53A-1FD4-4CFB-A9E5-5F4886554F3F}" |In - Private - P17 - TRUE | .(...) -- D:\World of Warcraft\Launcher.exe (.not file.)
O87 - FAEL: "TCP Query User{5DE8428F-E7A8-4B4A-9DE1-5D298C31BAB0}D:\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe" |In - Private - P6 - TRUE | .(...) -- D:\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe (.not file.)
O87 - FAEL: "UDP Query User{E7E6ED6D-90C2-4636-8627-50612134AD28}D:\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe" |In - Private - P17 - TRUE | .(...) -- D:\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe (.not file.)
O87 - FAEL: "{7FE2B5A1-BF46-4B87-BEF5-AD9827DA0167}" | In - Private - P6 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
O87 - FAEL: "{4522555A-4DB3-4DDA-A619-1544A29AF101}" | In - Private - P17 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
O87 - FAEL: "{F9805EEF-C23B-4991-9751-4D1828BBE496}" | In - Private - P6 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe
O87 - FAEL: "{988BD711-1603-4687-B169-AEB84A90957C}" | In - Private - P17 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe
O87 - FAEL: "{B04CE50A-BBB2-4AD5-AA35-0D3839CE21AE}" | In - None - P6 - TRUE | .(.BitTorrent, Inc. - �Torrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
O87 - FAEL: "{0EC61126-D92F-4B60-AA9C-8A6B26F87E9A}" | In - None - P17 - TRUE | .(.BitTorrent, Inc. - �Torrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
O87 - FAEL: "{32BADFAD-F7E3-40FB-AAE3-A774C656A281}" |In - Private - P6 - TRUE | .(...) -- F:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.)
O87 - FAEL: "{6F2CA823-81EC-4A3E-A0C7-F66550EFD4A1}" |In - Private - P17 - TRUE | .(...) -- F:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.)
O87 - FAEL: "TCP Query User{8F927D90-D29F-4F6E-9C8A-69791950CB52}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Private - P6 - TRUE | .(.SEIKO EPSON CORPORATION.) -- C:\program files (x86)\epson software\event manager\eeven
O87 - FAEL: "UDP Query User{28CD1383-215A-4F96-887B-BB8CAB1B9973}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Private - P17 - TRUE | .(.SEIKO EPSON CORPORATION.) -- C:\program files (x86)\epson software\event manager\eeve
O87 - FAEL: "{40685FD8-1A9A-4007-927A-646C71948BB9}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
O87 - FAEL: "{3DA31AD5-C2B5-478C-8BA5-DB6FF8F5DA03}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
O87 - FAEL: "TCP Query User{FF942E2C-2019-4C66-AD10-4225D4CE58FC}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Public - P6 - TRUE | .(.SEIKO EPSON CORPORATION.) -- C:\program files (x86)\epson software\event manager\eevent
O87 - FAEL: "UDP Query User{6ED9BB7C-EABA-4580-A9E1-D0ADF4CBEF89}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Public - P17 - TRUE | .(.SEIKO EPSON CORPORATION.) -- C:\program files (x86)\epson software\event manager\eeven
O87 - FAEL: "TCP Query User{3821AE7C-EB75-4394-A454-8993290C07B8}C:\program files (x86)\java\jre7\bin\javaw.exe" | In - Private - P6 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre7\bin\javaw.exe
O87 - FAEL: "UDP Query User{03E9569D-0718-4E0F-9BDC-D652C298691F}C:\program files (x86)\java\jre7\bin\javaw.exe" | In - Private - P17 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre7\bin\javaw.exe
O87 - FAEL: "{02548CFE-B6A6-4353-8E3E-7C3099D947C0}" | In - Private - P6 - TRUE | .(...) -- D:\Jeux\Rayman Origins\Rayman Origins.exe
O87 - FAEL: "{79398429-9F9E-4FA5-9ECE-6B6493FE5F3A}" | In - Private - P17 - TRUE | .(...) -- D:\Jeux\Rayman Origins\Rayman Origins.exe
O87 - FAEL: "{FEDFC075-9E83-4C42-9CA2-9989ACD6F1E4}" | In - Private - P6 - TRUE | .(.Ubisoft - Autopatch system.) -- D:\Jeux\Rayman Origins\gu.exe
O87 - FAEL: "{0B97EC75-3198-496C-80AD-D81858B60908}" | In - Private - P17 - TRUE | .(.Ubisoft - Autopatch system.) -- D:\Jeux\Rayman Origins\gu.exe
O87 - FAEL: "{D4EA3E75-1355-4AEE-A95D-0748B8DBD802}" | In - Private - P6 - TRUE | .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{26340625-CF04-425D-B443-A87DE01627FF}" | In - Private - P17 - TRUE | .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "TCP Query User{7292874B-54D9-4231-9277-9C616DA0F84D}D:\jeux\trine 2\trine2_32bit.exe" | In - Private - P6 - TRUE | .(...) -- D:\jeux\trine 2\trine2_32bit.exe
O87 - FAEL: "UDP Query User{230C55F4-7C1B-4E53-B27D-A1A210801411}D:\jeux\trine 2\trine2_32bit.exe" | In - Private - P17 - TRUE | .(...) -- D:\jeux\trine 2\trine2_32bit.exe
O87 - FAEL: "{CB65F744-D5BF-4B07-81B3-4447BAEEA272}" | In - Private - P6 - TRUE | .(.Rocksteady Studios Ltd. - Batman: Arkham City.) -- D:\Jeux\Batman Arkham City\Binaries\Win32\BatmanAC.exe
O87 - FAEL: "{4C1622B2-B592-42B6-A201-B596EE42A71A}" | In - Private - P17 - TRUE | .(.Rocksteady Studios Ltd. - Batman: Arkham City.) -- D:\Jeux\Batman Arkham City\Binaries\Win32\BatmanAC.exe
~ Scan Firewall in 00mn 05s



---\\ Scan Additionnel (O88)
Database Version : v2.10682 - (12/02/2013)
Cl�s trouv�es (Keys found) : 4
Valeurs trouv�es (Values found) : 1
Dossiers trouv�s (Folders found) : 1
Fichiers trouv�s (Files found) : 0

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{557C21FE-7274-410D-853E-9ED4471BF193}] =>Hijacker.ChercheUS
[HKLM\Software\Wow6432Node\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}] =>Adware.AskSBAR
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS] =>Toolbar.Agent
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Run]:Chat-Landmessenger =>Hijacker.Agent
C:\Users\Pomme\AppData\Roaming\OpenCandy =>Adware.OpenCandy
~ Scan Additionnel in 00mn 23s



---\\ Product Upgrade Codes (O90)
O90 - PUC: "0000009F810000000000709475387300" . (.ABBYY FineReader 9.0 Sprint.) -- C:\Windows\Installer\{F9000000-0018-0000-0000-074957833700}\ARPPRODUCTICON.exe
O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office 2010.) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe
O90 - PUC: "02F12AEC4FBDC464B818828B05A8DFDD" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{CEA21F20-DBF4-464C-8B81-28B8508AFDDD}\fssicon.ico
O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico
O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "21F1DBD139DE0C947ACC65BCED841885" . (.ASUS LifeFrame3.) -- C:\Windows\Installer\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}\_853F67D554F05449430E7E.exe
O90 - PUC: "275E2715571C08F46A5DC54B8562DA16" . (.SceneSwitch.) -- C:\Windows\Installer\{5172E572-C175-4F80-A6D5-5CB45826AD61}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "3128052F989958E40A8727EB849371FE" . (.Microsoft Games for Windows - LIVE Redistributable.) -- C:\Windows\Installer\{F2508213-9989-4E85-A078-72BE483917EF}\GameForWindowsLiveRedist.exe
O90 - PUC: "3F7A4F31CBAE1624FAB6317177F77055" . (.Fast Boot.) -- C:\Windows\Installer\{13F4A7F3-EABC-4261-AF6B-1317777F0755}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "4DB6E0C21B5628E42BCA34FECFF801C0" . (.Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed.) -- C:\Windows\Installer\{2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}\IntelBluetoothICO
O90 - PUC: "4DD4C0257CB2B904AB841E4A8F2366D2" . (.Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology.) -- C:\Windows\Installer\{520C4DD4-2BC7-409B-BA48-E1A4F832662D}\IntelBluetoothICO
O90 - PUC: "50FA96906FF400C4496034952983EDD0" . (.ASUS Splendid Video Enhancement Technology.) -- C:\Windows\Installer\{0969AF05-4FF6-4C00-9406-43599238DE0D}\_853F67D554F05449430E7E.exe
O90 - PUC: "5E3E958AF26CAFB4FAD1B2590E1366FA" . (.ASUS USB Charger Plus.) -- C:\Windows\Installer\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}\_853F67D554F05449430E7E.exe
O90 - PUC: "6760F93DE36159549A712EF899BB4D2D" . (.ASUS AI Recovery.) -- C:\Windows\Installer\{D39F0676-163E-4595-A917-E28F99BBD4D2}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.01) - Fran�ais.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico
O90 - PUC: "76E045AFC590B1A479ABD445D7CEA94F" . (.ASUS Live Update.) -- C:\Windows\Installer\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}\MyIcon
O90 - PUC: "B476F94747628E7478C965620AB6A219" . (.InstantOn for NB.) -- C:\Windows\Installer\{749F674B-2674-47E8-879C-5626A06B2A91}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "BF33AE91E43BAE04B8A81647A3BE97A5" . (.Wireless Console 3.) -- C:\Windows\Installer\{19EA33FB-B34E-40EA-8B8A-61743AEB795A}\_853F67D554F05449430E7E.exe
O90 - PUC: "C7030BC4E565144468EBD02F4EBF28C8" . (.Microsoft Games for Windows Marketplace.) -- C:\Windows\Installer\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}\GameForWindowsLiveDash.exe
O90 - PUC: "D5D8BCF7693971D4C8AF43D9D694DC23" . (.Intel(R) WiDi.) -- C:\Windows\Installer\{7FCB8D5D-9396-4D17-8CFA-349D6D49CD32}\ARPPRODUCTICON.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "DD6577FDA6563C54AB174776E328959A" . (.Intel� PROSet/Wireless WiFi Software.) -- C:\Windows\Installer\{DF7756DD-656A-45C3-BA71-74673E8259A9}\ARPPRODUCTICON.exe
O90 - PUC: "E19212F84440D1B49B9F34077AE343D6" . (.WinFlash.) -- C:\Windows\Installer\{8F21291E-0444-4B1D-B9F9-4370A73E346D}\MyIcon
O90 - PUC: "E339C5BAD7C503D43B41C9384AB949EB" . (.ATK Package.) -- C:\Windows\Installer\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}\_2cd672ae.exe
O90 - PUC: "E7F34DE86F8A8984FA116B51F8E2FD49" . (.Epson Event Manager.) -- C:\Windows\Installer\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}\icon.exe
O90 - PUC: "F12DB8CE0AC0FBB4799DA4253B00141A" . (.ASUS Virtual Camera.) -- C:\Windows\Installer\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "F9A84C6AA49643243BAA2695B0669872" . (.Intel(R) Manageability Engine Firmware Recovery Agent.) -- C:\Windows\Installer\{A6C48A9F-694A-4234-B3AA-62590B668927}\AppIcon
O90 - PUC: "FB9326B958E40954D827153ED01B9AAA" . (.ASUS Power4Gear Hybrid.) -- C:\Windows\Installer\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}\_6FEFF9B68218417F98F549.exe
~ Scan Files in 00mn 00s



---\\ MyComputer Name Space (O92)
O92 - MNS: ASUS WebStorage Drive - {d6044399-0b9e-4084-a9ac-c4b7c7800fcf}
~ Scan MNS in 00mn 00s



---\\ Etat g�n�ral des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 14/05/2009 759048 | (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
SR - | Auto 18/12/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 11/02/2013 251248 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 04/03/2011 379520 | (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\system32\FBAgent.exe
SR - | Auto 09/01/2012 659968 | (AMPPALR3) . (.Intel Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
SS - | Demand 17/09/2010 267480 | (Amsp) . (.Trend Micro Inc..) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
SR - | Auto 21/11/2011 80512 | (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
SR - | Auto 17/02/2012 277120 | (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
SR - | Auto 21/11/2011 96896 | (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
SR - | Auto 22/02/2012 1014096 | (Bluetooth Device Monitor) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
SR - | Demand 22/02/2012 1304912 | (Bluetooth Media Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
SR - | Auto 22/02/2012 1104208 | (Bluetooth OBEX Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
SR - | Auto 12/01/2012 135952 | (BTHSSecurityMgr) . (.Intel(R) Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
SS - | Demand 10/10/2012 277024 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe
SR - | Auto 02/04/2007 61440 | (CTDevice_Srv) . (.Creative Technology Ltd.) - C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe
SR - | Auto 08/12/2011 618256 | (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
SS - | Demand 09/05/2011 136120 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - | Auto 03/02/2012 628448 | (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
SR - | Auto 128280 | (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
SR - | Auto 21/02/2012 161560 | (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
SR - | Auto 28/02/2012 277784 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SS - | Demand 273168 | (MyWiFiDHCPDNS) . (...) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
SR - | Auto 02/10/2012 891240 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SS - | Auto 30/08/2012 1258856 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
SR - | Auto 08/12/2011 148752 | (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
SS - | Demand 18/01/2012 155320 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
SR - | Demand 19/01/2013 541608 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - | Demand 17/09/2010 241488 | (TiMiniService) . (.Trend Micro Inc..) - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
SR - | Auto 28/02/2012 363800 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SS - | Demand 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SS - | Auto 08/12/2011 594704 | (ZeroConfigService) . (.Intel� Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
~ Scan Services in 00mn 01s



---\\ Liste des �mulateurs de CD/DVD (Hook du MBR)
O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
~ Scan Emulateurs in 00mn 01s



End of the scan (1333 lines in 01mn 38s)(0)

Publicité


Signaler le contenu de ce document

Publicité