cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.9.14.133 - Nicolas Coolman (10/09/2014)
~ Lancé par Pietro (16/09/2014 12:39:57)
~ Adresse du Site Web http://nicolascoolman.fr
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC):


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.17280
OBIE: Wacom WebTabletPlugin for Netscape v1.1.0.10
OBIE: Safari v5.34.57.2

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 3Q6C9
Windows License : OK
~ Windows Remaining Initializations Number : 2
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Avira Free Antivirus v14.0.6.570
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W7 (Deactivate)

---\\ Logiciels d'optimisation du système
CCleaner v3.23

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 15 Plugin
Adobe Reader XI - Français

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3893 MB (38% free)
System Restore: Activé (Enable)
System drive C: has 284 GB (31%) free of 912 GB

---\\ Mode de connexion au système
~ Computer Name: PIETRO-HP
~ User Name: Pietro
~ All Users Names: Pietro, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Pietro\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Pietro\AppData\Roaming\
~ %Desktop% : C:\Users\Pietro\Desktop\
~ %Favorites% : C:\Users\Pietro\Favorites\
~ %LocalAppData% : C:\Users\Pietro\AppData\Local\
~ %StartMenu% : C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 284 Go of 912 Go)
D: Hard drive, Flash drive, Thumb drive (Free 3 Go of 20 Go)
E: CD-ROM drive (Not Inserted)
F: CD-ROM drive (Not Inserted)
Q: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 44 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.39EBB9708453036A74C30C9A294023FF] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.18/08/2014 - 22:15:13.) -- C:\Windows\System32\wininet.dll [2310656]
[MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.04/03/2014 - 10:43:50.) -- C:\Windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.30/05/2014 - 07:45:52.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.24/01/2014 - 03:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/455
~ Mes musiques (My Musics) : 1/603
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/22
~ Mes Documents (My Documents) : 13/5258
~ Mon Bureau (My Desktop) : 1/34147
~ Menu demarrer (Programs) : 1/67
~ Hidden Files: Scanned in 01mn 29s



---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.2888]
[MD5.119B2523F93DA70C67B6E390B83B3F17] - (.CyberLink Corp. - HP MediaSmart TV Resident Program.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [427304] [PID.2124]
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe [136488] [PID.2448]
[MD5.1B31D1266691EDD4224B0036449F14B4] - (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [152872] [PID.3096]
[MD5.D41D8CD98F00B204E9800998ECF8427E] - (...) -- C:\Users\Pietro\AppData\Local\Temp\rundll74.exe [87561728] [PID.3208]
[MD5.4C8981727B06F718832DD3D42C9EB769] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [602168] [PID.3732]
[MD5.2AA5DD75EA1281432C40D22B5FD87D3A] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184] [PID.3824]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336] [PID.3880]
[MD5.3B5045DDD039FAB9782851BC486FD92B] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.3900]
[MD5.845EB283583BD3C89F09636A10114EF3] - (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [164656] [PID.3908]
[MD5.7A5EB602B07F3412EBB5D2E94E21754A] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\Pietro\AppData\Roaming\Dropbox\bin\Dropbox.exe [36414496] [PID.4048]
[MD5.96E8CF4D3731D90058DE39A3BECAD707] - (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe [1201448] [PID.6744]
[MD5.AC08A03D7E579E2903925736E7AB48F2] - (.Google Inc. - Google Chrome.) -- C:\Users\Pietro\AppData\Local\Google\Chrome\Application\chrome.exe [852808] [PID.536]
[MD5.4D4A404F08012AD3C2F5753D37F5AE21] - (.Google - Hangouts Plugin.) -- C:\Users\Pietro\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe [64384] [PID.3516]
[MD5.F8BFA29D0F02CB800F48CD90091B95B8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8104448] [PID.7196]
[MD5.0327A6CE0934C324E3E82920E9EC0EE4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160] [PID.1772]
[MD5.B1EA9681502EE57F87DB71D726288A5B] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.1936]
[MD5.0327A6CE0934C324E3E82920E9EC0EE4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160] [PID.2004]
[MD5.6B73E94F9FE82D45781B8C8A09483082] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1068]
[MD5.CA793DCC1D5F619021EF1D37CC7A831E] - (.EasyBits Software AS - Shared EasyBits services for Windows.) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232] [PID.2464]
[MD5.881F74074963CDAD8C475D09DC3A0BB6] - (.Hewlett-Packard Company - HP Quick Synchronization Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [92216] [PID.2568]
[MD5.5AA89E152634954E15E9DB265C6A8557] - (.Pas de propriétaire - HPWMISVC Application.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [27192] [PID.2596]
[MD5.07B1888209C54B675FFCCBDE9F06D2C6] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2644]
[MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.2768]
[MD5.E0D7732F2D2E24B2DB3F67B6750295B8] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512] [PID.2820]
[MD5.F5CE2FAE5D119A978745A6AB632564FD] - (.Robert McNeel & Associates - McNeelUpdateService.) -- C:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe [68192] [PID.2840]
[MD5.3A2E85F7D90D15460C337CE80C2E3B29] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76888] [PID.4012]
[MD5.A6A7AD767BF5141665F5C675F671B3E1] - (.Protexis Inc. - PsiService PsiService.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [185632] [PID.4064]
[MD5.39B1D0A636A400304565D4521FAD6D77] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [207528] [PID.4140]
[MD5.E04265F219137968C6AB90F8B95F7FEB] - (.Pas de propriétaire - CLCapSvc Module.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe [284048] [PID.4560]
[MD5.643FD8C32B18C81E625F853934D35DCD] - (.Pas de propriétaire - CLSched Module.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVSched.exe [157072] [PID.4632]
[MD5.05ABC09DC0DFA5DF79A0BB39F60636B7] - (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048] [PID.4876]
[MD5.77C5A741A7452812F278EF2C18478862] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [523944] [PID.4384]
[MD5.FD557A50A65E44041CD2FCEF4BEB04DB] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe [822504] [PID.5556]
[MD5.FE51B163A618B1CBF015485D21C1BC68] - (.Hewlett-Packard Company - hpqwmiex Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [665656] [PID.5788]
[MD5.193FA51DDDD0BFFDED1C340F0434999A] - (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [275752] [PID.6660]
[MD5.6D515466AB8BFE61184092B635AE6EB4] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [325656] [PID.6708]
[MD5.0FADD949576A164B4E51E716F46B6C33] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2533400] [PID.5704]
~ Processes Running: Scanned in 00mn 03s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][StartupURLs] http://search.conduit.com/?ctid=ct2504091&SearchSource=48
G2 - GCE: Preference [User Data\Default] [adpkifcfcacgmnggcbpbjbkdijciiigm] Bejeweled v.2 (Activé)
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [bepbmhgboaologfdajaanbcjmnhjmhfn] Google Voice Search Hotword (Beta) v.0.1.1.5023, (Désactivé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [blpebaehgfgkcmmjjknibibbjacnplim] Solitaire v.1.4.7 (Activé)
G2 - GCE: Preference [User Data\Default] [cknghehebaconkajgiobncfleofebcog] Monster Dash v.2.2 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [djcfdncoelnlbldjfhinnjlhdjlikmph] High Contrast v.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [dnhpdliibojhegemfjheidglijccjfmc] hotword helper v.0.0.2.0 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ejpepffjfmamnambagiibghpglaidiec] Facebook Disconnect v.1.6.6 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety v.1.3.1, (Activé)
G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.7.13, (Activé)
G2 - GCE: Preference [User Data\Default] [hoohaidjoleeifhoeiipjofgjhkmhppk] Metal Slug 3 v.4.0 (Activé)
G2 - GCE: Preference [User Data\Default] [kcjaiebaaklhkljnolhabheddhogblhm] Carla Zampatti v.3 (Activé)
G2 - GCE: Preference [User Data\Default] [kmendfapggjehodndflmmgagdbamhnfd] CryptoTokenExtension v.0.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [lkllajgbhondgjjnhmmgbjndmogapinp] Sketchpad v.3.5.9 (Activé)
G2 - GCE: Preference [User Data\Default] [loeiekheegipnnbcfbfkanbbegkhjjcm] Plink v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [mbbibdblnnlapclckbdennhlbcnkkgcn] Harmony v.6 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mmcegpfdgcoclcdfkjahiimlikdpnina] Plants vs Zombies v.1.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [mnhbepgnjnaoahohppnffanmkjkjoglp] HP Product Detection Plugin v.1.0.15.0 (Désactivé)
G2 - GCE: Preference [User Data\Default] [namljbfbglehfnlonjmebceimaalofei] deviantART muro v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ojpijjmpahflnipadmlpgbjmagmjchkk] Vuze Remote v.2.0.1.4 (Désactivé) =>P2P.Azureus
G2 - GCE: Preference [User Data\Default] [pafkbggdmjlpgkdkcbjmhmfcdpncadgh] Google Now v.1.2.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [pjjhlfkghdhmijklfnahfkpgmhcmfgcm] Google Reader v.4.4 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
G2 - GCE: Preference [User Data\Default] [poknhlcknimnnbfcombaooklofipaibk] Canvas Rider v.0.71 (Activé)

---\\ Liste des dossiers d'extension Google Chrome
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm [Bejeweled]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [Google Drive]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [Google Voice Search Hotword (Beta)]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [YouTube]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpebaehgfgkcmmjjknibibbjacnplim [Solitaire]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog [Monster Dash]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [Recherche Google]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\djcfdncoelnlbldjfhinnjlhdjlikmph [High Contrast]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec [Facebook Disconnect]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [Avira Browser Safety]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [AdBlock]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\hoohaidjoleeifhoeiipjofgjhkmhppk [Metal Slug 3]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcjaiebaaklhkljnolhabheddhogblhm [Carla Zampatti]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkllajgbhondgjjnhmmgbjndmogapinp [Sketchpad]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\loeiekheegipnnbcfbfkanbbegkhjjcm [Plink]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbbibdblnnlapclckbdennhlbcnkkgcn [Harmony]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmcegpfdgcoclcdfkjahiimlikdpnina [Plants vs Zombies]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkjkjoglp [HP Product Detection Plugin]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\namljbfbglehfnlonjmebceimaalofei [deviantART muro]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [Google Wallet]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjjhlfkghdhmijklfnahfkpgmhcmfgcm [Google Reader]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [Gmail]
G2 - EXT: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [Canvas Rider]
~ Google Lines Browser: 60 Scanned in 00mn 07s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30514.0.) -- c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
P2 - FPN: [HKLM] [adobe.com/AdobeAAMDetect] - (.Adobe Systems - A plugin to detect whether the Adobe Creative Cloud is installed on th.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Pietro\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
P2 - FPN: [HKCU] [@talk.google.com/GoogleTalkPlugin] - (.Google - Version 5.4.2.18903.) -- C:\Users\Pietro\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
P2 - FPN: [HKCU] [@talk.google.com/O1DPlugin] - (.Google - Version 5.4.2.18903.) -- C:\Users\Pietro\AppData\Roaming\Mozilla\plugins\npo1d.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Pietro\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Pietro\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll
~ Firefox Browser: 8 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17239 (winblue_gdr.140724-2228)) -- C:\Windows\SysWOW64\ieframe.dll
R3 - URLSearchHook: (no name) [64Bits] - {ba14329e-9550-4989-b3f2-9732e92d17cc} . (.Microsoft Corporation - Navigateur Internet.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0
~ IE Browser: 19 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\System32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (5)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Bing Bar Helper [64Bits] - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll =>Toolbar.Bing
O2 - BHO: (no name) [64Bits] - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
~ BHO: 9 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Bing Bar - [HKLM]{eec0f710-38b5-4aba-99bf-ec87564a4e13} . (.Microsoft Corporation. - Bing Client Extensions.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll =>Toolbar.Bing
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{BA14329E-9550-4989-B3F2-9732E92D17CC} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Program [Public]: eBay.lnk . (...) -- C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe =>Toolbar.eBay
O4 - GS\Program [Public]: Snapfish.lnk . (...) -- C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe
O4 - GS\QuickLaunch [Pietro]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
O4 - GS\TaskBar [Pietro]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
O4 - GS\Desktop [Pietro]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
~ Global Startup: 5 Scanned in 00mn 09s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O4 - HKLM\..\Run: [SmartMenu] . (.Pas de propriétaire - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
O4 - HKLM\..\Run: [HPWirelessAssistant] . (...) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Pietro\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKCU\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (.not file.)
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
O4 - HKCU\..\Run: [AdobeBridge] Clé orpheline
O4 - HKCU\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
O4 - HKCU\..\Run: [SURVIVAL] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O4 - HKCU\..\Run: [ffbbb464b537cc67f28606ca3832eb71] C:\Users\Pietro\AppData\Local\Temp\StayIcon.exe (.not file.)
O4 - HKCU\..\Run: [222] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O4 - HKCU\..\Run: [97a3fee10d8c021a9b64e9a351547774] C:\Users\Pietro\AppData\Local\Temp\OSP2.pif" .. (.not file.)
O4 - HKCU\..\Run: [5b5ed1af05d79789bfd6ed370a062a46] . (...) -- C:\Windows\System32\..
O4 - HKCU\..\Run: [eae07fb211dfe48f76d6253ab5226254] C:\Users\Pietro\AppData\Local\Temp\rundll.pif" .. (.not file.)
O4 - HKCU\..\Run: [f4f0725a7eaeabf0af3484c5a8e0ddd2] C:\Users\Pietro\AppData\Local\Temp\rundll7.exe (.not file.)
O4 - HKCU\..\Run: [6420357f107124fc58a0231a58e5d91b] . (...) -- C:\Users\Pietro\AppData\Local\Temp\rundll74.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Quick Launch] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe =>.EasyBits Software AS
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Pietro\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (.not file.)
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [AdobeBridge] Clé orpheline
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [SURVIVAL] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [ffbbb464b537cc67f28606ca3832eb71] C:\Users\Pietro\AppData\Local\Temp\StayIcon.exe (.not file.)
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [222] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [97a3fee10d8c021a9b64e9a351547774] C:\Users\Pietro\AppData\Local\Temp\OSP2.pif" .. (.not file.)
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [5b5ed1af05d79789bfd6ed370a062a46] . (...) -- C:\Windows\System32\..
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [eae07fb211dfe48f76d6253ab5226254] C:\Users\Pietro\AppData\Local\Temp\rundll.pif" .. (.not file.)
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [f4f0725a7eaeabf0af3484c5a8e0ddd2] C:\Users\Pietro\AppData\Local\Temp\rundll7.exe (.not file.)
O4 - HKUS\S-1-5-21-3952655422-3213944981-1190940908-1001\..\Run: [6420357f107124fc58a0231a58e5d91b] . (...) -- C:\Users\Pietro\AppData\Local\Temp\rundll74.exe
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 [64Bits] - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000010\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Winsock: 10 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{9B064931-F671-4802-926B-D932A9F1B9C4}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\..\{E3536FDB-3573-43DA-8BBA-73F4E6222812}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{9B064931-F671-4802-926B-D932A9F1B9C4}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS1\Services\Tcpip\..\{E3536FDB-3573-43DA-8BBA-73F4E6222812}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{9B064931-F671-4802-926B-D932A9F1B9C4}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS2\Services\Tcpip\..\{E3536FDB-3573-43DA-8BBA-73F4E6222812}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (...) --
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: C:\Program Files\DigitalPersona\Bin\DpHostW.exe (DpHost) . (.DigitalPersona, Inc. - DigitalPersona Local Host.) - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard Company - HP Support Assistant.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe =>.Hewlett-Packard Co
O23 - Service: HP Wireless Assistant Service (HP Wireless Assistant Service) . (.Hewlett-Packard Company - HPPA_Service.) - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Service (hpsrv) . (.Hewlett-Packard - HpService.) - C:\Windows\System32\Hpservice.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Pas de propriétaire - HPWMISVC Application.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: McNeel Update Service 5.0 (McNeelUpdate) . (.Robert McNeel & Associates - McNeelUpdateService.) - C:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe
O23 - Service: NIHardwareService (NIHardwareService) . (.Native Instruments GmbH - NIHardwareService.) - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc. - PsiService PsiService.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: TabletServiceWacom (TabletServiceWacom) . (.Wacom Technology, Corp. - Tablet Service for professional driver.) - C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) . (.Pas de propriétaire - CLCapSvc Module.) - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
O23 - Service: TV Task Scheduler (TVTS) (TVSched) . (.Pas de propriétaire - CLSched Module.) - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVSched.exe
O23 - Service: Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) . (.Validity Sensors, Inc. - Validity Sensors Fingerprint Service.) - C:\Windows\system32\vcsFPService.exe
~ Services: 32 Scanned in 00mn 07s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.FBB312C9DA3863673EC18F4AE4101778] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [267440]
[MD5.81B82B6DA127FC3230DC50F3A411A50A] [APT] [AdobeAAMUpdater-1.0-Pietro-HP-Pietro] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984]
[MD5.50A7263E4DF4AE9B5419EB682E1141C5] [APT] [CapSchedInst] (.CL.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [54568]
[MD5.34F956309BAC86607AF1B0063171CB61] [APT] [CapSvcInst] (.CL.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [54568]
[MD5.2179E1BE5F1373A16180A20CD1286980] [APT] [CapUninst] (.CL.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [42280]
[MD5.BE66B026CF488C87B4D0EA9E616FFA4A] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3129184]
[MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core] (.Facebook Inc..) -- C:\Users\Pietro\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA] (.Facebook Inc..) -- C:\Users\Pietro\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.00000000000000000000000000000000] [APT] [GoforFilesUpdate] (...) -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe (.not file.) [0] =>P2P.GoforFiles
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core] (.Google Inc..) -- C:\Users\Pietro\AppData\Local\Google\Update\GoogleUpdate.exe [136176]
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA] (.Google Inc..) -- C:\Users\Pietro\AppData\Local\Google\Update\GoogleUpdate.exe [136176]
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe [136488]
[MD5.AA019CF0EFDABE014D5CA97E5BFB392F] [APT] [RecoveryCDWin7] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [38456]
[MD5.AA019CF0EFDABE014D5CA97E5BFB392F] [APT] [Registration] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [38456]
[MD5.119B2523F93DA70C67B6E390B83B3F17] [APT] [TVAgent] (.CyberLink Corp..) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [427304]
[MD5.00000000000000000000000000000000] [APT] [{1A7A8EBB-DCED-4627-B50A-3FD022FB2594}] (...) -- C:\Users\Pietro\Downloads\dotnetfx35.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{392004B3-ACF6-4C1B-8EB0-2D984DBD9443}] (...) -- F:\Setup.exe (.not file.) [0]
[MD5.D379412A71DE2451FD1E69947ABD122E] [APT] [{609B2315-6F5B-4317-B1C5-DC95A5F64091}] (.Hewlett-Packard.) -- C:\Users\Pietro\Downloads\sp42505.exe [52595096]
[MD5.AC08A03D7E579E2903925736E7AB48F2] [APT] [{6A878D3C-2359-421E-B462-D64570636EE1}] (.Google Inc..) -- c:\users\Pietro\appdata\local\google\chrome\application\chrome.exe [852808]
[MD5.00000000000000000000000000000000] [APT] [{84A7375F-27C3-4B30-A03C-E64190C19717}] (...) -- C:\Users\Pietro\AppData\Local\Temp\7zO30EB.tmp\dgVoodooSetup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{8F365586-3F19-43EE-9915-36A023586312}] (...) -- C:\Users\Pietro\Downloads\Assassins.Creed.Revelations.v1.01.Update-SKIDROW\ac_revelations_1.01_eu.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{BD368799-D8E0-4023-B169-9692E0F70460}] (...) -- C:\Users\Pietro\Downloads\Assassins.Creed.Revelations.v1.02.Update-SKIDROW\ac_revelations_1.02_eu.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{BDDC085E-5F8A-48A3-AFB7-FD66230C190A}] (...) -- C:\Users\Pietro\Downloads\RADTools.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{EDF08E7A-A9F5-4F10-82D5-02567043482E}] (...) -- F:\setup.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.706C9BC93F29B54AEDB4DD5A7918D933] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1287224]
[MD5.706C9BC93F29B54AEDB4DD5A7918D933] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1287224]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core.job [1078]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core [1078]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA.job [1100]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA [1100]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1064]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1064]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1068]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1068]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core.job [1030]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001Core [1030]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA.job [1082]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3952655422-3213944981-1190940908-1001UA [1082]
~ Scheduled Task: 37 Scanned in 00mn 08s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Java (Sun) [64Bits] - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Active Setup: 11 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (avipbb) . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
O41 - Driver: (avkmgr) . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - C:\Windows\System32\DRIVERS\avkmgr.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (ElbyCDIO) . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) - C:\Windows\System32\Drivers\ElbyCDIO.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 69 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: "Assassin's Creed IV - Black Flag" - (...) [HKLM][64Bits] -- {959CF39B-F3FA-4A80-AECF-8AF6BA639276}_is1
O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM][64Bits] -- 7-Zip
O42 - Logiciel: ABL 2.9.1 - (.AudioRealism.) [HKLM][64Bits] -- AudioRealism Bass Line 2_is1
O42 - Logiciel: ADM 1.2.1 - (.AudioRealism.) [HKLM][64Bits] -- AudioRealism Drum Machine_is1
O42 - Logiciel: APB Reloaded - (...) [HKLM][64Bits] -- Steam App 113400
O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {FB07515A-48AC-9996-16EE-3A3DC8CF8D8E}
O42 - Logiciel: Ableton Live 9 Suite - (.Ableton.) [HKLM][64Bits] -- {4BC549F9-ACEB-4A2D-B317-A8A80BF5DBD2}
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {254C37AA-6B72-4300-84F6-98A82419187E}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FE23D063-934D-4829-A0D8-00634CE79B4A}
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud
O42 - Logiciel: Adobe Flash Player 15 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 15 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1}
O42 - Logiciel: Adobe InDesign CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {CFB770D7-8D43-1014-922B-CC2715FADE3F} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Reader XI - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {9ECF7817-DB11-4FBA-9DF1-296A578D513A}
O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player
O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WT087420
O42 - Logiciel: Android SDK Tools - (.Google Inc..) [HKLM][64Bits] -- Android SDK Tools
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {C6579A65-9CAE-4B31-8B6B-3306E0630A66} =>.Apple Inc
O42 - Logiciel: Assassin's Creed Brotherhood - (.Ubisoft.) [HKLM][64Bits] -- {BE4BA698-8533-4F77-9559-C7F3F78C0B05}
O42 - Logiciel: Assassin's Creed Revelations - (.Ubisoft.) [HKLM][64Bits] -- {33A22B2D-55BA-4508-B767-BF2E9C21A73F}
O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM][64Bits] -- Audacity_is1
O42 - Logiciel: Avira Free Antivirus v14.0.6.570 - (.Avira.) [HKLM][64Bits] -- Avira AntiVir Desktop
O42 - Logiciel: Avira v1.1.21.25162 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {1CA8266F-73D8-413A-94DF-EEAC92770AD7}
O42 - Logiciel: Avira v1.1.21.25162 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {70e83cd8-4bd5-4039-ab5a-6b94a8abb641}
O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF}
O42 - Logiciel: Battlefield 4 - (.Black Box.) [HKLM][64Bits] -- {7BA57455-8B68-427C-9BF0-9028F0536514}
O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087428
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {3365E735-48A6-4194-9988-CE59AC5AE503} =>Toolbar.Bing
O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent =>P2P.BitTorrent
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Borderlands 2 - (...) [HKLM][64Bits] -- Borderlands 2_is1
O42 - Logiciel: Brainworx BX Bundle VST RTAS v1.0 - (...) [HKLM][64Bits] -- Brainworx BX Bundle_is1
O42 - Logiciel: Broadcom 2070 Bluetooth 3.0 - (.Broadcom Corporation.) [HKLM][64Bits] -- {436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}
O42 - Logiciel: Broadcom 802.11 Wireless LAN Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Wireless LAN Adapter
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {1E6E990A-728D-4700-9B0A-2CA541C93A12}
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087453
O42 - Logiciel: Corel Painter 12 - (.Corel Corporation.) [HKLM][64Bits] -- _{08A8CCEA-36DC-4634-AAAA-79463D644C0E}
O42 - Logiciel: Corel Painter 12 - IPM - (.Corel Corporation.) [HKLM][64Bits] -- {AC6FC993-CCD1-41A5-B61C-AD61F90549BE}
O42 - Logiciel: Corel Painter Sketch Pad - (.Corel Corporation.) [HKLM][64Bits] -- _{EAB6F4ED-B18D-4BF5-B18E-3C7921560EC4}
O42 - Logiciel: Corel SketchPad - ICA - (.Corel Corporation.) [HKLM][64Bits] -- {EAB6F4ED-B18D-4BF5-B18E-3C7921560EC4}
O42 - Logiciel: Counter-Strike: Source - (.Valve.) [HKLM][64Bits] -- Steam App 240
O42 - Logiciel: Counter-Strike: Source Beta - (...) [HKLM][64Bits] -- Steam App 260
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: Cyberduck 4.2.1 (9350) - (...) [HKLM][64Bits] -- Cyberduck
O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}
O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}
O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT087536
O42 - Logiciel: DiscJuggler - (.Padus Incorporated.) [HKLM][64Bits] -- DiscJuggler
O42 - Logiciel: Dishonored - (...) [HKLM][64Bits] -- Dishonored_is1
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox
O42 - Logiciel: ESN Sonar - (.ESN Social Software AB.) [HKLM][64Bits] -- ESN Sonar-0.70.4
O42 - Logiciel: ESU for Microsoft Windows 7 - (.Hewlett-Packard.) [HKLM][64Bits] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
O42 - Logiciel: Energy Star Digital Logo - (.Hewlett-Packard.) [HKLM][64Bits] -- {BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}
O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WT087361
O42 - Logiciel: FIFA 11 - (.Electronic Arts.) [HKLM][64Bits] -- {3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}
O42 - Logiciel: FIFA 12 (c) EA version 1 - (...) [HKLM][64Bits] -- FIFA 12 (c) EA_is1
O42 - Logiciel: FIFA 13 - (.Electronic Arts.) [HKLM][64Bits] -- {A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}
O42 - Logiciel: FabFilter TotalBundle VST RTAS v1.3 - (...) [HKLM][64Bits] -- FabFilter TotalBundle x64_is1
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7}
O42 - Logiciel: Fifa 14 version 1.0 - (.AGK Repack.) [HKLM][64Bits] -- {F354A119-8305-44F3-A736-18ECA4FD4952}_is1
O42 - Logiciel: FileZilla Client 3.5.3 - (.FileZilla Project.) [HKLM][64Bits] -- FileZilla Client
O42 - Logiciel: FormatFactory 3.3.1.0 - (.Format Factory.) [HKLM][64Bits] -- FormatFactory
O42 - Logiciel: Fraps - (...) [HKLM][64Bits] -- Fraps
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {C1E3DFE7-4EAD-3E9E-A826-E06055BA5921}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-1110000D8301}
O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games.) [HKLM][64Bits] -- {579BA58C-F33D-4970-9953-B94B43768AC3}
O42 - Logiciel: Grand Theft Auto IV - Episodes From Liberty City - (...) [HKLM][64Bits] -- {8ED35B48-AFBD-4F32-8271-2257AD8B907E}_is1
O42 - Logiciel: Grand Theft Auto: Episodes from Liberty City - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-111000028701}
O42 - Logiciel: Grand Theft Auto: Episodes from Liberty City - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-111000028702}
O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {28E358E9-816F-4497-B9F3-CA58B1DC28C9}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP DVB-T TV Tuner 8.0.64.43 - (...) [HKLM][64Bits] -- HP DVB-T TV Tuner
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {132234A4-9362-4829-957F-FF11715F7815}
O42 - Logiciel: HP Game Console - (.WildTangent.) [HKLM][64Bits] -- My HP Game Console
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}
O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- {DCCAD079-F92C-44DA-B258-624FC6517A5A}
O42 - Logiciel: HP MediaSmart Live TV - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15}
O42 - Logiciel: HP MediaSmart Live TV - (.Hewlett-Packard.) [HKLM][64Bits] -- {67626E09-5366-4480-8F1E-93FADF50CA15}
O42 - Logiciel: HP MediaSmart Movies and TV - (.Hewlett-Packard.) [HKLM][64Bits] -- {4B4E2FA2-3B1E-4147-99DB-5033981D8C2F}
O42 - Logiciel: HP MediaSmart Music - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}
O42 - Logiciel: HP MediaSmart Music - (.Hewlett-Packard.) [HKLM][64Bits] -- {91A34181-9FAD-43AB-A35F-E7A8945B7E1C}
O42 - Logiciel: HP MediaSmart Photo - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}
O42 - Logiciel: HP MediaSmart Photo - (.Hewlett-Packard.) [HKLM][64Bits] -- {6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}
O42 - Logiciel: HP MediaSmart SmartMenu - (.Hewlett-Packard.) [HKLM][64Bits] -- {731A1D36-BF17-4C76-B7E7-CC055AF8C54E}
O42 - Logiciel: HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}
O42 - Logiciel: HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {D12E3E7F-1B13-4933-A915-16C7DD37A095}
O42 - Logiciel: HP MediaSmart Webcam - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: HP MediaSmart Webcam - (.Hewlett-Packard.) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {4B156358-CE9C-4E9F-8CAD-79AE86A68C60}
O42 - Logiciel: HP Product Detection - (.HP.) [HKLM][64Bits] -- {A436F67F-687E-4736-BD2B-537121A804CF}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E342D296-DB9D-4FC7-ACB0-39926C0BFA16}
O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {72D90DB3-A16A-4545-B555-868471101833}
O42 - Logiciel: HP SimplePass Identity Protection - (.DigitalPersona, Inc..) [HKLM][64Bits] -- {1F6B7CB0-66D8-4B31-BF1F-D2318E58080E}
O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {1F054665-4045-420D-8568-79C442EB8DF4}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC17E0A7-EAA9-4902-92F8-C83B9FD02246} =>.Hewlett-Packard Co
O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {FE840F8B-9007-4496-AB62-B869ED05F4B2}
O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
O42 - Logiciel: Half-Life 2 - (.Valve.) [HKLM][64Bits] -- Steam App 220
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.0.0 - (.Hewlett-Packard.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: I-Doser Premium - (.I-Doser.com.) [HKLM][64Bits] -- I-Doser
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: IPM - (.Corel Corporation.) [HKLM][64Bits] -- {00D6C191-50A2-4D9C-9285-1817D8420FB6}
O42 - Logiciel: IconHandler 64 bit - (.Corel Corporation.) [HKLM][64Bits] -- {4E82E2E9-668B-4F8A-814A-78E163FCDBCD}
O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM][64Bits] -- ImgBurn
O42 - Logiciel: Inkscape 0.48.2 - (...) [HKCU][64Bits] -- Inkscape
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087480
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Intel(R) Turbo Boost Technology Driver - (.Intel Corporation.) [HKLM][64Bits] -- {D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}
O42 - Logiciel: Java 7 Update 55 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF}
O42 - Logiciel: Java(TM) 6 Update 20 (64-bit) - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416020FF}
O42 - Logiciel: Java(TM) 6 Update 35 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216035FF}
O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WT087485
O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WT087490
O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WT087380
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}
O42 - Logiciel: KORG Legacy Collection - M1 - (.KORG Inc..) [HKLM][64Bits] -- {AA1D88F2-E75B-4FC3-80C6-9E041D7F4B00}
O42 - Logiciel: Kjaerhus Audio - Golden Modulator | GMO-1 v1.10 - (.Kjaerhus Audio.) [HKLM][64Bits] -- Kjaerhus Audio - Golden Modulator | GMO-1_is1
O42 - Logiciel: LG United Mobile Driver - (.LG Electronics.) [HKLM][64Bits] -- {2A3A4BD6-6CE0-4E2A-80D2-1D0FF6ACBFBA}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LibreOffice 3.5 - (.The Document Foundation.) [HKLM][64Bits] -- {0E8E4718-0702-4D33-B007-5E95849BAB3C}
O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {07E49BC1-24FF-4D7A-AC74-727BE95801AF}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Mafia 2 - (...) [HKLM][64Bits] -- Mafia 2_is1
O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop =>.EasyBits Software AS
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mandelbulber - (...) [HKLM][64Bits] -- 35A39AB0-5E9F-4B70-98DA-4B8158C89C4B
O42 - Logiciel: Max 6.1.0 (x64) - (.Cycling '74.) [HKLM][64Bits] -- {632D99C0-6979-4516-82AA-BAE20386E03B}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}
O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13}
O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {45CD67FD-3218-4207-A0A2-BC41245189E3}
O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}
O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {3023EBDA-BF1B-4831-B347-E5018555F26E}
O42 - Logiciel: Muon Tau Bassline VSTi - (.Muon Software Ltd.) [HKLM][64Bits] -- {DE6E154C-640F-48D0-BB0E-747E22D48053}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}
O42 - Logiciel: Native Instruments Controller Editor - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Controller Editor
O42 - Logiciel: Native Instruments Hardware Controller Support - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Hardware Controller Support
O42 - Logiciel: Native Instruments Maschine - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Maschine
O42 - Logiciel: Native Instruments Maschine Controller - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Maschine Controller
O42 - Logiciel: Native Instruments Maschine Controller MK2 Driver - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Maschine Controller MK2 Driver
O42 - Logiciel: Native Instruments Maschine Driver - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Maschine Driver
O42 - Logiciel: Native Instruments Maschine Mikro - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Maschine Mikro
O42 - Logiciel: Native Instruments Maschine Mikro MK2 Driver - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Maschine Mikro MK2 Driver
O42 - Logiciel: Native Instruments Massive - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Massive
O42 - Logiciel: Native Instruments Service Center - (.Native Instruments.) [HKLM][64Bits] -- Native Instruments Service Center
O42 - Logiciel: Nero 7 Premium - (.Nero AG.) [HKLM][64Bits] -- {22FB6750-ADDF-4726-B67F-6901E1991036}
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin
O42 - Logiciel: PC Wizard 2010.1.96 - (.CPUID.) [HKLM][64Bits] -- PC Wizard 2010_is1
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
O42 - Logiciel: Package de pilotes Windows - ACER Incorporated (qcusbser) Modem (08/16/201 - (.ACER Incorporated.) [HKLM][64Bits] -- D149DB73BE02E748657C63CBB404510E56E08F63
O42 - Logiciel: Package de pilotes Windows - ACER Incorporated (qcusbser) Ports (08/16/201 - (.ACER Incorporated.) [HKLM][64Bits] -- 5D9817CE83DD092EB8923949297A94C53A0A27CF
O42 - Logiciel: Package de pilotes Windows - Acer, Inc (androidusb) USB (08/16/2010 1.0.00 - (.Acer, Inc.) [HKLM][64Bits] -- 83E7AE861B9BCCB05F7AA822F9EE26C0672E6888
O42 - Logiciel: Package de pilotes Windows - Linux Developer Community Net (08/16/2010 5.1 - (.Linux Developer Community.) [HKLM][64Bits] -- 637F4A11ADE9B1B3D8F4A37C0C4CA8EA924B739E
O42 - Logiciel: Painter 12 - Content - (.Corel Corporation.) [HKLM][64Bits] -- {97759DE4-0A6A-4ACF-A511-4DA791BEAA1A}
O42 - Logiciel: Painter 12 - Core - (.Corel Corporation.) [HKLM][64Bits] -- {42CD49CD-4B05-4A2D-8FD1-E37CC9315FA5}
O42 - Logiciel: Painter 12 - Corex64 - (.Corel Corporation.) [HKLM][64Bits] -- {5FD7D415-F562-4767-913F-26E7F463DF8B}
O42 - Logiciel: Painter 12 - DE - (.Corel Corporation.) [HKLM][64Bits] -- {E664F998-3760-4B30-AEF0-BB624C498870}
O42 - Logiciel: Painter 12 - EN - (.Corel Corporation.) [HKLM][64Bits] -- {77013803-5BA9-4C8A-BFC4-99AE7151C4B7}
O42 - Logiciel: Painter 12 - FR - (.Corel Corporation.) [HKLM][64Bits] -- {0838FACF-AB67-4AB7-B09A-3FC1809AED34}
O42 - Logiciel: Painter 12 - IT - (.Corel Corporation.) [HKLM][64Bits] -- {E187937F-E3D5-45F7-BA33-1FC7CBF91640}
O42 - Logiciel: Painter 12 - Setup Files - (.Corel Corporation.) [HKLM][64Bits] -- {08A8CCEA-36DC-4634-AAAA-79463D644C0E}
O42 - Logiciel: Painter Sketch Pad - (.Corel Corporation.) [HKLM][64Bits] -- {5BD093B2-58E6-467D-99E4-E88A5FFC412C}
O42 - Logiciel: PakkISO 0.4 - (...) [HKLM][64Bits] -- PakkISO_is1
O42 - Logiciel: Patch san andreas v 1.0 - (.Aikan.) [HKLM][64Bits] -- Patch san andreas_is1
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT087394
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- {D36DD326-7280-11D8-97C8-000129760CBE}
O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT087501
O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WT087396
O42 - Logiciel: Portal - (.Valve.) [HKLM][64Bits] -- Steam App 400
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: Project64 1.6 - (.Project64.) [HKLM][64Bits] -- {9559F7CA-5E34-4237-A2D9-D856464AD727}
O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C}
O42 - Logiciel: RAD Video Tools - (...) [HKLM][64Bits] -- RADVideo
O42 - Logiciel: REAPER (x64) - (...) [HKLM][64Bits] -- REAPER
O42 - Logiciel: Rapture3D 2.4.8 Game - (.Blue Ripple Sound.) [HKLM][64Bits] -- {D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1
O42 - Logiciel: Realtek Ethernet Controller Driver For Windows 7 - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}
O42 - Logiciel: RedShift 5 - (...) [HKLM][64Bits] -- {A1C93B0F-A53C-406A-A681-EB3ED2EAB964}
O42 - Logiciel: Registration - (.Corel Corporation.) [HKLM][64Bits] -- {72F6D9F1-98C4-473F-A540-ECDCEB6D3D76}
O42 - Logiciel: Rhinoceros 5 (64-bit) - (.Robert McNeel & Associates.) [HKLM][64Bits] -- {D7B0FC7F-827E-4664-9DC8-32AD32C875A7}
O42 - Logiciel: RomStation - (.RomStation.) [HKLM][64Bits] -- {223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1
O42 - Logiciel: STREET FIGHTER IV - (.CAPCOM U.S.A., INC..) [HKLM][64Bits] -- {59ABBDF0-E1E5-48AF-85FB-F523A08C3490}
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {FA4C2D53-205F-4245-9717-F3761154824D}
O42 - Logiciel: Saints Row The Third - (...) [HKLM][64Bits] -- Saints Row The Third_is1
O42 - Logiciel: Saints Row: The Third - Initiation Station - (.Volition.) [HKLM][64Bits] -- Steam App 55370
O42 - Logiciel: ShaunWhiteSnowboarding - (.Ubisoft.) [HKLM][64Bits] -- {2E52FB79-7F60-4AD7-B946-5ED18B4F274E}
O42 - Logiciel: SketchUp Pro 8 - (.Trimble Navigation Limited.) [HKLM][64Bits] -- {1260324A-B1CD-4BA4-AA3C-D081728ECCFB}
O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087510
O42 - Logiciel: Sonic Charge Microtonic - (.NuEdge Development.) [HKLM][64Bits] -- Sonic Charge Microtonic
O42 - Logiciel: South Park Stick of Truth, âåðñèÿ 1.0.0.0 - (.RePack by SEYTER.) [HKLM][64Bits] -- South Park Stick of Truth_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: Switch Sound File Converter - (.NCH Software.) [HKLM][64Bits] -- Switch
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: TI Connect 1.6 - (.Texas Instruments Inc.) [HKLM][64Bits] -- {A8B94669-8654-4126-BD28-D0D2412CDED6}
O42 - Logiciel: Tablette Wacom - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom Tablet Driver
O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440
O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850
O42 - Logiciel: Tony Hawk's American Wasteland (TM) - (.Aspyr Media, Inc..) [HKLM][64Bits] -- {3293C06B-003F-4027-8380-FFD79E38167D}
O42 - Logiciel: Tony Hawk's American Wasteland 1.01 Patch - (.Aspyr Media, Inc..) [HKLM][64Bits] -- {925D9613-EA6A-4DF0-9186-AD968159D1B1}
O42 - Logiciel: Tony Hawk's Underground 2 - (.Activision.) [HKLM][64Bits] -- InstallShield_{EF1394D4-9FB6-4F1F-9A09-20FF3033AE14}
O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM][64Bits] -- {888F1505-C2B3-4FDE-835D-36353EBD4754}
O42 - Logiciel: UnLock Root 2.42 - (.Unlcokroot.) [HKLM][64Bits] -- UnLock Root
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay
O42 - Logiciel: Urban Terror 4.1 - (.Frozen Sand LLC.) [HKLM][64Bits] -- Urban Terror_is1
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: VLC media player 1.1.10 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Valiant Hearts: The Great War - (...) [HKLM][64Bits] -- VmFsaWFudEhlYXJ0c1RoZUdyZWF0V2Fy_is1
O42 - Logiciel: Validity Sensors DDK - (.Validity Sensors, Inc..) [HKLM][64Bits] -- {426FAE9F-7373-496E-A215-9DB7EF4398CF}
O42 - Logiciel: Virtual Villagers - The Secret City - (.WildTangent.) [HKLM][64Bits] -- WT087513
O42 - Logiciel: VirtualCloneDrive - (.Elaborate Bytes.) [HKLM][64Bits] -- VirtualCloneDrive
O42 - Logiciel: WBFS Manager 3.0 - (.AlexDP.) [HKLM][64Bits] -- WBFS Manager 3.0
O42 - Logiciel: Waves Complete VST RTAS TDM v7.1.16 - (...) [HKLM][64Bits] -- Waves Complete v7_is1
O42 - Logiciel: Waves SSL Collection v1.2 - (...) [HKLM][64Bits] -- Waves SSL Collection v1.2
O42 - Logiciel: WebTablet IE Plugin - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for IE
O42 - Logiciel: WebTablet Netscape Plugin - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Netscape
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WT087519
O42 - Logiciel: WinRAR 4.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCF298AF-9CE1-4B26-B251-486E98A34789}
O42 - Logiciel: Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 - (.Texas Instruments Inc..) [HKLM][64Bits] -- EC3E466026556D3EB760B01C4772277614354E11
O42 - Logiciel: Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 - (.Texas Instruments Inc..) [HKLM][64Bits] -- 7511B29C86C398B4D11A0B0E4176CAD68D1B7057
O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087533
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {77DE5105-D05E-448C-96CB-7FA381903753}
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
~ Logic: 148 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\5b5ed1af05d79789bfd6ed370a062a46]
[HKCU\Software\6420357f107124fc58a0231a58e5d91b]
[HKCU\Software\7-Zip]
[HKCU\Software\97a3fee10d8c021a9b64e9a351547774]
[HKCU\Software\ATI]
[HKCU\Software\Ableton]
[HKCU\Software\Activision]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\Akeo Consulting]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\PriceGong] =>Adware.PriceGong
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Arkane]
[HKCU\Software\Aspyr]
[HKCU\Software\Audacity]
[HKCU\Software\AudioRealism]
[HKCU\Software\Avira]
[HKCU\Software\Battlefield 1942]
[HKCU\Software\BitComet] =>P2P.BitComet
[HKCU\Software\BlueRippleSound]
[HKCU\Software\Borland]
[HKCU\Software\Bugsplat]
[HKCU\Software\CPUID]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CodeGear]
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\Corel]
[HKCU\Software\CyberLink]
[HKCU\Software\DSS]
[HKCU\Software\DT Soft]
[HKCU\Software\DigitalPersona]
[HKCU\Software\EA Games]
[HKCU\Software\EA Sports]
[HKCU\Software\EasyBits]
[HKCU\Software\Elaborate Bytes]
[HKCU\Software\Electronic Arts]
[HKCU\Software\Emulators]
[HKCU\Software\FabFilter]
[HKCU\Software\Facebook]
[HKCU\Software\Fraps3]
[HKCU\Software\FreeTime]
[HKCU\Software\GoforFiles] =>P2P.GoforFiles
[HKCU\Software\Google]
[HKCU\Software\Green]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\Highway]
[HKCU\Software\IGA]
[HKCU\Software\IM Providers]
[HKCU\Software\Illustrate]
[HKCU\Software\ImgBurn]
[HKCU\Software\Intel]
[HKCU\Software\JaboSoft]
[HKCU\Software\JavaSoft]
[HKCU\Software\KORG]
[HKCU\Software\Leadertech]
[HKCU\Software\LightScribe]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Macromedia]
[HKCU\Software\Macrovision]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Maris Technologies]
[HKCU\Software\McNeel]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\N64 Emulation]
[HKCU\Software\NCH Software]
[HKCU\Software\NCH Swift Sound]
[HKCU\Software\NTSCorp]
[HKCU\Software\Native Instruments]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\NuEdge Development]
[HKCU\Software\PACE Anti-Piracy]
[HKCU\Software\Padus]
[HKCU\Software\Pencil]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\S.A.D]
[HKCU\Software\SCC]
[HKCU\Software\SecuROM]
[HKCU\Software\Shell]
[HKCU\Software\SkypeRS]
[HKCU\Software\Skype]
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\SpoonInstall]
[HKCU\Software\StartSearch] =>PUP.StartSearch
[HKCU\Software\Synaptics]
[HKCU\Software\Texas Instruments]
[HKCU\Software\The Document Foundation]
[HKCU\Software\Trolltech]
[HKCU\Software\Ubisoft]
[HKCU\Software\Usbfix]
[HKCU\Software\Valve]
[HKCU\Software\Vision Thing]
[HKCU\Software\Volition]
[HKCU\Software\Widcomm]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\cacaoweb] =>PUP.CacaoWeb
[HKCU\Software\ePSXeCutor]
[HKCU\Software\eae07fb211dfe48f76d6253ab5226254]
[HKCU\Software\ej-technologies]
[HKCU\Software\epsxe]
[HKCU\Software\f4f0725a7eaeabf0af3484c5a8e0ddd2]
[HKCU\Software\ffbbb464b537cc67f28606ca3832eb71]
[HKCU\Software\iZotope]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Audible]
[HKLM\Software\Broadcom]
[HKLM\Software\CXT]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Corel]
[HKLM\Software\CyberLink]
[HKLM\Software\Cycling '74]
[HKLM\Software\DigitalPersona]
[HKLM\Software\DivX]
[HKLM\Software\FabFilter]
[HKLM\Software\FileZilla 3]
[HKLM\Software\GEAR Software]
[HKLM\Software\HPQ]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IDT]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\Macromedia]
[HKLM\Software\McNeel]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Native Instruments]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Propellerhead Software]
[HKLM\Software\Protexis64]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\S.A.D]
[HKLM\Software\Sonic]
[HKLM\Software\Synaptics]
[HKLM\Software\Validity]
[HKLM\Software\Wacom]
[HKLM\Software\Widcomm]
[HKLM\Software\WildTangent]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\AIM]
[HKLM\Software\Wow6432Node\ATI Technologies]
[HKLM\Software\Wow6432Node\ATI]
[HKLM\Software\Wow6432Node\Activision]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\Ahead]
[HKLM\Software\Wow6432Node\AppDataLow]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Aspyr Media, Inc.]
[HKLM\Software\Wow6432Node\Aspyr]
[HKLM\Software\Wow6432Node\Audible]
[HKLM\Software\Wow6432Node\Avira]
[HKLM\Software\Wow6432Node\BcmSetup]
[HKLM\Software\Wow6432Node\Bethesda Softworks]
[HKLM\Software\Wow6432Node\BlueRippleSound]
[HKLM\Software\Wow6432Node\Bunndle]
[HKLM\Software\Wow6432Node\CAPCOM]
[HKLM\Software\Wow6432Node\Caphyon]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Conduit] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\Corel]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\DT Soft]
[HKLM\Software\Wow6432Node\DigitalPersona]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\EA Games]
[HKLM\Software\Wow6432Node\EA Sports]
[HKLM\Software\Wow6432Node\ESN Launcher-1.122.0]
[HKLM\Software\Wow6432Node\EasyBits]
[HKLM\Software\Wow6432Node\Elaborate Bytes]
[HKLM\Software\Wow6432Node\Electronic Arts]
[HKLM\Software\Wow6432Node\Even Balance]
[HKLM\Software\Wow6432Node\FileZilla 3]
[HKLM\Software\Wow6432Node\Fraps2]
[HKLM\Software\Wow6432Node\GamersFirst]
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\HP]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\IDT]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\IVT Corporation]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Insyde]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Kjaerhus Audio]
[HKLM\Software\Wow6432Node\LG Electronics]
[HKLM\Software\Wow6432Node\LibreOffice]
[HKLM\Software\Wow6432Node\LightScribe]
[HKLM\Software\Wow6432Node\Logitech]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\Maris Technologies]
[HKLM\Software\Wow6432Node\McNeel]
[HKLM\Software\Wow6432Node\MimarSinan]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\NCH Software]
[HKLM\Software\Wow6432Node\NCH Swift Sound]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\Native Instruments]
[HKLM\Software\Wow6432Node\Nero]
[HKLM\Software\Wow6432Node\Nokia]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\P2G_Upgrade]
[HKLM\Software\Wow6432Node\PDR_Upgrade]
[HKLM\Software\Wow6432Node\Padus]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Product_Upgrade]
[HKLM\Software\Wow6432Node\Propellerhead Software]
[HKLM\Software\Wow6432Node\RAD Game Tools]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Rockstar Games]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Sonic Charge]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\Texas Instruments]
[HKLM\Software\Wow6432Node\The Document Foundation]
[HKLM\Software\Wow6432Node\UDS]
[HKLM\Software\Wow6432Node\Ubisoft]
[HKLM\Software\Wow6432Node\UrbanTerror]
[HKLM\Software\Wow6432Node\Validity]
[HKLM\Software\Wow6432Node\Valve]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\Volatile]
[HKLM\Software\Wow6432Node\Wacom]
[HKLM\Software\Wow6432Node\Waves]
[HKLM\Software\Wow6432Node\WildTangent]
[HKLM\Software\Wow6432Node\Win32 Services]
[HKLM\Software\Wow6432Node\Windows]
[HKLM\Software\Wow6432Node\X-AVCSD]
[HKLM\Software\Wow6432Node\ej-technologies]
[HKLM\Software\Wow6432Node\ioUrbanTerror]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node]
~ Key Software: 679 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 07/08/2014 - 12:02:41 - [] ----D C:\Program Files (x86)\2K Games
O43 - CFD: 08/06/2011 - 20:24:50 - [] ----D C:\Program Files (x86)\7-Zip
O43 - CFD: 20/06/2012 - 23:40:47 - [] ----D C:\Program Files (x86)\Acer Inc
O43 - CFD: 05/12/2012 - 00:30:53 - [] ----D C:\Program Files (x86)\Activision
O43 - CFD: 14/01/2014 - 15:54:49 - [] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 13/10/2013 - 18:44:37 - [0] ----D C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 07/05/2012 - 16:26:26 - [] ----D C:\Program Files (x86)\Android
O43 - CFD: 16/07/2011 - 11:43:16 - [] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc
O43 - CFD: 07/12/2012 - 22:27:10 - [] ----D C:\Program Files (x86)\Aspyr Media, Inc
O43 - CFD: 07/01/2012 - 03:14:44 - [] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 28/01/2012 - 16:37:00 - [] ----D C:\Program Files (x86)\Audacity
O43 - CFD: 13/09/2014 - 03:49:38 - [] ----D C:\Program Files (x86)\Avira
O43 - CFD: 02/11/2013 - 16:11:00 - [] ----D C:\Program Files (x86)\Battlefield 4
O43 - CFD: 24/06/2012 - 17:51:22 - [] ----D C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 17/10/2012 - 22:40:17 - [] ----D C:\Program Files (x86)\Bethesda Softworks
O43 - CFD: 09/05/2014 - 17:37:21 - [] ----D C:\Program Files (x86)\Blue Cat Audio
O43 - CFD: 06/03/2012 - 21:07:27 - [] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 09/05/2014 - 16:57:19 - [] ----D C:\Program Files (x86)\Brainworx Music
O43 - CFD: 13/06/2011 - 13:20:04 - [] ----D C:\Program Files (x86)\BRS
O43 - CFD: 04/11/2012 - 00:05:58 - [] ----D C:\Program Files (x86)\Call of Duty Black ops
O43 - CFD: 16/06/2011 - 00:21:03 - [] ----D C:\Program Files (x86)\CAPCOM
O43 - CFD: 21/05/2014 - 20:02:15 - [] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 13/01/2012 - 20:40:24 - [] ----D C:\Program Files (x86)\Corel
O43 - CFD: 16/01/2012 - 23:17:40 - [] ----D C:\Program Files (x86)\CPUID
O43 - CFD: 02/10/2012 - 19:53:16 - [] ----D C:\Program Files (x86)\Cyberduck
O43 - CFD: 19/08/2010 - 02:05:37 - [] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 19/08/2010 - 02:12:42 - [] ----D C:\Program Files (x86)\DigitalPersona
O43 - CFD: 21/11/2012 - 17:33:24 - [] ----D C:\Program Files (x86)\EA Sports
O43 - CFD: 26/01/2012 - 00:19:31 - [] ----D C:\Program Files (x86)\EasyBits For Kids
O43 - CFD: 17/10/2012 - 22:34:08 - [] ----D C:\Program Files (x86)\Elaborate Bytes
O43 - CFD: 18/01/2012 - 01:31:55 - [] ----D C:\Program Files (x86)\FIFA 12
O43 - CFD: 23/10/2013 - 12:04:58 - [] ----D C:\Program Files (x86)\Fifa 14
O43 - CFD: 27/09/2012 - 19:48:08 - [] ----D C:\Program Files (x86)\FileZilla FTP Client
O43 - CFD: 26/03/2014 - 12:59:37 - [] ----D C:\Program Files (x86)\FreeTime
O43 - CFD: 24/02/2014 - 21:30:12 - [] ----D C:\Program Files (x86)\Google
O43 - CFD: 23/01/2012 - 18:32:21 - [] ----D C:\Program Files (x86)\Grand Theft Auto IV - Episodes From Liberty City
O43 - CFD: 10/05/2012 - 19:35:22 - [] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 07/01/2012 - 02:50:55 - [] ----D C:\Program Files (x86)\HP
O43 - CFD: 19/08/2010 - 02:12:07 - [] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 01/06/2014 - 01:27:56 - [] ----D C:\Program Files (x86)\I-Doser Premium
O43 - CFD: 20/05/2012 - 23:19:02 - [] ----D C:\Program Files (x86)\Illustrate
O43 - CFD: 23/10/2013 - 15:39:56 - [] ----D C:\Program Files (x86)\IllustratorPortable
O43 - CFD: 07/01/2013 - 18:57:16 - [] ----D C:\Program Files (x86)\ImgBurn
O43 - CFD: 13/01/2012 - 00:34:36 - [] ----D C:\Program Files (x86)\Inkscape
O43 - CFD: 02/01/2014 - 18:59:17 - [] --H-D C:\Program Files (x86)\InstallJammer Registry
O43 - CFD: 09/02/2014 - 23:21:04 - [] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 19/08/2010 - 01:46:26 - [] ----D C:\Program Files (x86)\Intel
O43 - CFD: 13/09/2014 - 03:36:24 - [] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 18/08/2014 - 20:48:46 - [] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 20/05/2014 - 23:25:06 - [] ----D C:\Program Files (x86)\Java
O43 - CFD: 26/04/2012 - 21:37:26 - [] ----D C:\Program Files (x86)\KONAMI
O43 - CFD: 03/10/2012 - 11:45:20 - [] ----D C:\Program Files (x86)\LG Electronics
O43 - CFD: 26/03/2012 - 19:10:57 - [] ----D C:\Program Files (x86)\LibreOffice 3.5
O43 - CFD: 13/10/2013 - 18:35:16 - [] ----D C:\Program Files (x86)\Mafia 2
O43 - CFD: 27/12/2013 - 00:05:48 - [] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 02/01/2014 - 18:59:19 - [] ----D C:\Program Files (x86)\Mandelbulber
O43 - CFD: 27/09/2011 - 11:46:26 - [] ----D C:\Program Files (x86)\Maris Technologies
O43 - CFD: 03/03/2014 - 23:43:10 - [] ----D C:\Program Files (x86)\McNeelUpdate
O43 - CFD: 26/04/2012 - 18:39:01 - [] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 12/09/2013 - 01:14:50 - [] ----D C:\Program Files (x86)\Microsoft Application Virtualization Client
O43 - CFD: 13/06/2011 - 13:20:28 - [] ----D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
O43 - CFD: 30/05/2011 - 22:06:22 - [] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 24/07/2014 - 14:20:24 - [] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 24/07/2010 - 08:10:00 - [] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 24/06/2011 - 23:18:49 - [] ----D C:\Program Files (x86)\Microsoft WSE
O43 - CFD: 01/06/2011 - 13:42:56 - [] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 01/06/2011 - 09:57:07 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 25/02/2014 - 23:18:37 - [] ----D C:\Program Files (x86)\NCH Software
O43 - CFD: 29/11/2012 - 00:18:49 - [] ----D C:\Program Files (x86)\Nero
O43 - CFD: 13/10/2013 - 18:44:37 - [] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 09/02/2014 - 23:21:22 - [] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 11/08/2014 - 15:21:18 - [] ----D C:\Program Files (x86)\Origin
O43 - CFD: 20/12/2011 - 18:56:39 - [] ----D C:\Program Files (x86)\Origin Games
O43 - CFD: 07/01/2013 - 19:03:14 - [] ----D C:\Program Files (x86)\Padus
O43 - CFD: 18/10/2012 - 23:00:57 - [] ----D C:\Program Files (x86)\PakkISO
O43 - CFD: 23/04/2012 - 19:20:17 - [] ----D C:\Program Files (x86)\Project64 1.6
O43 - CFD: 12/03/2012 - 21:46:28 - [] ----D C:\Program Files (x86)\QuickTime
O43 - CFD: 07/06/2011 - 18:58:46 - [] ----D C:\Program Files (x86)\RADVideo
O43 - CFD: 19/08/2010 - 01:48:16 - [] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 05/02/2012 - 02:48:22 - [] ----D C:\Program Files (x86)\Rockstar Games
O43 - CFD: 05/08/2014 - 19:20:05 - [] ----D C:\Program Files (x86)\RomStation
O43 - CFD: 22/09/2012 - 16:42:49 - [] ----D C:\Program Files (x86)\Safari
O43 - CFD: 24/02/2014 - 02:18:33 - [] R---D C:\Program Files (x86)\Skype
O43 - CFD: 31/03/2014 - 22:17:04 - [] ----D C:\Program Files (x86)\South Park Stick of Truth
O43 - CFD: 12/06/2014 - 23:09:17 - [] ----D C:\Program Files (x86)\Steam
O43 - CFD: 11/11/2013 - 20:43:33 - [] ----D C:\Program Files (x86)\Steinberg
O43 - CFD: 13/01/2012 - 20:12:58 - [] ----D C:\Program Files (x86)\Tablet
O43 - CFD: 16/01/2012 - 20:16:47 - [] ----D C:\Program Files (x86)\TabletPlugins
O43 - CFD: 07/02/2012 - 01:03:58 - [] ----D C:\Program Files (x86)\THQ
O43 - CFD: 11/12/2012 - 19:26:00 - [] ----D C:\Program Files (x86)\TI Education
O43 - CFD: 20/11/2012 - 00:16:20 - [] ----D C:\Program Files (x86)\Ubisoft
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 27/12/2013 - 00:01:24 - [] ----D C:\Program Files (x86)\Unlockroot
O43 - CFD: 06/06/2011 - 22:21:27 - [] ----D C:\Program Files (x86)\UrbanTerror
O43 - CFD: 04/08/2014 - 00:21:24 - [] ----D C:\Program Files (x86)\Valiant Hearts The Great War
O43 - CFD: 02/02/2012 - 19:45:47 - [0] ----D C:\Program Files (x86)\Valve
O43 - CFD: 25/06/2011 - 00:46:51 - [] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 21/05/2014 - 19:51:41 - [] ----D C:\Program Files (x86)\Waves
O43 - CFD: 16/07/2013 - 03:30:41 - [] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 24/07/2010 - 08:10:27 - [] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 24/07/2010 - 08:08:55 - [] ----D C:\Program Files (x86)\Windows Live SkyDrive
O43 - CFD: 20/03/2013 - 19:40:36 - [] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 12/12/2013 - 08:49:40 - [] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - 07:32:38 - [] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 20/03/2013 - 19:40:34 - [] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 20/03/2013 - 19:40:35 - [] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 20/03/2013 - 19:40:36 - [] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 04/11/2012 - 00:22:07 - [] ----D C:\Program Files (x86)\XBMC
O43 - CFD: 16/09/2014 - 12:39:00 - [] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 14/01/2014 - 15:50:19 - [] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 14/01/2014 - 15:48:58 - [] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 29/11/2012 - 00:20:13 - [] ----D C:\Program Files (x86)\Common Files\Ahead
O43 - CFD: 18/08/2014 - 20:47:37 - [] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 15/01/2012 - 18:49:29 - [] ----D C:\Program Files (x86)\Common Files\Corel
O43 - CFD: 15/05/2014 - 18:13:44 - [] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 08/05/2014 - 12:05:10 - [] ----D C:\Program Files (x86)\Common Files\Digidesign
O43 - CFD: 09/10/2012 - 23:13:21 - [] --H-D C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 05/12/2012 - 00:28:35 - [] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 27/12/2013 - 23:29:12 - [] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 21/05/2014 - 19:41:57 - [] ----D C:\Program Files (x86)\Common Files\KORG
O43 - CFD: 19/08/2010 - 01:54:36 - [] ----D C:\Program Files (x86)\Common Files\LightScribe
O43 - CFD: 03/03/2014 - 23:42:50 - [] ----D C:\Program Files (x86)\Common Files\McNeel Shared
O43 - CFD: 20/02/2012 - 20:50:18 - [] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 21/05/2014 - 20:02:16 - [] ----D C:\Program Files (x86)\Common Files\Native Instruments
O43 - CFD: 19/08/2010 - 01:46:05 - [] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 13/01/2012 - 20:40:47 - [] ----D C:\Program Files (x86)\Common Files\Protexis
O43 - CFD: 14/07/2009 - 05:20:08 - [] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 24/02/2014 - 02:18:33 - [] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - 05:20:08 - [] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 17/08/2013 - 17:07:03 - [] ----D C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 13/06/2011 - 12:24:11 - [0] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 20/03/2013 - 19:40:31 - [] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 11/12/2012 - 19:26:01 - [] ----D C:\Program Files (x86)\Common Files\TI Shared
O43 - CFD: 24/07/2010 - 08:07:26 - [] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 13/10/2013 - 18:41:07 - [] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 18/08/2014 - 20:48:48 - [] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 24/09/2013 - 12:44:58 - [] ----D C:\ProgramData\Ableton
O43 - CFD: 14/01/2014 - 16:00:29 - [] ----D C:\ProgramData\Adobe
O43 - CFD: 29/11/2012 - 00:20:47 - [] ----D C:\ProgramData\Ahead
O43 - CFD: 24/02/2014 - 21:20:52 - [] ----D C:\ProgramData\Apple
O43 - CFD: 16/07/2011 - 11:44:25 - [] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Application Data
O43 - CFD: 23/05/2014 - 13:11:56 - [] ----D C:\ProgramData\Arturia
O43 - CFD: 07/01/2012 - 13:18:56 - [] ----D C:\ProgramData\ATI
O43 - CFD: 23/08/2014 - 10:33:47 - [] ----D C:\ProgramData\Avira
O43 - CFD: 30/05/2011 - 18:03:47 - [] -SH-D C:\ProgramData\Bureau
O43 - CFD: 04/11/2012 - 00:08:57 - [] ----D C:\ProgramData\Codemasters
O43 - CFD: 15/01/2012 - 18:49:17 - [] ----D C:\ProgramData\Corel
O43 - CFD: 15/01/2012 - 18:51:49 - [0] ----D C:\ProgramData\Corel Painter 12.1 Update
O43 - CFD: 24/02/2014 - 15:01:19 - [] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/05/2012 - 23:02:45 - [] ----D C:\ProgramData\DAEMON Tools Lite =>.DT Soft Ltd
O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Desktop
O43 - CFD: 06/09/2012 - 19:16:22 - [] ----D C:\ProgramData\DivX
O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Documents
O43 - CFD: 19/08/2010 - 02:12:33 - [] ----D C:\ProgramData\Downloaded Installations
O43 - CFD: 13/06/2011 - 14:26:50 - [] -SH-D C:\ProgramData\DSS
O43 - CFD: 20/12/2011 - 20:25:24 - [] ----D C:\ProgramData\EA Core
O43 - CFD: 12/08/2013 - 21:08:05 - [] ----D C:\ProgramData\EA Logs
O43 - CFD: 20/12/2011 - 20:25:26 - [] ----D C:\ProgramData\Electronic Arts
O43 - CFD: 30/05/2011 - 18:03:47 - [] -SH-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Favorites
O43 - CFD: 27/12/2011 - 00:53:57 - [] ----D C:\ProgramData\FloodLightGames
O43 - CFD: 24/02/2014 - 21:30:13 - [] ----D C:\ProgramData\Google
O43 - CFD: 19/08/2010 - 02:28:55 - [] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 26/09/2012 - 19:00:37 - [] ----D C:\ProgramData\Installations
O43 - CFD: 01/05/2012 - 21:10:22 - [] ----D C:\ProgramData\InstallShield
O43 - CFD: 19/05/2014 - 14:24:05 - [] ----D C:\ProgramData\KORG
O43 - CFD: 19/01/2012 - 20:08:13 - [] ----D C:\ProgramData\LightScribe
O43 - CFD: 19/08/2010 - 02:12:39 - [] ----D C:\ProgramData\Macrovision
O43 - CFD: 27/12/2013 - 00:05:46 - [] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 03/03/2014 - 23:44:23 - [] ----D C:\ProgramData\McNeel
O43 - CFD: 30/05/2011 - 18:03:47 - [] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 24/02/2014 - 02:20:21 - [] -S--D C:\ProgramData\Microsoft
O43 - CFD: 30/05/2011 - 18:03:47 - [] -SH-D C:\ProgramData\Modèles
O43 - CFD: 18/06/2014 - 12:00:27 - [] ----D C:\ProgramData\Native Instruments
O43 - CFD: 25/02/2014 - 23:18:50 - [] ----D C:\ProgramData\NCH Software
O43 - CFD: 29/11/2012 - 00:18:49 - [] ----D C:\ProgramData\Nero
O43 - CFD: 13/06/2011 - 12:25:33 - [] ----D C:\ProgramData\Norton
O43 - CFD: 19/08/2010 - 02:05:56 - [] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 20/05/2014 - 23:25:30 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 04/08/2014 - 13:20:12 - [] ----D C:\ProgramData\Orbit
O43 - CFD: 11/08/2014 - 15:41:40 - [] ----D C:\ProgramData\Origin
O43 - CFD: 14/01/2014 - 16:18:10 - [] ----D C:\ProgramData\PACE Anti-Piracy
O43 - CFD: 13/09/2014 - 03:49:44 - [] ----D C:\ProgramData\Package Cache
O43 - CFD: 15/01/2012 - 18:52:31 - [] ----D C:\ProgramData\Protexis64
O43 - CFD: 14/01/2014 - 16:00:36 - [] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 17/01/2012 - 23:59:25 - [] -SH-D C:\ProgramData\SecuROM
O43 - CFD: 13/05/2014 - 15:07:53 - [] ----D C:\ProgramData\Skype
O43 - CFD: 07/06/2011 - 18:20:34 - [] ----D C:\ProgramData\Solidshield
O43 - CFD: 12/06/2013 - 08:50:02 - [] ----D C:\ProgramData\SP_FT_Logs
O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 04/08/2014 - 00:21:59 - [] ----D C:\ProgramData\Steam
O43 - CFD: 24/07/2010 - 10:27:46 - [] ----D C:\ProgramData\Sun
O43 - CFD: 09/02/2014 - 23:15:24 - [] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 07:08:56 - [] -SH-D C:\ProgramData\Templates
O43 - CFD: 20/11/2012 - 00:14:58 - [] ----D C:\ProgramData\Ubisoft
O43 - CFD: 31/05/2011 - 18:13:01 - [] ----D C:\ProgramData\VirtualizedApplications
O43 - CFD: 27/12/2011 - 00:53:45 - [] ----D C:\ProgramData\WildTangent
O43 - CFD: 21/05/2014 - 20:03:03 - [] --H-D C:\ProgramData\{0EB7C0FC-5BF4-474E-B5F9-A6E991727B3E}
O43 - CFD: 03/08/2014 - 21:43:27 - [] --H-D C:\ProgramData\{30FA7941-4170-4C83-A9A8-FDF01C431704}
O43 - CFD: 03/08/2014 - 21:43:50 - [] --H-D C:\ProgramData\{32849BA1-784B-4E0B-BB8F-AABEE988E2B0}
O43 - CFD: 03/08/2014 - 21:44:04 - [] --H-D C:\ProgramData\{6495CC1D-C10B-40C5-A92B-241A2B2C8D20}
O43 - CFD: 03/08/2014 - 21:43:38 - [] --H-D C:\ProgramData\{7F3144B7-67AA-4DD7-BC11-CBA9A40B430D}
O43 - CFD: 24/07/2010 - 10:54:09 - [] ----D C:\ProgramData\{8D274659-3D84-4410-A197-C170D180BC76}
O43 - CFD: 16/07/2011 - 11:44:45 - [] ----D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 03/08/2014 - 21:43:07 - [] --H-D C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14}
O43 - CFD: 03/08/2014 - 21:44:50 - [] --H-D C:\ProgramData\{D9BC4C8F-B86F-45C8-A961-B9FF0910DE40}
O43 - CFD: 03/08/2014 - 21:43:58 - [] --H-D C:\ProgramData\{F57C376F-E7ED-4527-9EE2-4D50799418BC}
O43 - CFD: 22/05/2014 - 20:35:47 - [] ----D C:\Users\Pietro\AppData\Roaming\.minecraft
O43 - CFD: 27/09/2013 - 21:36:25 - [] ----D C:\Users\Pietro\AppData\Roaming\Ableton
O43 - CFD: 20/05/2012 - 23:19:05 - [0] ----D C:\Users\Pietro\AppData\Roaming\AccurateRip
O43 - CFD: 23/01/2014 - 01:41:00 - [] ----D C:\Users\Pietro\AppData\Roaming\Adobe
O43 - CFD: 29/11/2012 - 00:22:13 - [] ----D C:\Users\Pietro\AppData\Roaming\Ahead
O43 - CFD: 24/04/2012 - 14:10:18 - [] ----D C:\Users\Pietro\AppData\Roaming\Apple Computer
O43 - CFD: 30/05/2011 - 18:10:51 - [] ----D C:\Users\Pietro\AppData\Roaming\ATI
O43 - CFD: 22/11/2012 - 10:27:17 - [] ----D C:\Users\Pietro\AppData\Roaming\Avira
O43 - CFD: 17/10/2012 - 22:25:33 - [] ----D C:\Users\Pietro\AppData\Roaming\Azureus =>P2P.Azureus
O43 - CFD: 04/08/2014 - 11:45:17 - [] ----D C:\Users\Pietro\AppData\Roaming\BitComet =>P2P.BitComet
O43 - CFD: 16/09/2014 - 11:37:32 - [] ----D C:\Users\Pietro\AppData\Roaming\BitTorrent =>P2P.BitTorrent
O43 - CFD: 03/08/2014 - 21:52:58 - [] ----D C:\Users\Pietro\AppData\Roaming\Blue Cat Audio
O43 - CFD: 17/10/2012 - 22:28:32 - [] ----D C:\Users\Pietro\AppData\Roaming\cacaoweb =>PUP.CacaoWeb
O43 - CFD: 15/01/2012 - 18:52:28 - [] ----D C:\Users\Pietro\AppData\Roaming\Corel
O43 - CFD: 16/12/2012 - 17:23:43 - [] ----D C:\Users\Pietro\AppData\Roaming\Cyberduck
O43 - CFD: 03/11/2012 - 10:34:00 - [] -SH-D C:\Users\Pietro\AppData\Roaming\Cyberduck Updater AU
O43 - CFD: 31/05/2011 - 08:47:17 - [] ----D C:\Users\Pietro\AppData\Roaming\CyberLink
O43 - CFD: 24/10/2013 - 00:21:12 - [] ----D C:\Users\Pietro\AppData\Roaming\Cycling '74
O43 - CFD: 17/10/2012 - 22:25:40 - [] ----D C:\Users\Pietro\AppData\Roaming\DAEMON Tools Lite =>.DT Soft Ltd
O43 - CFD: 30/05/2011 - 18:04:20 - [] ----D C:\Users\Pietro\AppData\Roaming\DigitalPersona
O43 - CFD: 16/09/2014 - 11:37:14 - [] ----D C:\Users\Pietro\AppData\Roaming\Dropbox
O43 - CFD: 17/10/2012 - 22:25:33 - [] ----D C:\Users\Pietro\AppData\Roaming\FileZilla
O43 - CFD: 27/12/2011 - 00:53:57 - [] ----D C:\Users\Pietro\AppData\Roaming\FloodLightGames
O43 - CFD: 15/10/2012 - 19:13:45 - [0] ----D C:\Users\Pietro\AppData\Roaming\fltk.org
O43 - CFD: 20/05/2013 - 22:41:13 - [] ----D C:\Users\Pietro\AppData\Roaming\GoforFiles =>P2P.GoforFiles
O43 - CFD: 24/02/2014 - 21:32:29 - [] ----D C:\Users\Pietro\AppData\Roaming\Google
O43 - CFD: 26/03/2014 - 12:48:06 - [] ----D C:\Users\Pietro\AppData\Roaming\Grasshopper
O43 - CFD: 19/03/2014 - 17:55:33 - [] ----D C:\Users\Pietro\AppData\Roaming\Hewlett-Packard
O43 - CFD: 15/05/2012 - 15:03:23 - [] ----D C:\Users\Pietro\AppData\Roaming\hpqLog
O43 - CFD: 30/05/2011 - 18:09:25 - [] ----D C:\Users\Pietro\AppData\Roaming\Identities
O43 - CFD: 01/06/2014 - 01:45:05 - [] ----D C:\Users\Pietro\AppData\Roaming\IDoser
O43 - CFD: 23/01/2013 - 21:27:30 - [] ----D C:\Users\Pietro\AppData\Roaming\ImgBurn
O43 - CFD: 13/01/2012 - 00:35:48 - [] ----D C:\Users\Pietro\AppData\Roaming\inkscape
O43 - CFD: 01/05/2012 - 21:10:22 - [] ----D C:\Users\Pietro\AppData\Roaming\InstallShield
O43 - CFD: 08/05/2014 - 12:19:58 - [] ----D C:\Users\Pietro\AppData\Roaming\iZotope
O43 - CFD: 19/05/2014 - 14:24:29 - [] ----D C:\Users\Pietro\AppData\Roaming\KORG
O43 - CFD: 31/05/2011 - 18:43:14 - [] ----D C:\Users\Pietro\AppData\Roaming\Leadertech
O43 - CFD: 26/03/2012 - 19:17:56 - [] ----D C:\Users\Pietro\AppData\Roaming\LibreOffice
O43 - CFD: 30/05/2011 - 18:10:35 - [] ----D C:\Users\Pietro\AppData\Roaming\Macromedia
O43 - CFD: 30/05/2011 - 18:58:27 - [] ----D C:\Users\Pietro\AppData\Roaming\Macrovision
O43 - CFD: 27/12/2013 - 00:06:24 - [] ----D C:\Users\Pietro\AppData\Roaming\Malwarebytes
O43 - CFD: 03/03/2014 - 23:44:04 - [] ----D C:\Users\Pietro\AppData\Roaming\McNeel
O43 - CFD: 19/08/2010 - 11:34:20 - [0] ----D C:\Users\Pietro\AppData\Roaming\Media Center Programs
O43 - CFD: 11/01/2014 - 12:54:53 - [] -S--D C:\Users\Pietro\AppData\Roaming\Microsoft
O43 - CFD: 06/06/2014 - 09:07:47 - [] ----D C:\Users\Pietro\AppData\Roaming\Mozilla
O43 - CFD: 25/02/2014 - 23:18:30 - [] ----D C:\Users\Pietro\AppData\Roaming\NCH Software
O43 - CFD: 23/01/2012 - 00:00:37 - [] ----D C:\Users\Pietro\AppData\Roaming\New Technology Studio
O43 - CFD: 13/08/2013 - 14:31:31 - [] ----D C:\Users\Pietro\AppData\Roaming\Origin
O43 - CFD: 14/01/2014 - 16:18:10 - [] ----D C:\Users\Pietro\AppData\Roaming\PACE Anti-Piracy
O43 - CFD: 14/01/2014 - 16:08:27 - [] ----D C:\Users\Pietro\AppData\Roaming\PDAppFlex
O43 - CFD: 07/06/2011 - 18:14:40 - [] ----D C:\Users\Pietro\AppData\Roaming\PunkBuster
O43 - CFD: 16/02/2014 - 03:19:53 - [] ----D C:\Users\Pietro\AppData\Roaming\REAPER
O43 - CFD: 31/05/2011 - 22:40:54 - [] R-H-D C:\Users\Pietro\AppData\Roaming\SecuROM
O43 - CFD: 07/07/2014 - 02:36:32 - [] ----D C:\Users\Pietro\AppData\Roaming\Skype
O43 - CFD: 13/09/2012 - 18:54:50 - [] ----D C:\Users\Pietro\AppData\Roaming\skypePM
O43 - CFD: 10/02/2013 - 00:38:14 - [] ----D C:\Users\Pietro\AppData\Roaming\SoftGrid Client
O43 - CFD: 14/01/2014 - 16:10:05 - [] ----D C:\Users\Pietro\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 30/05/2011 - 22:07:19 - [0] ----D C:\Users\Pietro\AppData\Roaming\TP
O43 - CFD: 04/11/2013 - 14:32:54 - [] ----D C:\Users\Pietro\AppData\Roaming\U3
O43 - CFD: 12/02/2014 - 12:53:56 - [] ----D C:\Users\Pietro\AppData\Roaming\vlc
O43 - CFD: 09/05/2014 - 17:05:50 - [] ----D C:\Users\Pietro\AppData\Roaming\Waves Audio
O43 - CFD: 30/05/2011 - 18:48:55 - [] ----D C:\Users\Pietro\AppData\Roaming\WildTangent
O43 - CFD: 21/10/2012 - 17:22:45 - [] ----D C:\Users\Pietro\AppData\Roaming\WinRAR
O43 - CFD: 15/01/2012 - 12:06:28 - [] ----D C:\Users\Pietro\AppData\Roaming\WTablet
O43 - CFD: 02/10/2012 - 19:53:35 - [] -SH-D C:\Users\Pietro\AppData\Roaming\wyUpdate AU
O43 - CFD: 09/10/2012 - 23:11:17 - [] ----D C:\Users\Pietro\AppData\Roaming\XBMC
O43 - CFD: 16/09/2014 - 12:42:13 - [] ----D C:\Users\Pietro\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 26/01/2012 - 00:17:19 - [] ----D C:\Users\Pietro\AppData\Roaming\_MDLogs
O43 - CFD: 09/10/2013 - 13:34:28 - [] ----D C:\Users\Pietro\AppData\Local\2K Games
O43 - CFD: 03/03/2014 - 23:46:08 - [] ----D C:\Users\Pietro\AppData\Local\3dmouse
O43 - CFD: 05/06/2011 - 23:26:43 - [] ----D C:\Users\Pietro\AppData\Local\Activision
O43 - CFD: 15/09/2014 - 11:04:25 - [] ----D C:\Users\Pietro\AppData\Local\Adobe
O43 - CFD: 07/01/2013 - 18:41:52 - [] ----D C:\Users\Pietro\AppData\Local\Ahead
O43 - CFD: 16/07/2011 - 11:43:18 - [] ----D C:\Users\Pietro\AppData\Local\Apple
O43 - CFD: 02/04/2012 - 20:35:34 - [] ----D C:\Users\Pietro\AppData\Local\Apple Computer
O43 - CFD: 30/05/2011 - 18:04:04 - [] -SH-D C:\Users\Pietro\AppData\Local\Application Data
O43 - CFD: 19/01/2012 - 23:39:27 - [] ----D C:\Users\Pietro\AppData\Local\Apps
O43 - CFD: 30/05/2011 - 18:10:51 - [] ----D C:\Users\Pietro\AppData\Local\ATI
O43 - CFD: 14/01/2014 - 16:18:10 - [] --H-D C:\Users\Pietro\AppData\Local\bcHp0rVUBgY3
O43 - CFD: 30/05/2011 - 18:10:05 - [] ----D C:\Users\Pietro\AppData\Local\Broadcom
O43 - CFD: 30/05/2014 - 15:39:09 - [0] --HAD C:\Users\Pietro\AppData\Local\c7lzC3DpeNimv
O43 - CFD: 16/06/2011 - 00:30:46 - [] ----D C:\Users\Pietro\AppData\Local\CAPCOM
O43 - CFD: 04/11/2012 - 00:21:34 - [0] ----D C:\Users\Pietro\AppData\Local\Conduit
O43 - CFD: 14/09/2014 - 22:03:36 - [] ----D C:\Users\Pietro\AppData\Local\CrashDumps
O43 - CFD: 12/06/2011 - 11:25:42 - [] ----D C:\Users\Pietro\AppData\Local\CyberLink
O43 - CFD: 30/05/2011 - 19:42:27 - [0] ----D C:\Users\Pietro\AppData\Local\Deployment
O43 - CFD: 13/01/2014 - 09:04:09 - [0] ----D C:\Users\Pietro\AppData\Local\Diagnostics
O43 - CFD: 30/05/2011 - 18:04:20 - [] ----D C:\Users\Pietro\AppData\Local\DigitalPersona
O43 - CFD: 13/04/2014 - 01:37:22 - [0] ----D C:\Users\Pietro\AppData\Local\ElevatedDiagnostics
O43 - CFD: 21/12/2011 - 20:45:26 - [] ----D C:\Users\Pietro\AppData\Local\ESN Sonar
O43 - CFD: 21/02/2012 - 14:08:45 - [] ----D C:\Users\Pietro\AppData\Local\Facebook
O43 - CFD: 04/08/2014 - 14:52:26 - [] ----D C:\Users\Pietro\AppData\Local\Game Updater
O43 - CFD: 27/04/2012 - 13:17:14 - [] ----D C:\Users\Pietro\AppData\Local\Google
O43 - CFD: 25/06/2011 - 22:17:23 - [] ----D C:\Users\Pietro\AppData\Local\Hewlett-Packard
O43 - CFD: 30/05/2011 - 18:04:04 - [] -SH-D C:\Users\Pietro\AppData\Local\Historique
O43 - CFD: 28/02/2012 - 21:14:24 - [0] ----D C:\Users\Pietro\AppData\Local\HP MediaSmart Video
O43 - CFD: 03/03/2014 - 23:44:10 - [] ----D C:\Users\Pietro\AppData\Local\McNeel
O43 - CFD: 15/12/2013 - 12:44:33 - [] ----D C:\Users\Pietro\AppData\Local\Microsoft
O43 - CFD: 27/12/2011 - 00:49:36 - [] ----D C:\Users\Pietro\AppData\Local\Microsoft Games
O43 - CFD: 03/08/2014 - 21:46:17 - [] ----D C:\Users\Pietro\AppData\Local\Native Instruments
O43 - CFD: 13/08/2013 - 14:31:31 - [] ----D C:\Users\Pietro\AppData\Local\Origin
O43 - CFD: 24/10/2013 - 00:20:39 - [0] ----D C:\Users\Pietro\AppData\Local\PACE Anti-Piracy
O43 - CFD: 07/01/2013 - 19:04:02 - [] ----D C:\Users\Pietro\AppData\Local\Padus
O43 - CFD: 12/06/2011 - 11:25:41 - [] ----D C:\Users\Pietro\AppData\Local\PowerCinema
O43 - CFD: 23/10/2013 - 12:04:28 - [] ----D C:\Users\Pietro\AppData\Local\Programs
O43 - CFD: 04/01/2012 - 19:42:41 - [] ----D C:\Users\Pietro\AppData\Local\PunkBuster
O43 - CFD: 24/10/2013 - 00:21:53 - [] --H-D C:\Users\Pietro\AppData\Local\RD3TYz0xRKtI47
O43 - CFD: 17/01/2012 - 23:59:06 - [] ----D C:\Users\Pietro\AppData\Local\Rockstar Games
O43 - CFD: 04/08/2014 - 11:29:34 - [] ----D C:\Users\Pietro\AppData\Local\Setup Integrity Check
O43 - CFD: 07/08/2014 - 13:15:00 - [] ----D C:\Users\Pietro\AppData\Local\SKIDROW
O43 - CFD: 14/11/2012 - 21:17:38 - [] ----D C:\Users\Pietro\AppData\Local\Skyrim
O43 - CFD: 30/05/2011 - 22:07:10 - [] ----D C:\Users\Pietro\AppData\Local\SoftGrid Client
O43 - CFD: 18/06/2014 - 11:41:37 - [] ----D C:\Users\Pietro\AppData\Local\Sonic Charge
O43 - CFD: 16/09/2014 - 12:41:58 - [] ----D C:\Users\Pietro\AppData\Local\Temp
O43 - CFD: 30/05/2011 - 18:04:04 - [] -SH-D C:\Users\Pietro\AppData\Local\Temporary Internet Files
O43 - CFD: 01/05/2012 - 21:14:05 - [] ----D C:\Users\Pietro\AppData\Local\Ubisoft
O43 - CFD: 04/02/2012 - 00:00:18 - [] ----D C:\Users\Pietro\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 24/10/2013 - 00:21:53 - [] --H-D C:\Users\Pietro\AppData\Local\V6h8F1zbPxy
O43 - CFD: 18/10/2012 - 21:18:01 - [] ----D C:\Users\Pietro\AppData\Local\VirtualStore
O43 - CFD: 02/11/2012 - 00:07:41 - [] ----D C:\Users\Pietro\AppData\Local\WBFSManager
O43 - CFD: 08/06/2011 - 20:32:49 - [] R---D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 16/08/2014 - 10:52:13 - [] R---D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 23/05/2014 - 13:11:23 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Arturia
O43 - CFD: 07/12/2012 - 22:34:30 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aspyr Media, Inc
O43 - CFD: 07/06/2011 - 18:57:40 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bink and Smacker
O43 - CFD: 09/05/2014 - 17:48:04 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blue Cat Audio
O43 - CFD: 15/08/2014 - 11:23:32 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 26/03/2014 - 13:00:15 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 07/12/2011 - 13:07:35 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps
O43 - CFD: 04/08/2014 - 19:27:21 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 16/01/2013 - 00:19:13 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 08/05/2014 - 12:05:11 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iZotope
O43 - CFD: 14/07/2009 - 06:49:38 - [] R---D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 02/01/2014 - 18:58:19 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mandelbulber
O43 - CFD: 23/01/2012 - 00:00:38 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenIV
O43 - CFD: 23/04/2012 - 19:20:54 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\project64 1.6
O43 - CFD: 14/09/2014 - 13:39:45 - [] R---D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 01/01/2012 - 16:08:08 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 19/11/2012 - 23:13:44 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 21/06/2012 - 01:32:58 - [0] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlock Root
O43 - CFD: 02/11/2012 - 00:01:42 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WBFS Manager
O43 - CFD: 19/01/2012 - 23:39:29 - [] ----D C:\Users\Pietro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
~ Program Folder: 352 Scanned in 00mn 04s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.860528C9E50AB84935843B23A80E665E] - 12/09/2014 - 19:55:12 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [404480]
O44 - LFC:[MD5.A347EF56B7CD8360B3EF7772FEA597B9] - 12/09/2014 - 19:55:12 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3163648]
O44 - LFC:[MD5.EE4B105F1DBE1E864AFC72E7F0315432] - 12/09/2014 - 19:55:21 ---A- . (.Microsoft Corporation - DLL serveur LSA.) -- C:\Windows\System32\lsasrv.dll [1460736]
O44 - LFC:[MD5.33EF550DCCC58C93F5B65FD75BAD9832] - 12/09/2014 - 19:55:21 ---A- . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll [728064]
O44 - LFC:[MD5.224C2EEBAAF39CD93DE5332DBE5E5A95] - 12/09/2014 - 19:55:41 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [2565120]
O44 - LFC:[MD5.EFF3FF9D9E5BFD2A05390D959A1C3AD0] - 12/09/2014 - 19:55:53 ---A- . (.Microsoft Corporation - Composant Connexion RemoteApp et Bureau à d.) -- C:\Windows\System32\TSWorkspace.dll [1031168]
O44 - LFC:[MD5.3469B9FAE899139FEE7356E91693376A] - 13/09/2014 - 02:05:20 ---A- . (.Microsoft Corporation - Microsoft DTV-DVD Video Decoder.) -- C:\Windows\System32\msmpeg2vdec.dll [2777088]
O44 - LFC:[MD5.2EE09459E0CB27902F9BC8F8F2D70811] - 13/09/2014 - 02:08:29 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1818934]
O44 - LFC:[MD5.51E2CD68144BA66C813D5C217CF3A8A5] - 13/09/2014 - 02:08:40 ---A- . (...) -- C:\Windows\System32\perfc009.dat [141806]
O44 - LFC:[MD5.DBD9CF9219466DEA706ABF0DDCA914C7] - 13/09/2014 - 02:08:40 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [175484]
O44 - LFC:[MD5.3002AF12A44E171BFBAD8BF695DFFB75] - 13/09/2014 - 02:08:40 ---A- . (...) -- C:\Windows\System32\perfh009.dat [712628]
O44 - LFC:[MD5.5350A55E03CA209D0232BFD8A4062BAB] - 13/09/2014 - 02:08:40 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [815858]
O44 - LFC:[MD5.BA56C68CCB912C4C08C97DD32C47AD31] - 13/09/2014 - 02:11:04 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13588480]
O44 - LFC:[MD5.FECA80905D551074E1A9298BD98103B7] - 13/09/2014 - 02:11:08 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1447424]
O44 - LFC:[MD5.97752927B6E2401011A96E0D6082E403] - 13/09/2014 - 02:11:08 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [2104832]
O44 - LFC:[MD5.F6304AACC5744016770C8C797CAA2AF7] - 13/09/2014 - 02:11:09 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [5833728]
O44 - LFC:[MD5.39EBB9708453036A74C30C9A294023FF] - 13/09/2014 - 02:11:10 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2310656]
O44 - LFC:[MD5.75498A52C2AE248DEE5BDF5209768963] - 13/09/2014 - 02:11:12 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2793984]
O44 - LFC:[MD5.698C19E198F832E071778A1427E942C8] - 13/09/2014 - 02:11:17 ---A- . (.Microsoft Corporation - IE ETW Collector Service.) -- C:\Windows\System32\ieetwcollector.exe [111616]
O44 - LFC:[MD5.5A0C72B9D3CCA42D8AB74890C19443B2] - 13/09/2014 - 02:11:17 ---A- . (.Microsoft Corporation - Microsoft Spell Checking Facility.) -- C:\Windows\System32\MsSpellCheckingFacility.exe [940032]
O44 - LFC:[MD5.227303FC6E95547EA274F4337BBC7278] - 13/09/2014 - 02:11:18 ---A- . (.Microsoft Corporation - IE ETW Collector Proxy Stub Resources.) -- C:\Windows\System32\ieetwproxystub.dll [48640]
O44 - LFC:[MD5.4C8838D7C13E9080AF4B548CA791896B] - 13/09/2014 - 02:11:18 ---A- . (.Microsoft Corporation - Microsoft (R) HTML Media DLL.) -- C:\Windows\System32\mshtmlmedia.dll [1249280]
O44 - LFC:[MD5.1439630B47D717960D59423958754394] - 13/09/2014 - 02:11:18 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [775168]
O44 - LFC:[MD5.920BD93A0B64657A20CA66C2EBB167EA] - 13/09/2014 - 02:11:19 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [23591424]
O44 - LFC:[MD5.68B0077C0D09D1B669A260F2921FD6B9] - 13/09/2014 - 02:11:21 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [66048]
O44 - LFC:[MD5.C07D636B0237172345E68AE8B70A2984] - 13/09/2014 - 02:11:21 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [51200]
O44 - LFC:[MD5.2AEFBA4339A34C8EF021B49D23D1F1DF] - 13/09/2014 - 02:11:21 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [727040]
O44 - LFC:[MD5.A1BB4CFB25F7CE1D4F67DD71111823AA] - 13/09/2014 - 02:11:21 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [374968]
O44 - LFC:[MD5.33BAC6F66DB5FE5F7E20D41B025F490E] - 13/09/2014 - 02:11:21 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [707072]
O44 - LFC:[MD5.E76C23C71345ACBC65ED8F6E87AD01D1] - 13/09/2014 - 02:11:22 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [195584]
O44 - LFC:[MD5.641068C626DE3AD348871D0D7931A3FA] - 13/09/2014 - 02:11:22 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [547328]
O44 - LFC:[MD5.C067D863FCD53B91A5BF78AE1CE88E54] - 13/09/2014 - 02:11:22 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [85504]
O44 - LFC:[MD5.EF79F0B9E0F277F5797C475DF4248B97] - 13/09/2014 - 02:11:23 ---A- . (.Microsoft Corporation - DAC for Trident DOM.) -- C:\Windows\System32\MshtmlDac.dll [83968]
O44 - LFC:[MD5.EE6B22396FA99639A163B1B7E9736669] - 13/09/2014 - 02:11:23 ---A- . (.Microsoft Corporation - IE ETW Collector Service Resources.) -- C:\Windows\System32\ieetwcollectorres.dll [4096]
O44 - LFC:[MD5.0113777A28BEC88A50C2566F346E4B58] - 13/09/2014 - 02:11:23 ---A- . (.Microsoft Corporation - JavaScript Performance Collection Agent.) -- C:\Windows\System32\JavaScriptCollectionAgent.dll [72704]
O44 - LFC:[MD5.305D5395A65D00C74A94AEA40E9909E9] - 13/09/2014 - 02:11:23 ---A- . (.Microsoft Corporation - Microsoft ® JScript Diagnostics.) -- C:\Windows\System32\jscript9diag.dll [758272]
O44 - LFC:[MD5.2D95BDB699FA1D531B642EA18464FE05] - 13/09/2014 - 02:11:23 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [139264]
O44 - LFC:[MD5.A0600300428AB73664050659E738F11F] - 13/09/2014 - 02:11:23 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33792]
O44 - LFC:[MD5.1BE1D1942825BE2146941DA274D2B92F] - 13/09/2014 - 02:11:25 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2724864]
O44 - LFC:[MD5.9EFF09364ABDC86770FA0B1BCC9CA3C3] - 13/09/2014 - 02:11:27 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [596480]
O44 - LFC:[MD5.A1BA647C84BDA11F8680E0682B33917D] - 13/09/2014 - 02:41:56 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [4952784]
O44 - LFC:[MD5.65D8DA83FC5F439BB1521F8531519BBA] - 16/09/2014 - 10:34:23 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.E31E96F9FBD8C5671E6AA314D19C4719] - 16/09/2014 - 10:34:27 ---A- . (...) -- C:\Windows\setupact.log [10108]
O44 - LFC:[MD5.E47BC0EC80EAEECF3361993248AB8C26] - 16/09/2014 - 11:41:18 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1785846]
~ Files: 46 Scanned in 01mn 22s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.DigitalPersona, Inc. - Password Filter.) -- C:\Windows\System32\DPPassFilter.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ LSA: 10 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 13 Scanned in 00mn 00s



---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{741ff0ce-d6f6-11e0-8cc7-70f395a98bdb}\AutoRun\command. (...) -- F:\autorun.exe (.not file.)
O51 - MPSK:{b6b264ee-1865-11e2-bcb3-a24a03f1e207}\AutoRun\command. (...) -- F:\Setup.exe (.not file.)
O51 - MPSK:{cc32a664-9013-11e0-b7b7-70f395a98bdb}\AutoRun\command. (...) -- H:\Autorun.exe (.not file.)
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"VIDC.FPS1"="frapsv64.dll" . (.Beepa P/L - Fraps.) -- C:\Windows\System32\frapsv64.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"frapsv64.dll"="Fraps Video Decompressor" . (.Beepa P/L - Fraps.) -- C:\Windows\System32\frapsv64.dll
~ TDSD: 4 Scanned in 00mn 01s



---\\ Enumération des clés de registre StartupReg (SMSR) (O53)
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\Adobe Creative Cloud [Key] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\AdobeCS6ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
O53 - SMSR:HKLM\...\startupreg\BitTorrent [Key] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
O53 - SMSR:HKLM\...\startupreg\cacaoweb [Key] . (...) -- C:\Users\Pietro\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb
O53 - SMSR:HKLM\...\startupreg\Facebook Update [Key] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Pietro\AppData\Local\Facebook\Update\FacebookUpdate.exe
O53 - SMSR:HKLM\...\startupreg\HPAdvisorDock [Key] . (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\LightScribe Control Panel [Key] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
O53 - SMSR:HKLM\...\startupreg\Norton Online Backup [Key] . (...) -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe (.not file.) =>.Symantec Corporation
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- C:\Program Files (x86)\Steam\steam.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O53 - SMSR:HKLM\...\startupreg\VirtualCloneDrive [Key] . (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe =>.Elaborate Bytes AG
O53 - SMSR:HKLM\...\startupreg\XboxStat [Key] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
~ SMSR Keys: 16 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0
~ MWPS: 19 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "EnableShellExecuteHooks"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "AllowLegacyWebView"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "AllowUnhashedWebView"=1
~ MWPE Keys: 6 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:08/07/2009 - 11:48:50 ---A- . (.Hewlett-Packard - HP Accelerometer.) -- C:\Windows\System32\Drivers\Accelerometer.sys [41272]
O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536]
O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864]
O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440]
O58 - SDL:11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904]
O58 - SDL:14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128]
O58 - SDL:11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008]
O58 - SDL:21/08/2009 - 16:41:02 ---A- . (.Google Inc - ADB Interface.) -- C:\Windows\System32\Drivers\androidusb.sys [31744]
O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632]
O58 - SDL:14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856]
O58 - SDL:06/05/2010 - 14:21:46 ---A- . (.ATI Technologies, Inc. - ATI High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\AtiHdmi.sys [125456]
O58 - SDL:08/09/2010 - 23:45:34 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [7767552]
O58 - SDL:08/09/2010 - 22:52:50 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [279040]
O58 - SDL:20/07/2014 - 21:27:09 ---A- . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\Drivers\avgntflt.sys [117712] =>.Avira Operations GmbH
O58 - SDL:02/06/2014 - 12:20:08 ---A- . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\Drivers\avipbb.sys [130584] =>.Avira Operations GmbH
O58 - SDL:27/11/2013 - 11:22:33 ---A- . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\Drivers\avkmgr.sys [28600] =>.Avira Operations GmbH
O58 - SDL:20/07/2014 - 21:27:11 ---A- . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\Drivers\avnetflt.sys [42040] =>.Avira Operations GmbH
O58 - SDL:10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848]
O58 - SDL:19/08/2010 - 00:49:08 ---A- . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless driver.) -- C:\Windows\System32\Drivers\BCMWL664.SYS [3063360]
O58 - SDL:10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432]
O58 - SDL:10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704]
O58 - SDL:14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720]
O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104]
O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976]
O58 - SDL:10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720]
O58 - SDL:06/04/2010 - 17:32:46 ---A- . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\Windows\System32\Drivers\BtHidBus.sys [23944]
O58 - SDL:06/04/2010 - 17:33:10 ---A- . (...) -- C:\Windows\System32\Drivers\btnetBus.sys [30088]
O58 - SDL:10/06/2010 - 02:24:24 ---A- . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter for Windows Vista.) -- C:\Windows\System32\Drivers\btwampfl.sys [342056]
O58 - SDL:10/06/2010 - 02:23:32 ---A- . (.Broadcom Corporation. - Bluetooth Audio Device.) -- C:\Windows\System32\Drivers\btwaudio.sys [102952]
O58 - SDL:10/06/2010 - 02:23:32 ---A- . (.Broadcom Corporation. - Broadcom Bluetooth AVDT Service.) -- C:\Windows\System32\Drivers\btwavdt.sys [135720]
O58 - SDL:10/06/2010 - 02:23:34 ---A- . (.Broadcom Corporation. - Broadcom Bluetooth L2CAP Service.) -- C:\Windows\System32\Drivers\btwl2cap.sys [39464]
O58 - SDL:10/06/2010 - 02:23:34 ---A- . (.Broadcom Corporation. - Bluetooth Remote Control HID Minidriver.) -- C:\Windows\System32\Drivers\btwrchid.sys [21544]
O58 - SDL:10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480]
O58 - SDL:24/06/2010 - 21:32:52 ---A- . (.Windows (R) Win 7 DDK provider - CyberLink WebCam Virtual Driver.) -- C:\Windows\System32\Drivers\clwvd.sys [32880]
O58 - SDL:14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488]
O58 - SDL:16/12/2010 - 23:58:14 ---A- . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\Windows\System32\Drivers\ElbyCDIO.sys [40816]
O58 - SDL:14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016]
O58 - SDL:21/08/2012 - 12:01:20 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240]
O58 - SDL:10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:01/05/2010 - 02:21:00 ---A- . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344]
O58 - SDL:19/10/2009 - 04:35:40 ---A- . (.Hewlett-Packard - HP AF35 BDA Driver.) -- C:\Windows\System32\Drivers\HPAF35.sys [511104]
O58 - SDL:08/07/2009 - 11:49:08 ---A- . (.Hewlett-Packard - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\Drivers\hpdskflt.sys [30008]
O58 - SDL:16/11/2009 - 07:28:46 ---A- . (.Hewlett-Packard - HP Infrared Receiver Driver.) -- C:\Windows\System32\Drivers\HPIR.sys [93184]
O58 - SDL:20/11/2010 - 14:33:35 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720]
O58 - SDL:13/04/2010 - 08:44:22 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStor.sys [540696]
O58 - SDL:11/03/2011 - 07:41:26 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496]
O58 - SDL:27/07/2010 - 23:10:40 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [10610400]
O58 - SDL:27/07/2010 - 23:10:40 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdpmd64.sys [10610400]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112]
O58 - SDL:17/11/2012 - 06:24:04 ---A- . (.Pas de propriétaire - iLok Kernel Driver File.) -- C:\Windows\System32\Drivers\iLokDrvr.sys [24728]
O58 - SDL:26/10/2009 - 21:39:44 ---A- . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\Drivers\Impcd.sys [151936]
O58 - SDL:06/04/2010 - 17:32:48 ---A- . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\Windows\System32\Drivers\IvtBtBus.sys [27016]
O58 - SDL:02/08/2010 - 00:00:00 ---A- . (.Google Inc - ADB Interface.) -- C:\Windows\System32\Drivers\lgandadb.sys [31744]
O58 - SDL:02/03/2012 - 16:02:00 ---A- . (.LG Electronics Inc. - LGE Android Platform Driver.) -- C:\Windows\System32\Drivers\lgandbus64.sys [19456]
O58 - SDL:02/03/2012 - 16:02:00 ---A- . (.LG Electronics Inc. - LGE Android Platform Driver.) -- C:\Windows\System32\Drivers\lganddiag64.sys [27648]
O58 - SDL:02/03/2012 - 16:02:00 ---A- . (.LG Electronics Inc. - LGE Android Platform Driver.) -- C:\Windows\System32\Drivers\lgandgps64.sys [27136]
O58 - SDL:02/03/2012 - 16:02:00 ---A- . (.LG Electronics Inc. - LGE Android Platform Driver.) -- C:\Windows\System32\Drivers\lgandmodem64.sys [34304]
O58 - SDL:03/07/2012 - 11:58:00 ---A- . (.Google Inc - ADB Interface.) -- C:\Windows\System32\Drivers\lgandnetadb.sys [31744]
O58 - SDL:04/07/2012 - 13:48:00 ---A- . (.LG Electronics Inc. - LGE AndroidNet USB NDIS Miniport Driver.) -- C:\Windows\System32\Drivers\lgandnetndis64.sys [93184]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776]
O58 - SDL:04/04/2013 - 14:50:32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392]
O58 - SDL:14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736]
O58 - SDL:10/06/2009 - 21:35:28 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\Drivers\netw5v64.sys [5434368]
O58 - SDL:14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264]
O58 - SDL:11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352]
O58 - SDL:11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272]
O58 - SDL:14/08/2009 - 16:09:42 ---A- . (.Qualcomm Inc. - USB/Serial Device Driver.) -- C:\Windows\System32\Drivers\qcusbser.sys [120960]
O58 - SDL:14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816]
O58 - SDL:14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592]
O58 - SDL:05/03/2010 - 06:43:00 ---A- . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt64win7.sys [346144]
O58 - SDL:11/01/2010 - 23:31:04 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\System32\Drivers\RtsUStor.sys [232992]
O58 - SDL:10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040]
O58 - SDL:10/09/2009 - 10:28:26 ---A- . (.Texas Instruments - silvrlnk.sys.) -- C:\Windows\System32\Drivers\silvrlnk.sys [129536]
O58 - SDL:14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584]
O58 - SDL:14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464]
O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:18/06/2010 - 06:10:14 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\Drivers\stwrt64.sys [515584]
O58 - SDL:28/05/2010 - 00:32:56 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [320560]
O58 - SDL:25/02/2010 - 17:51:02 ---A- . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\Drivers\tap0901.sys [29696]
O58 - SDL:17/11/2012 - 06:22:26 ---A- . (.PACE Anti-Piracy, Inc. - 64bit Tpkd Device Driver.) -- C:\Windows\System32\Drivers\Tpkd.sys [105624]
O58 - SDL:13/12/2012 - 13:50:36 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl64.sys [54784]
O58 - SDL:15/01/2011 - 17:21:04 ---A- . (.Elaborate Bytes AG - VirtualCloneCD Driver.) -- C:\Windows\System32\Drivers\VClone.sys [36352]
O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488]
O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872]
O58 - SDL:10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\Drivers\VSTAZL6.SYS [292864]
O58 - SDL:10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\Drivers\VSTCNXT6.SYS [740864]
O58 - SDL:10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\Drivers\VSTDPV6.SYS [1485312]
O58 - SDL:17/03/2011 - 12:10:48 ---A- . (.Wacom Technology - Wacom HID Mouse Monitor Filter Driver.) -- C:\Windows\System32\Drivers\wacmoumonitor.sys [13312]
O58 - SDL:16/02/2007 - 20:12:36 ---A- . (.Wacom Technology - Wacom Mouse Filter Driver.) -- C:\Windows\System32\Drivers\wacommousefilter.sys [12848]
O58 - SDL:22/09/2009 - 00:29:22 ---A- . (.Wacom Technology - Virtual Hid Device.) -- C:\Windows\System32\Drivers\wacomvhid.sys [16168]
O58 - SDL:10/06/2009 - 21:35:33 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\System32\Drivers\yk62x64.sys [389120]
~ Drivers: 97 Scanned in 00mn 01s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 09/09/2014 - 12:44:06 ---A- . (...) -- C:\Users\Pietro\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\37.0.2062.120\37.0.2062.120_36.0.1985.143_chrome_updater.exe [8791120]
O61 - LFC: 12/09/2014 - 12:43:57 ---A- . (.Google Inc..) -- C:\Users\Pietro\AppData\Local\Google\Chrome\Application\37.0.2062.120\Installer\setup.exe [1096520]
O61 - LFC: 12/09/2014 - 12:44:03 ---A- . (...) -- C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.5.671\_platform_specific\win_x86\widevinecdm.dll [7489352]
O61 - LFC: 16/09/2014 - 12:44:20 ---A- . (...) -- C:\Users\Pietro\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppsinv2.dll [43008]
O61 - LFC: 16/09/2014 - 12:44:36 ---A- . (.BitTorrent Inc..) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\updates\7.9.2_33876.exe [1417048] =>P2P.BitTorrent
O61 - LFC: 16/09/2014 - 12:45:42 ---A- . (.Nicolas Coolman.) -- C:\Users\Pietro\Downloads\ZHPDiag2.exe [6861388] =>.Nicolas Coolman
~ 285 Fichiers temporaires (Temporary files)
~ 47 Fichiers cookies (Cookies files)
~ Files: 6 Scanned in 01mn 52s



---\\ Fichiers Alternate Data Stream (ADS) (O62)
O62 - ADS:Alternate Data Stream File - C:\Windows\System32\SpoonUninstall.exe:Zone.Identifier
~ ADS: Scanned in 01mn 18s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 08/09/2010 - C:\Windows\System32\DRIVERS\atikmdag.sys (amdkmdag) .(.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) - LEGACY_AMDKMDAG
O64 - Services: CurCS - 20/07/2014 - C:\Windows\System32\DRIVERS\avgntflt.sys (avgntflt) .(.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) - LEGACY_AVGNTFLT
O64 - Services: CurCS - 02/06/2014 - C:\Windows\System32\DRIVERS\avipbb.sys (avipbb) .(.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB
O64 - Services: CurCS - 27/11/2013 - C:\Windows\System32\DRIVERS\avkmgr.sys (avkmgr) .(.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - LEGACY_AVKMGR
O64 - Services: CurCS - 16/12/2010 - C:\Windows\System32\Drivers\ElbyCDIO.sys (ElbyCDIO) .(.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) - LEGACY_ELBYCDIO
O64 - Services: CurCS - 27/07/2010 - C:\Windows\System32\DRIVERS\igdpmd64.sys (intelkmd) .(.Intel Corporation - Intel Graphics Kernel Mode Driver.) - LEGACY_INTELKMD
O64 - Services: CurCS - 04/04/2013 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
~ Legacy: 90 Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Pietro\AppData\Local\Google\Chrome\Application\chrome.exe
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Pietro\AppData\Local\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {000FA591-FF6B-4277-8B12-8FC8C9BE233B} - (Wikipedia) - http://fr.wikipedia.org
O69 - SBI: SearchScopes [HKCU] {80CB486D-528D-4642-898F-3F0C462F43EC} - (Yahoo) - http://fr.search.yahoo.com
O69 - SBI: SearchScopes [HKCU] {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} - (Web Search) - http://search.conduit.com
O69 - SBI: SearchScopes [HKCU] {C8CA5A2D-AE7D-4517-B863-595E65195DDE} [DefaultScope] - (Bing) - http://www.bing.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les fichiers Crack & Keygen (CKF) (O82)
C:\Users\Pietro\AppData\Roaming\Azureus\torrents\FIFA 11.iso + crack No-DVD + keygen[www.torrent411.com].torrent =>.Crack,Keygen
C:\Users\Pietro\Desktop\Musique\RAP US\FrenchDopeTape vol.3 (frenchdopeboyz.com)\15 Odds Cracked.mp3 =>.Crack,Keygen
C:\Users\Pietro\Downloads\AudioRealism.ABL2.v2.9.1.5.Incl.Keygen-R2R\r2r-1015.rar =>.Crack,Keygen
C:\Users\Pietro\Downloads\Google Sketchup Pro 8.0.16846 (2012) VF (+Keygen).zip =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.M1.v1.7.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.M1.v1.7.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.M1.v1.7.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MDE-X.v1.3.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MDE-X.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MDE-X.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MonoPoly.v1.1.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MonoPoly.v1.1.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MonoPoly.v1.1.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MS-20.v1.3.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MS-20.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MS-20.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.Polysix.v1.3.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.Polysix.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.Polysix.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.WAVESTATION.v1.70.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.WAVESTATION.v1.70.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.WAVESTATION.v1.70.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\VST\Diva.data\Presets\Diva\THIRD PARTY\TREASURE TROVE!\FH Cracker.h2p =>.Crack,Keygen
C:\VST\Diva.data\Presets\Diva\THIRD PARTY\TREASURE TROVE!\KV From the Crackle 3.h2p =>.Crack,Keygen
C:\Users\Pietro\AppData\Roaming\Azureus\torrents\FIFA 11.iso + crack No-DVD + keygen[www.torrent411.com].torrent =>.Crack,Keygen
C:\Users\Pietro\Desktop\Musique\RAP US\FrenchDopeTape vol.3 (frenchdopeboyz.com)\15 Odds Cracked.mp3 =>.Crack,Keygen
C:\Users\Pietro\Downloads\AudioRealism.ABL2.v2.9.1.5.Incl.Keygen-R2R\r2r-1015.rar =>.Crack,Keygen
C:\Users\Pietro\Downloads\Google Sketchup Pro 8.0.16846 (2012) VF (+Keygen).zip =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.M1.v1.7.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.M1.v1.7.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.M1.v1.7.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MDE-X.v1.3.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MDE-X.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MDE-X.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MonoPoly.v1.1.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MonoPoly.v1.1.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MonoPoly.v1.1.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MS-20.v1.3.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MS-20.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.MS-20.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.Polysix.v1.3.0.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.Polysix.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.Polysix.v1.3.0.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.WAVESTATION.v1.70.WIN.OSX.Incl.Keygen-AiR\Keygen.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.WAVESTATION.v1.70.WIN.OSX.Incl.Keygen-AiR\WIN\32-bit Installer\Setup.exe =>.Crack,Keygen
C:\Users\Pietro\Downloads\Korg Legacy WIN + OSX\Korg.Legacy.Collection.WAVESTATION.v1.70.WIN.OSX.Incl.Keygen-AiR\WIN\64-bit Installer\Setup.exe =>.Crack,Keygen
C:\VST\Diva.data\Presets\Diva\THIRD PARTY\TREASURE TROVE!\FH Cracker.h2p =>.Crack,Keygen
C:\VST\Diva.data\Presets\Diva\THIRD PARTY\TREASURE TROVE!\KV From the Crackle 3.h2p =>.Crack,Keygen
~ Files: Scanned in 06mn 27s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2477536]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
~ Services: 32 Scanned in 00mn 01s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.1A2C85F23817E18F3BDF4ECB9866C3F4] [SPRF][11/05/2012] (...) -- C:\ProgramData\KGyGaAvL.sys [848]
[MD5.8EE48948D4CEBE036ADEA12B03A299A4] [SPRF][22/02/2014] (...) -- C:\Users\Pietro\Desktop\setup.exe [114429949]
[MD5.611B06DB9EBA3FCF81DA1CCF6A466998] [SPRF][04/03/2014] (.Obsidian Entertainment, Inc. - South Park - The Stick of Truth.) -- C:\Users\Pietro\Desktop\South Park - The Stick of Truth.exe [11033600]
[MD5.0C135B4FEFF52ED92CF08BB3F0A75A90] [SPRF][10/09/2006] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [484272]
~ Files: 4 Scanned in 00mn 02s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "{65BF7968-BD49-4356-AB24-9AE53D3ABF7B}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
O87 - FAEL: "{56D445FC-6491-473F-9AB4-2B854C45BA52}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\Pietro\AppData\Roaming\BitTorrent\BitTorrent.exe =>P2P.BitTorrent
~ Firewall: 2 Scanned in 00mn 09s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "537E56336A8449149988EC95CAA55E30" . (.Bing Bar.) -- C:\Windows\Installer\{3365E735-48A6-4194-9988-CE59AC5AE503}\icon_installer_ico =>Toolbar.Bing
~ Update Products: 1 Scanned in 00mn 00s



---\\ Export de clés de registre aléatoires (O91)
[HKCU\Software\5b5ed1af05d79789bfd6ed370a062a46]:[kl]="
14/07/05 chrome Comment Samsung se moque d'Apple dans une nouvelle publicité - Google Chrome

14/07/05 chrome Faceboo
[HKCU\Software\6420357f107124fc58a0231a58e5d91b]:[kl]="
14/07/31 chrome Vidéos Buzz, Jeux Flash et Images sur Koreus.com - Google Chrome
[ENTER]

14/07/31 chrome Facebook -
[HKCU\Software\97a3fee10d8c021a9b64e9a351547774]:[kl]="crtex mary[ENTER]

14/07/04 chrome Facebook - Google Chrome
de l'art chez moi[ENTER]
et wat ?[ENTER]

14/07/04 chrom
[HKCU\Software\eae07fb211dfe48f76d6253ab5226254]:[kl]="
14/07/06 chrome (2) Facebook - Google Chrome
l
14/07/06 chrome (1) Facebook - Google Chrome
bh [Back]ca[Back]stuau[E
[HKCU\Software\f4f0725a7eaeabf0af3484c5a8e0ddd2]:[kl]="
14/07/07 chrome EXIT Adventure: EXIT Festival, Serbia, 10 - 13 July 2014 / SEA DANCE Festival, Montenegro, 15 - 17 July 20
[HKCU\Software\ffbbb464b537cc67f28606ca3832eb71]:[kl]=" =>Adware.SearchYa
14/05/19 chrome Nouvel onglet - Google Chrome =>Adware.SearchYa
vice
14/05/19 chrome VICE | France | Le guide ultime de la connaissance
~ Export Key Software: Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.5D3A30ADD585A102F1B60C0BA313ECEE] [WIS][11/03/2014] (.Microsoft Corporation - Bing Bar.) -- C:\Windows\Installer\d7558.msi [741376] =>Toolbar.Bing
~ WIS: 1 Scanned in 00mn 15s



---\\ Recherche de clés de registre Tracing (O100)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Azureus_RASAPI32 =>P2P.Azureus
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Azureus_RASMANCS =>P2P.Azureus
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BetterInstaller_RASAPI32 =>Adware.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BetterInstaller_RASMANCS =>Adware.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent-7_RASAPI32 =>P2P.BitTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent-7_RASMANCS =>P2P.BitTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent_RASAPI32 =>P2P.BitTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent_RASMANCS =>P2P.BitTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_bluesoleil_RASAPI32 =>Toolbar.Conduit
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_bluesoleil_RASMANCS =>Toolbar.Conduit
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetImSetup_RASAPI32 =>PUP.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetImSetup_RASMANCS =>PUP.SweetIM
~ BTK: 326 Scanned in 00mn 00s



---\\ Recherche de clés de registre CLSID (O101)
[HKCR\CLSID\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}] (Bing Bar Helper) =>Toolbar.Bing
[HKCR\CLSID\{eec0f710-38b5-4aba-99bf-ec87564a4e13}] (Bing Bar) =>Toolbar.Bing
~ BCK: 4763 Scanned in 00mn 06s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 12/09/2014 267440 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Auto 11/03/2014 193696 | (BBSvc) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe =>Toolbar.Bing
SS - | Demand 04/04/2010 246520 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
SS - | Auto 27/04/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 27/04/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 28/11/2007 800040 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 25/02/2013 543144 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
SS - | Demand 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 23/09/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 03/03/2009 89600 | (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\IDT\WDM\AESTSr64.exe
SR - | Auto 08/09/2010 203264 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 21/08/2014 430160 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 21/08/2014 430160 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 12/06/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 27/08/2014 160048 | (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
SR - | Demand 11/03/2014 247968 | (BBUpdate) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe =>Toolbar.Bing
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 08/06/2010 952096 | (btwdins) . (.Broadcom Corporation..) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
SR - | Auto 23/04/2010 445192 | (DpHost) . (.DigitalPersona, Inc..) - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
SR - | Auto 10/07/1658 0 | (ezSharedSvc) . (.EasyBits Software AS.) - C:\Windows\System32\ezSharedSvcHost.exe =>.EasyBits Software AS
SR - | Auto 30/06/2010 121344 | (HP Health Check Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
SR - | Auto 18/06/2010 103992 | (HP Wireless Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
SR - | Auto 25/06/2010 92216 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
SR - | Demand 25/06/2010 665656 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
SR - | Auto 08/07/2009 30520 | (hpsrv) . (.Hewlett-Packard.) - C:\Windows\System32\Hpservice.exe
SR - | Auto 29/06/2010 27192 | (HPWMISVC) . (...) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
SR - | Demand 01/08/2014 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 16/06/2010 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
SR - | Auto 01/05/2010 325656 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 02/02/2002 68192 | (McNeelUpdate) . (.Robert McNeel & Associates.) - C:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe
SR - | Auto 05/09/2012 6364024 | (NIHardwareService) . (.Native Instruments GmbH.) - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
SR - | Demand 22/01/2008 275752 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
SR - | Auto 10/07/1658 0 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe
SR - | Auto 24/07/2007 185632 | (PSI_SVC_2) . (.Protexis Inc..) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
SR - | Auto 30/11/2010 336824 | (PSI_SVC_2_x64) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
SR - | Auto 18/06/2010 258048 | (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe
SR - | Auto 06/06/2011 6438264 | (TabletServiceWacom) . (.Wacom Technology, Corp..) - C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
SR - | Auto 18/09/2009 284048 | (TVCapSvc) . (...) - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
SR - | Auto 18/09/2009 157072 | (TVSched) . (...) - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVSched.exe
SR - | Auto 01/05/2010 2533400 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 23/02/2010 2192176 | (vcsFPService) . (.Validity Sensors, Inc..) - C:\Windows\system32\vcsFPService.exe
SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 10s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Run by Pietro at 16/09/2014 12:54:12
~ OS 64 not supported by MBR tool
~ MBR: 0 Scanned in 00mn 00s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Pietro at 16/09/2014 12:54:14
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : 13026 - (10/09/2014)
Clés trouvées (Keys found) : 17
Valeurs trouvées (Values found) : 2
Dossiers trouvés (Folders found) : 9
Fichiers trouvés (Files found) : 8

[HKLM\Software\Google\Chrome\Extensions\ojpijjmpahflnipadmlpgbjmagmjchkk] =>P2P.Azureus^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAD3AF3-EF2F-4F64-AC4B-11789189FCB6}] =>Toolbar.Bing^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3365E735-48A6-4194-9988-CE59AC5AE503}] =>Toolbar.Bing^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\BitTorrent] =>P2P.BitTorrent^
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\BitTorrent] =>P2P.BitTorrent^
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\cacaoweb] =>PUP.CacaoWeb^
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}] =>Toolbar.Conduit
[HKLM\Software\Classes\Conduit.Engine] =>Toolbar.Conduit
[HKCU\Software\cacaoweb] =>PUP.CacaoWeb
[HKCU\Software\AppDataLow\Software\PriceGong] =>Adware.PriceGong
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\StartSearch] =>Hijacker.Agent
[HKLM\Software\Wow6432Node\Microsoft\Tracing\apnstub_RASMANCS] =>Toolbar.Ask
[HKLM\Software\Wow6432Node\Microsoft\Tracing\apnstub_RASAPI32] =>Toolbar.Ask
[HKLM\Software\Classes\Toolbar.CT2504091] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\Classes\Toolbar.CT2504091] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{eec0f710-38b5-4aba-99bf-ec87564a4e13} =>Toolbar.Bing^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:BitTorrent =>P2P.BitTorrent^
C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojpijjmpahflnipadmlpgbjmagmjchkk =>P2P.Azureus^
C:\Users\Pietro\AppData\Roaming\Azureus =>P2P.Azureus^
C:\Users\Pietro\AppData\Roaming\BitComet =>P2P.BitComet^
C:\Users\Pietro\AppData\Roaming\BitTorrent =>P2P.BitTorrent^
C:\Users\Pietro\AppData\Roaming\cacaoweb =>PUP.CacaoWeb^
C:\Users\Pietro\AppData\Roaming\GoforFiles =>P2P.GoforFiles^
C:\Users\Pietro\AppData\Local\Conduit =>Toolbar.Conduit
C:\Users\Pietro\AppData\LocalLow\Conduit =>Toolbar.Conduit
C:\Users\Pietro\AppData\LocalLow\PriceGong =>Adware.PriceGong
[HKCU\Software\BitComet] =>P2P.BitComet^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
[HKCU\Software\GoforFiles] =>P2P.GoforFiles^
[HKLM\Software\Wow6432Node\Conduit] =>Toolbar.Conduit^
[HKLM\Software\Wow6432Node\GoforFiles] =>P2P.GoforFiles^
C:\Windows\Installer\d7558.msi =>Toolbar.Bing^
[HKCR\CLSID\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}] (Bing Bar Helper) =>Toolbar.Bing^
[HKCR\CLSID\{eec0f710-38b5-4aba-99bf-ec87564a4e13}] (Bing Bar) =>Toolbar.Bing^
~ Additionnel Scan: 1027530 Items scanned in 00mn 35s



---\\ Informations complémentaires sur les modules
~ http://nicolascoolman.fr/g0-page-de-demarrage-google-chrome/ =>.Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
~ http://nicolascoolman.fr/g2-google-chrome-extensions/ =>.Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5)
~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2)
~ http://nicolascoolman.fr/o3-internet-explorer-toolbars/ =>.Internet Explorer Toolbars (O3)
~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4)
~ http://nicolascoolman.fr/o51-mountpoints2-shell-key-mpsk/ =>.Clé de registre Shell MountPoints2 (MPKS) (O51)
~ AMI: 7 Scanned in 00mn 00s



---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.fr/adware-pricegong =>Adware.PriceGong
http://nicolascoolman.fr/toolbar-conduit =>Toolbar.Conduit
http://nicolascoolman.fr/pup-startsearch =>PUP.StartSearch
http://nicolascoolman.fr/pup-cacaoweb =>PUP.CacaoWeb
http://nicolascoolman.fr/adware-searchya =>Adware.SearchYa
http://nicolascoolman.fr/toolbar-ask =>Toolbar.Ask
http://nicolascoolman.fr/adware-megasearch =>Adware.MegaSearch
http://nicolascoolman.fr/pup-sweetim =>PUP.SweetIM
~ MSI: 8 link(s) detected in 00mn 00s



End of the scan (2123 lines in 14mn 58s)(48)

Publicité


Signaler le contenu de ce document

Publicité