cjoint

Publicité


Publicité

Commentaire : rapport

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.6.30.77 by Nicolas Coolman (2015\06\30)
~ Run by val (Administrator) (2015/06/30 23:17:04)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Scanner
~ Report : C:\Users\val\Desktop\ZHPDiag.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v23.0.1271.97
MFIE: Mozilla v24.0.1
MSIE: Internet Explorer v11.0.9600.17843

---\\ Informations sur les produits Windows (10) - 10s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 2BT4J
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 4105776
~ System Restore: Activé (Enable)
~ System drive C: has 99 GB free of 181 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: VAL-PC
~ User Name: val
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 99 GB free of 181 GB (System)
~ Drive D: has 167 GB free of 271 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\windows\Explorer.exe [2871808]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\windows\System32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\windows\System32\Wininit.exe [129024]
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\windows\System32\wininet.dll [2426880]
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\windows\System32\sppcomapi.dll [232448]
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\windows\System32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\windows\System32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\windows\System32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\windows\System32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\windows\System32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\windows\System32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\windows\System32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\windows\System32\drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\windows\System32\drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\windows\System32\drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\windows\System32\drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\windows\System32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\windows\System32\drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\windows\System32\drivers\smb.sys [93184]
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\windows\System32\drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\windows\System32\drivers\volsnap.sys [296320]

---\\ Processus lancés (30) - 2s
[MD5.E04FCE1D149CF05C3449E3171F9C3E41] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 268.8.) -- C:\windows\system32\nvvsvc.exe [993896] [PID.840]
[MD5.03EB2C29CBFE9F003A5561541150903E] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe [1206888] [PID.1336]
[MD5.E04FCE1D149CF05C3449E3171F9C3E41] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 268.8.) -- C:\windows\system32\nvvsvc.exe [993896] [PID.1348]
[MD5.83A0E7BA4AE616D3654E700D9C5FF9DB] - (.Intel Corporation - Intel® Centrino® Bluetooth 3.0 + High Speed.) -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [1136640] [PID.1228]
[MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1376]
[MD5.55B0C8441DE7D91A819A39D0351154A2] - (.Intel Corporation - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [923984] [PID.1948]
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1328]
[MD5.A5B3E8B2B78C7B3DA56A0DE490E6718C] - (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [134928] [PID.2096]
[MD5.F12A68ED55053940CADD59CA5E3468DD] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904] [PID.2440]
[MD5.818BDA4A2626E644A22E73CD7304CF72] - (...) -- C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancerService.exe [1154560] [PID.2608] =>PUP.Wajam
[MD5.CE5848626BBC0BC7CC27157BA7A55A40] - (.Copyright (C) 2008-2009 - Wifi Service.) -- C:\Program Files (x86)\NETGEAR\WNA3100M\WifiSvc.exe [307488] [PID.2636]
[MD5.8BF4B9956E13871A88A3810074E2E110] - (.Intel Corporation - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1001808] [PID.2668]
[MD5.299B44B4B1D8C358AD33E5CA7408B5D0] - (. - MUZYXQ.) -- C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancer.exe [285184] [PID.2916] =>PUP.Wajam
[MD5.3075FE53459C5541E4983A803FA79457] - (.SAMSUNG ELECTRONICS CO., Ltd. - SWMAgent.) -- C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe [2805328] [PID.3196]
[MD5.D88B2D487439305A2EC308A6796C3044] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.3716]
[MD5.B00F98FF6FE8682FF941BEB2559BF191] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.3956]
[MD5.3DF7F0845798D46E9991D0E01BEE32DD] - (.Samsung Electronics Co., Ltd. - MovieColorEnhancer.exe.) -- C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe [784976] [PID.2696]
[MD5.A8FD8550DB68767204EE4616BBD4871A] - (.Samsung Electronics Co., Ltd. - Easy Display Manager.) -- C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe [1087056] [PID.3384]
[MD5.B87140DD34BCB9E4D3BCB9119C1BA7A8] - (.Samsung Electronics Co., Ltd. - Smart Setting Program.) -- C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe [2275408] [PID.1960]
[MD5.9B8F675B8E123507B95A83B2621F5328] - (.Intel Corporation - igfxext Module.) -- C:\windows\system32\igfxext.exe [239384] [PID.2168]
[MD5.43BAF812071A142149D3F1007A23116E] - (.Intel Corporation - igfxsrvc Module.) -- C:\windows\system32\igfxsrvc.exe [510232] [PID.2900]
[MD5.D7750818347E82680987AE0C0F2E2384] - (.Samsung Electronics - Easy Speed Up Manager.) -- C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe [5458312] [PID.3320]
[MD5.635F7587F7576AA14871B850EB95BFB8] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [640840] [PID.1832]
[MD5.D3A1D2987051118159D4DE38E3027CEA] - (.SEC - Samsung Recovery Solution 5.) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [4403280] [PID.4696]
[MD5.D96DDEA6C699A99832E0186057801971] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [1997416] [PID.4012]
[MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.4772]
[MD5.2C7CF4D4A17B5765E23F6B82C16AF4EB] - (.CyberLink Corp. - Media+Player RC Service.) -- C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe [87336] [PID.4900]
[MD5.1D625FCDF466B0146F150FEFFA2FA58B] - (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe [391960] [PID.3276]
[MD5.EDBBBD6DF695833A33AD1B76DA923F00] - (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe [418584] [PID.4156]
[MD5.F289B31D23BB3DC8E6640A6D09E4BF51] - (.SAMSUNG Electronics - SSCKbdHk.) -- C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe [3395664] [PID.3624]

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (2) - 0s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_190.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (16) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.IsStart
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (7) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:59653;https=127.0.0.1:59653 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (1) - 0s
O2 - BHO: (no name) [64Bits] - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files (x86)\MiuiTab\SupTab.dll =>PUP.MiuiTab

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0x524956412D41375600A77A786E7484D7 - [HKCU]{41564952-412D-5637-00A7-7A786E7484D7} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (6) - 0s
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-578327087-4110603385-1361986703-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-578327087-4110603385-1361986703-1000\..\RunOnce: [avg_spchecker] C:\Program Files (x86)\AVG\AVG9\Notification\SPChecker1.exe (.not file.)

---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
O20 - AppInit_DLLs: . (.Auteurs - .) - C:\windows\System32\

---\\ Liste des services NT non Microsoft et non désactivés (O23) (16) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Intel® Centrino® Bluetooth 3.0 + High Speed Service (AMPPALR3) . (.Intel Corporation - Intel® Centrino® Bluetooth 3.0 + High Speed.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Intel Corporation - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Intel Corporation - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed (BTHSSecurityMgr) . (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 268.8.) - C:\windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: WInterEnhancer Service (WInterEnhancer Service) . (...) - C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancerService.exe =>PUP.Wajam
O23 - Service: WSWNA3100M (WSWNA3100M) . (.Copyright (C) 2008-2009 - Wifi Service.) - C:\Program Files (x86)\NETGEAR\WNA3100M\WifiSvc.exe

---\\ Tâches planifiées en automatique (O39) (27) - 1s
O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job [1058]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job [1062]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\Rocket Updater.job [284] =>Adware.Sambreel
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Adobe Acrobat Update Task [3886]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Adobe Flash Player Updater [3940]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\advSRS5 [3214]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\CreateChoiceProcessTask [3528]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Easy Software Manager Agent [3218]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasyBatteryManager [3292]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasyDisplayMgr [3210]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasyPartitionManager [3116]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasySpeedUpManager [3500]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore [3806]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA [4058]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series [3610]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\MirageAgent [3148]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\MovieColorEnhancer [3392]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Rocket Updater [3216] =>Adware.Sambreel
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\SamsungSupportCenter [3318]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\SCCSpeedBoot [3542]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\SmartSetting [3446]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\User_Feed_Synchronization-{E352DECB-578B-4D2A-BC91-1CE2B249995A} [3920]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{12BB91C0-7F23-4CEA-A6C5-98ED6C994F2B} [3128]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{3FAEA3F2-CABD-4E37-B143-AE83ECD214DD} [3244]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{86D69519-2381-476E-BFB7-56259B021030} [3144]
O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{925BCBCA-FC67-43A0-9E3C-52222928DF88} [3138]

---\\ Logiciels installés (O42) (94) - 7s
O42 - Logiciel: ETDWare PS/2-X64 10.0.7.2_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client
O42 - Logiciel: HP Deskjet 2050 J510 series - Enquête sur l'amélioration du produit - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {5B5A6E60-17F4-498E-B1B3-D83F4AAD1D43}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) 3.0 + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {A0E106D2-4815-4B7A-BAA7-7E21B530CFB4}
O42 - Logiciel: NVIDIA Graphics Driver 268.83 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {D9FCBAAE-DB72-488B-96D0-0AA3C892C0D6}
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2050 J510 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {DC11DCF3-BCBF-4459-A924-F9ABE5C27650}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E}
O42 - Logiciel: Adobe Acrobat 4.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Acrobat 4.0
O42 - Logiciel: Adobe Flash Player 17 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player
O42 - Logiciel: Assets Manager - (.Aztec Media Inc.) [HKLM][64Bits] -- Assets Manager =>PUP.SystemK
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: HP Photo Creations - (.HP Photo Creations Powered by RocketLife.) [HKLM][64Bits] -- HP Photo Creations
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink Media+ Player10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM][64Bits] -- istartsurf uninstall =>PUP.IsStart
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mozilla Thunderbird 24.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 24.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM][64Bits] -- ProInst
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKLM][64Bits] -- uTorrent
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent
O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Wajam - (.WInterEnhancer.) [HKLM][64Bits] -- WInterEnhancer =>PUP.Wajam
O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT085559 =>.WildTangent
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT085567 =>.WildTangent
O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WT085580 =>.WildTangent
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT085581 =>.WildTangent
O42 - Logiciel: Polar Golfer - (.WildTangent.) [HKLM][64Bits] -- WT085583 =>.WildTangent
O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WT085587 =>.WildTangent
O42 - Logiciel: Build-a-lot - (.WildTangent.) [HKLM][64Bits] -- WT085597 =>.WildTangent
O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WT085618 =>.WildTangent
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT085622 =>.WildTangent
O42 - Logiciel: Peggle - (.WildTangent.) [HKLM][64Bits] -- WT085663 =>.WildTangent
O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT085669 =>.WildTangent
O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089285 =>.WildTangent
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089286 =>.WildTangent
O42 - Logiciel: Yahoo! Software Update - (...) [HKLM][64Bits] -- Yahoo! Software Update
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: Samsung Recovery Solution 5 - (.Samsung.) [HKLM][64Bits] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2}
O42 - Logiciel: Easy Settings - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {17283B95-21A8-4996-97DA-547A48DB266F}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Skype™ 7.5 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {28E82311-8616-11E1-BEB0-B8AC6F97B88E}
O42 - Logiciel: Visual C++ 8.0 Runtime Setup Package (x64) - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}
O42 - Logiciel: Multimedia POP - (...) [HKLM][64Bits] -- {331ECF61-69AF-4F57-AC35-AFED610231C3}
O42 - Logiciel: CyberLink Media+ Player10 - (.CyberLink Corp..) [HKLM][64Bits] -- {34FBC7C4-CD31-4D93-A428-0E524EAC4586}
O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM][64Bits] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: HP Deskjet 2050 J510 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}
O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- {80E158EA-7181-40FE-A701-301CE6BE64AB}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: Easy File Share - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {95BB7324-77D3-4BF3-8CF6-29F0857AC175}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824144531}
O42 - Logiciel: Adobe Reader XI (11.0.11) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Easy Migration - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {AD86049C-3D9C-43E1-BE73-643F57D83D50}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}
O42 - Logiciel: Software Launcher - (.Samsung.) [HKLM][64Bits] -- {B750B5C2-CC17-4967-905B-29F4EB986131}
O42 - Logiciel: User Guide - (...) [HKLM][64Bits] -- {BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: NETGEAR WNA3100M N300 Wireless USB Adapter - (.NETGEAR.) [HKLM][64Bits] -- {D3580358-0F78-402A-BE53-2E9D06383E04}
O42 - Logiciel: Easy Software Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {DE256D8B-D971-456D-BC02-CB64DA24F115}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Sony PC Companion 2.10.079 - (.Sony.) [HKLM][64Bits] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Easy Support Center 1.0 - (.Samsung.) [HKLM][64Bits] -- {F687E657-F636-44DF-8125-9FEEA2C362F5}
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF6DD716-7B10-4269-9F19-FFB07AC4CD95}
O42 - Logiciel: Free Internet TV v8.0 - (.Holersoft.) [HKCU][64Bits] -- Free Internet TV_is1
O42 - Logiciel: Rocket - (.Rocket.) [HKCU][64Bits] -- Rocket
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (125) - 7s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AIM Toolbar
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Avg
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\CCleaner
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Conduit
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\dotNetInstaller
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IHProtect =>Adware.AgentODR
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Iminent =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.IsStart
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Loader
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NETGEAR
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\ORBTR =>PUP.Conduit
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\RocketLife
HKLM\SOFTWARE\Wow6432Node\RtWLan
HKLM\SOFTWARE\Wow6432Node\Samsung
HKLM\SOFTWARE\Wow6432Node\Samsung Electronics Co., Ltd.
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.SearchProtect
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional
HKLM\SOFTWARE\Wow6432Node\SERCOMM
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SmdmF =>PUP.SettingsManager
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\Sony
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\SupDp =>Adware.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>Adware.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Fuyu
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visan
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Wajam
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\WInterEnhancer =>PUP.Wajam
HKLM\SOFTWARE\Wow6432Node\WSWNA3100M
HKLM\SOFTWARE\Wow6432Node\Yahoo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\APN PIP =>Toolbar.Agent
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Avg
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Browsersafeguard =>PUP.BrowserSafeguard
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\Holersoft
HKCU\SOFTWARE\HomeTab =>PUP.CertifiedToolbar
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\InstantStormSavers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\Lexmark
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linkey =>PUP.LinkeySearch
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\NETGEAR
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Rocket
HKCU\SOFTWARE\Rocket Browser =>Adware.Sambreel
HKCU\SOFTWARE\RocketUpdater =>Adware.Sambreel
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SearchProtectWS =>PUP.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.SimplyTech
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sony
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\TNT2 =>Adware.TidyNetwork
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\WajIEnhance =>Adware.Multiplug
HKCU\SOFTWARE\WajIntEnhance =>PUP.Wajam
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WInterEnhancer =>PUP.Wajam
HKCU\SOFTWARE\Yahoo
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Google
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/ (243) - 8s
O43 - CFD: 2013/02/28 - 00:14:08 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2013/04/26 - 16:33:56 - [] D -- C:\Program Files (x86)\adslTV
O43 - CFD: 2014/01/12 - 23:15:53 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2015/06/28 - 12:32:57 - [] D -- C:\Program Files (x86)\Assets Manager =>PUP.SystemK
O43 - CFD: 2012/03/09 - 21:01:47 - [] D -- C:\Program Files (x86)\AVG
O43 - CFD: 2014/01/12 - 23:15:12 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 2012/03/09 - 20:59:56 - [] D -- C:\Program Files (x86)\CCleaner
O43 - CFD: 2014/09/27 - 20:31:11 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2011/10/11 - 04:27:07 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2014/02/27 - 19:55:15 - [0] D -- C:\Program Files (x86)\EnhanceTronic =>PUP.EnhanceTronic
O43 - CFD: 2014/11/01 - 01:24:55 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2012/03/14 - 16:10:32 - [] D -- C:\Program Files (x86)\HP
O43 - CFD: 2012/03/14 - 16:10:37 - [] D -- C:\Program Files (x86)\HP Photo Creations
O43 - CFD: 2014/08/15 - 13:41:36 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2013/03/30 - 11:02:32 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/06/12 - 00:43:50 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/09/12 - 11:59:23 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2013/12/04 - 01:09:09 - [] D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 2011/10/11 - 04:28:13 - [] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2012/03/09 - 20:51:37 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2012/03/09 - 20:55:31 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/05/14 - 01:04:25 - [] D -- C:\Program Files (x86)\Microsoft Security Client
O43 - CFD: 2015/05/14 - 01:22:37 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2011/10/11 - 04:01:37 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2012/03/13 - 12:53:49 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/06/28 - 12:36:29 - [] D -- C:\Program Files (x86)\MiuiTab =>PUP.MiuiTab
O43 - CFD: 2013/09/24 - 00:41:21 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/01/26 - 10:59:07 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/01/25 - 22:30:08 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 2009/07/14 - 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2014/08/15 - 13:41:37 - [] D -- C:\Program Files (x86)\NETGEAR
O43 - CFD: 2011/10/11 - 03:06:44 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/06/28 - 14:20:54 - [] D -- C:\Program Files (x86)\ORBTR =>PUP.Conduit
O43 - CFD: 2011/10/11 - 03:08:23 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 - 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2011/10/11 - 03:24:56 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2015/06/28 - 12:33:23 - [] D -- C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect
O43 - CFD: 2015/06/24 - 00:16:39 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2012/10/29 - 15:47:34 - [] D -- C:\Program Files (x86)\Software Installer
O43 - CFD: 2012/08/01 - 22:28:25 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 2011/10/11 - 03:07:30 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2009/07/14 - 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2012/10/29 - 15:49:17 - [] D -- C:\Program Files (x86)\uTorrent
O43 - CFD: 2015/06/28 - 12:36:05 - [] D -- C:\Program Files (x86)\Wajam =>PUP.Wajam
O43 - CFD: 2014/03/16 - 10:29:59 - [] D -- C:\Program Files (x86)\WildGames
O43 - CFD: 2014/03/16 - 10:33:05 - [] D -- C:\Program Files (x86)\WildTangent Games
O43 - CFD: 2013/07/18 - 16:05:44 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2011/10/11 - 04:15:55 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2012/03/12 - 00:35:00 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/16 - 23:18:15 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 - 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2012/03/12 - 00:35:00 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2010/11/21 - 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2012/03/12 - 00:35:00 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2012/03/09 - 20:59:26 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2015/06/28 - 12:37:10 - [] D -- C:\Program Files (x86)\WInterEnhancer =>PUP.Wajam
O43 - CFD: 2012/03/10 - 19:58:51 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 2015/06/30 - 23:09:24 - [] D -- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 2012/03/09 - 20:45:27 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2009/07/14 - 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2012/03/09 - 15:57:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 4.0
O43 - CFD: 2011/10/11 - 04:25:48 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
O43 - CFD: 2011/10/11 - 04:27:42 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 2014/03/16 - 13:46:00 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/02/24 - 22:39:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2012/06/16 - 00:58:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2012/03/14 - 16:10:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2014/09/12 - 12:00:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2009/07/14 - 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2013/12/04 - 01:09:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
O43 - CFD: 2014/09/29 - 13:09:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
O43 - CFD: 2012/04/15 - 13:20:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/05/14 - 00:21:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2012/05/13 - 22:50:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 2014/09/27 - 20:31:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2012/08/01 - 22:29:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 2014/09/29 - 13:09:11 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2011/10/11 - 03:30:53 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2011/10/11 - 03:20:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games
O43 - CFD: 2011/10/11 - 04:03:57 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2012/03/09 - 20:59:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/06/28 - 12:37:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WInterEnhancer =>PUP.Wajam
O43 - CFD: 2014/09/12 - 12:00:03 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2013/05/07 - 18:17:48 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/09/12 - 11:46:16 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2014/09/12 - 11:55:09 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/03/22 - 01:40:11 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2014/03/16 - 10:30:20 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2012/03/09 - 16:10:45 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2014/10/15 - 00:22:35 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2014/11/01 - 01:25:02 - [] D -- C:\ProgramData\Google
O43 - CFD: 2012/03/14 - 16:10:08 - [] D -- C:\ProgramData\HP
O43 - CFD: 2012/03/14 - 16:27:09 - [] D -- C:\ProgramData\HP Photo Creations
O43 - CFD: 2015/06/28 - 12:36:24 - [] D -- C:\ProgramData\IHProtectUpDate =>Adware.AgentODR
O43 - CFD: 2013/12/04 - 01:09:08 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2014/09/23 - 00:08:04 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2014/09/29 - 13:09:11 - [] D -- C:\ProgramData\McAfee Security Scan
O43 - CFD: 2014/12/10 - 13:48:58 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/06/12 - 00:27:55 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2012/10/15 - 00:51:02 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2012/03/09 - 21:09:13 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2011/10/11 - 03:20:29 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2011/10/11 - 03:42:35 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2011/10/11 - 03:05:55 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2012/03/10 - 21:39:58 - [] D -- C:\ProgramData\PC Drivers HeadQuarters =>PUP.Optional
O43 - CFD: 2011/10/11 - 04:25:14 - [] D -- C:\ProgramData\SAMSUNG
O43 - CFD: 2015/06/24 - 00:16:48 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/06/28 - 23:31:50 - [0] D -- C:\ProgramData\smdmf =>PUP.SystemK
O43 - CFD: 2012/08/01 - 22:28:25 - [] D -- C:\ProgramData\Sony
O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2011/10/11 - 04:26:22 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2014/11/14 - 16:16:06 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2014/03/16 - 13:45:58 - [] D -- C:\ProgramData\WinClon
O43 - CFD: 2015/06/28 - 12:35:31 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu
O43 - CFD: 2012/03/10 - 19:58:51 - [] D -- C:\ProgramData\Yahoo!
O43 - CFD: 2012/04/30 - 00:43:31 - [] D -- C:\ProgramData\Yahoo! Companion
O43 - CFD: 2013/02/28 - 00:14:17 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014/09/12 - 11:55:17 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2011/10/11 - 04:19:13 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2014/05/15 - 19:19:10 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2011/10/11 - 03:06:56 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2011/10/11 - 03:05:04 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2013/09/13 - 22:47:09 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2011/10/11 - 03:04:23 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2011/10/11 - 03:12:01 - [] D -- C:\Program Files (x86)\Common Files\Samsung
O43 - CFD: 2009/07/14 - 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2014/09/27 - 20:31:11 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 - 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2012/11/17 - 00:37:36 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2011/10/11 - 03:50:41 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2013/02/28 - 00:25:38 - [] D -- C:\Users\val\AppData\Roaming\Adobe
O43 - CFD: 2014/01/12 - 23:18:26 - [] D -- C:\Users\val\AppData\Roaming\Apple Computer
O43 - CFD: 2014/10/15 - 00:22:39 - [] D -- C:\Users\val\AppData\Roaming\CyberLink
O43 - CFD: 2014/06/29 - 22:34:33 - [] D -- C:\Users\val\AppData\Roaming\Google
O43 - CFD: 2012/03/14 - 16:10:31 - [0] D -- C:\Users\val\AppData\Roaming\HpUpdate
O43 - CFD: 2012/03/09 - 20:46:46 - [] D -- C:\Users\val\AppData\Roaming\Identities
O43 - CFD: 2014/08/15 - 13:41:09 - [] D -- C:\Users\val\AppData\Roaming\InstallShield
O43 - CFD: 2015/06/29 - 23:57:18 - [] D -- C:\Users\val\AppData\Roaming\istartsurf =>PUP.IsStart
O43 - CFD: 2012/03/09 - 22:13:05 - [] D -- C:\Users\val\AppData\Roaming\Macromedia
O43 - CFD: 2013/12/04 - 01:09:32 - [] D -- C:\Users\val\AppData\Roaming\Malwarebytes
O43 - CFD: 2011/10/11 - 03:30:53 - [0] D -- C:\Users\val\AppData\Roaming\Media Center Programs
O43 - CFD: 2013/03/31 - 23:09:14 - [] SD -- C:\Users\val\AppData\Roaming\Microsoft
O43 - CFD: 2012/10/29 - 15:49:38 - [] D -- C:\Users\val\AppData\Roaming\Mozilla
O43 - CFD: 2014/07/21 - 11:18:27 - [] D -- C:\Users\val\AppData\Roaming\RocketUpdater =>Adware.Sambreel
O43 - CFD: 2015/06/29 - 23:26:39 - [] D -- C:\Users\val\AppData\Roaming\Skype
O43 - CFD: 2012/04/17 - 23:33:31 - [] D -- C:\Users\val\AppData\Roaming\Thunderbird
O43 - CFD: 2014/08/03 - 20:42:38 - [] D -- C:\Users\val\AppData\Roaming\uTorrent
O43 - CFD: 2012/03/16 - 12:20:01 - [] D -- C:\Users\val\AppData\Roaming\vlc
O43 - CFD: 2014/03/16 - 10:33:05 - [] D -- C:\Users\val\AppData\Roaming\WildTangent
O43 - CFD: 2012/03/09 - 16:22:00 - [] D -- C:\Users\val\AppData\Roaming\WinRAR
O43 - CFD: 2012/03/10 - 19:58:47 - [] D -- C:\Users\val\AppData\Roaming\Yahoo!
O43 - CFD: 2015/06/30 - 23:17:21 - [] D -- C:\Users\val\AppData\Roaming\ZHP
O43 - CFD: 2014/09/23 - 00:08:11 - [] D -- C:\Users\val\AppData\Local\Adobe
O43 - CFD: 2015/05/12 - 01:03:05 - [] D -- C:\Users\val\AppData\Local\adslTV
O43 - CFD: 2014/01/12 - 23:15:56 - [] D -- C:\Users\val\AppData\Local\Apple
O43 - CFD: 2014/01/12 - 23:18:12 - [] D -- C:\Users\val\AppData\Local\Apple Computer
O43 - CFD: 2012/03/09 - 20:41:30 - [0] SHD -- C:\Users\val\AppData\Local\Application Data
O43 - CFD: 2013/09/24 - 00:42:01 - [] D -- C:\Users\val\AppData\Local\avgchrome
O43 - CFD: 2014/02/19 - 19:46:12 - [] D -- C:\Users\val\AppData\Local\AviraResume
O43 - CFD: 2014/02/24 - 20:21:24 - [0] D -- C:\Users\val\AppData\Local\cache
O43 - CFD: 2012/10/29 - 15:49:44 - [] D -- C:\Users\val\AppData\Local\CRE
O43 - CFD: 2013/08/26 - 00:19:22 - [] D -- C:\Users\val\AppData\Local\Cyberlink
O43 - CFD: 2015/04/14 - 23:59:02 - [] D -- C:\Users\val\AppData\Local\Diagnostics
O43 - CFD: 2014/10/19 - 15:45:27 - [0] D -- C:\Users\val\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/12 - 00:53:37 - [0] SHD -- C:\Users\val\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/12 - 00:53:37 - [0] SHD -- C:\Users\val\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/12 - 00:53:37 - [0] SHD -- C:\Users\val\AppData\Local\EmieUserList
O43 - CFD: 2015/02/09 - 02:30:50 - [] D -- C:\Users\val\AppData\Local\Free Internet TV
O43 - CFD: 2014/08/01 - 13:55:59 - [] D -- C:\Users\val\AppData\Local\Google
O43 - CFD: 2015/06/28 - 23:38:55 - [] D -- C:\Users\val\AppData\Local\GWX
O43 - CFD: 2012/03/09 - 20:41:30 - [0] SHD -- C:\Users\val\AppData\Local\Historique
O43 - CFD: 2012/03/14 - 16:16:16 - [] D -- C:\Users\val\AppData\Local\HP
O43 - CFD: 2013/09/24 - 00:41:22 - [0] D -- C:\Users\val\AppData\Local\InternetTV
O43 - CFD: 2014/10/13 - 22:58:02 - [] D -- C:\Users\val\AppData\Local\Microsoft
O43 - CFD: 2012/04/16 - 01:21:49 - [] D -- C:\Users\val\AppData\Local\Microsoft Games
O43 - CFD: 2014/04/01 - 23:19:37 - [] D -- C:\Users\val\AppData\Local\Microsoft Help
O43 - CFD: 2012/03/09 - 20:47:27 - [] D -- C:\Users\val\AppData\Local\Power2Go
O43 - CFD: 2013/09/24 - 00:40:35 - [] D -- C:\Users\val\AppData\Local\Programs
O43 - CFD: 2014/07/21 - 11:19:43 - [] D -- C:\Users\val\AppData\Local\Rocket =>Adware.Sambreel
O43 - CFD: 2012/03/09 - 22:42:12 - [] D -- C:\Users\val\AppData\Local\Samsung
O43 - CFD: 2015/06/28 - 12:33:32 - [] D -- C:\Users\val\AppData\Local\SearchProtect =>PUP.SearchProtect
O43 - CFD: 2014/09/27 - 20:31:29 - [] D -- C:\Users\val\AppData\Local\Skype
O43 - CFD: 2015/06/30 - 23:17:19 - [] D -- C:\Users\val\AppData\Local\Temp
O43 - CFD: 2012/03/09 - 20:41:30 - [0] SHD -- C:\Users\val\AppData\Local\Temporary Internet Files
O43 - CFD: 2013/04/03 - 01:09:25 - [] D -- C:\Users\val\AppData\Local\Thunderbird
O43 - CFD: 2015/02/04 - 02:02:35 - [] D -- C:\Users\val\AppData\Local\VirtualStore
O43 - CFD: 2014/09/21 - 19:41:26 - [] D -- C:\Users\val\AppData\Local\Windows Live
O43 - CFD: 2014/09/21 - 19:42:08 - [0] D -- C:\Users\val\AppData\Local\{03F14B05-3A03-48EC-9343-40E113EDDB60}
O43 - CFD: 2013/12/04 - 02:25:41 - [0] D -- C:\Users\val\AppData\Local\{0F2D8F9C-E114-4FA1-AE2F-3CD3E451F730}
O43 - CFD: 2012/03/27 - 23:17:06 - [0] D -- C:\Users\val\AppData\Local\{16A33A2E-41A4-4666-BA44-D1E58386E047}
O43 - CFD: 2012/10/26 - 14:33:21 - [0] D -- C:\Users\val\AppData\Local\{1F25F909-F658-4359-990E-D416D47EE493}
O43 - CFD: 2012/12/15 - 22:36:38 - [0] D -- C:\Users\val\AppData\Local\{1F8FF71A-B791-41CE-9405-1B0B176373CD}
O43 - CFD: 2014/09/25 - 21:23:48 - [0] D -- C:\Users\val\AppData\Local\{249FEC5F-EA43-4740-9ED6-3AC399A75481}
O43 - CFD: 2013/09/28 - 23:57:07 - [0] D -- C:\Users\val\AppData\Local\{2BD067AA-CC02-4D98-B922-ABD8A33A5061}
O43 - CFD: 2013/03/06 - 23:19:18 - [0] D -- C:\Users\val\AppData\Local\{345F6E19-27DB-4B58-9166-0C010B37C3AF}
O43 - CFD: 2013/07/02 - 18:52:34 - [0] D -- C:\Users\val\AppData\Local\{349B7462-A76E-4C12-B4AA-3FC5DEAA19FE}
O43 - CFD: 2014/03/17 - 23:17:13 - [0] D -- C:\Users\val\AppData\Local\{38FD1C93-7D19-4147-9AC2-D1121555747A}
O43 - CFD: 2014/07/03 - 19:27:12 - [0] D -- C:\Users\val\AppData\Local\{448A385C-2DFE-4D60-B69C-4D640B5234AA}
O43 - CFD: 2012/11/02 - 14:07:36 - [0] D -- C:\Users\val\AppData\Local\{4A853560-C4E0-4D7F-82C4-4CAD419FEAA1}
O43 - CFD: 2013/04/20 - 15:17:23 - [0] D -- C:\Users\val\AppData\Local\{4DC9C9C7-33B3-4961-892E-B34A3CB9C751}
O43 - CFD: 2012/12/30 - 15:34:29 - [0] D -- C:\Users\val\AppData\Local\{4EC86E72-BAA5-4153-A1F2-103C7B108806}
O43 - CFD: 2012/11/09 - 14:23:57 - [0] D -- C:\Users\val\AppData\Local\{5F4E0A26-08A5-4F17-9B3F-0E40479047CF}
O43 - CFD: 2013/08/29 - 00:33:19 - [0] D -- C:\Users\val\AppData\Local\{6F12D744-BAE7-4A1A-96A6-84C9B96D2FD6}
O43 - CFD: 2012/04/21 - 00:34:04 - [0] D -- C:\Users\val\AppData\Local\{78A09C5D-53E4-461F-8302-A544B5875272}
O43 - CFD: 2013/07/05 - 00:09:14 - [0] D -- C:\Users\val\AppData\Local\{82499D7F-5F7C-415A-A9E1-5D87FC7B0426}
O43 - CFD: 2013/09/04 - 12:29:02 - [0] D -- C:\Users\val\AppData\Local\{83BCCCA6-DCBB-4F37-9D7D-7525BD3EAAA1}
O43 - CFD: 2013/10/18 - 01:41:33 - [0] D -- C:\Users\val\AppData\Local\{856AC299-AD66-48E9-BD5E-35E87002F268}
O43 - CFD: 2012/12/15 - 22:43:13 - [0] D -- C:\Users\val\AppData\Local\{88992D7C-0574-444D-AF1F-4CD75C194090}
O43 - CFD: 2012/10/23 - 09:44:34 - [0] D -- C:\Users\val\AppData\Local\{908EB495-02BC-432D-A781-6DECD48ABC1D}
O43 - CFD: 2013/09/05 - 11:18:43 - [0] D -- C:\Users\val\AppData\Local\{9CEC5807-48C3-4880-8D13-18F87B2B526A}
O43 - CFD: 2012/12/30 - 15:32:42 - [0] D -- C:\Users\val\AppData\Local\{A8AEA4EE-F0DF-4D3A-9BE7-DCFFDED7FBD6}
O43 - CFD: 2015/04/30 - 12:34:19 - [0] D -- C:\Users\val\AppData\Local\{AE2BED2D-89B6-4A1E-8741-529F1DB51DDB}
O43 - CFD: 2014/07/09 - 21:14:20 - [0] D -- C:\Users\val\AppData\Local\{B6365491-7E4F-4177-A49E-9064B86283F5}
O43 - CFD: 2014/07/09 - 21:18:07 - [0] D -- C:\Users\val\AppData\Local\{BBFF58F1-6626-47F1-9042-0204E95C03B6}
O43 - CFD: 2013/09/30 - 20:09:44 - [0] D -- C:\Users\val\AppData\Local\{BD58AEE1-994D-4A13-929F-80C639F72735}
O43 - CFD: 2015/03/17 - 18:18:16 - [0] D -- C:\Users\val\AppData\Local\{C14F7305-DCD6-4ACC-9DDC-8A56403DAEFE}
O43 - CFD: 2013/11/23 - 01:11:20 - [0] D -- C:\Users\val\AppData\Local\{C190CA1E-58A4-418B-85A8-BD89F3E943E3}
O43 - CFD: 2013/01/23 - 01:27:07 - [0] D -- C:\Users\val\AppData\Local\{D14246F8-F1CB-4E74-BDB8-7FA63650CC1F}
O43 - CFD: 2013/04/26 - 16:09:00 - [0] D -- C:\Users\val\AppData\Local\{D14A8CA3-8DFE-454C-9B74-CCE4B9B77983}
O43 - CFD: 2013/01/13 - 20:03:05 - [0] D -- C:\Users\val\AppData\Local\{D85D88E7-ACF2-4FA0-8B13-773575A6DECE}
O43 - CFD: 2012/12/24 - 16:41:14 - [0] D -- C:\Users\val\AppData\Local\{E3124081-095D-4609-B89B-22FF11F5C491}
O43 - CFD: 2013/09/24 - 01:33:01 - [0] D -- C:\Users\val\AppData\Local\{E7ACCFD0-B9E6-4C6F-BBC7-F3FBB1E71B71}
O43 - CFD: 2014/08/09 - 14:58:55 - [0] D -- C:\Users\val\AppData\Local\{E94D624F-8B4E-4D2B-B331-73DE55933890}
O43 - CFD: 2012/03/29 - 00:58:45 - [0] D -- C:\Users\val\AppData\Local\{EC06C7E7-AB9A-4A51-8A99-AFCD0B9B6BBD}
O43 - CFD: 2013/06/30 - 19:49:12 - [0] D -- C:\Users\val\AppData\Local\{EDE0DE38-2FDF-4EBE-BAA2-1B7FD2066C8A}
O43 - CFD: 2012/07/14 - 08:52:00 - [0] D -- C:\Users\val\AppData\Local\{EDEB9107-D58D-4CE6-BADF-7D9E4FB38D7C}
O43 - CFD: 2013/01/13 - 20:01:23 - [0] D -- C:\Users\val\AppData\Local\{F1BA004B-4790-4432-9B93-348BDC1F769E}
O43 - CFD: 2012/11/27 - 20:24:21 - [0] D -- C:\Users\val\AppData\Local\{FB51BF7B-1DA7-4612-BCBD-F2D9EBA53D6D}
O43 - CFD: 2013/08/25 - 23:57:57 - [0] D -- C:\Users\val\AppData\Local\{FF3CF27A-2967-4483-8696-6936AFC1AFAF}
O43 - CFD: 2009/07/14 - 06:54:32 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/13 - 01:49:31 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/04/26 - 16:33:52 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV
O43 - CFD: 2012/03/09 - 20:59:56 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2013/09/24 - 00:40:53 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Internet TV
O43 - CFD: 2009/07/14 - 06:49:38 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/07/21 - 11:19:40 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rocket =>Adware.Sambreel
O43 - CFD: 2015/03/13 - 01:49:31 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2012/03/09 - 20:59:26 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53 (8) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O53 - SMSR:HKLM\...\startupreg\BTMTrayAgent [Key] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- rundll32.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\ETDCtrl [Key] . (...) -- %ProgramFiles%\Elantech\ETDCtrl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe

---\\ Liste des pilotes du système (SDL) (O58) (62) - 3s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864]
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904]
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008]
O58 - SDL:2011/04/21 10:09:26 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Bluetooth 3.0 + High Speed.) -- C:\windows\System32\drivers\AmpPal.sys [294912]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856]
O58 - SDL:2013/02/18 23:53:08 A . (.AVG Technologies - .) -- C:\windows\System32\drivers\avgtpx64.sys [39768]
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704]
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720]
O58 - SDL:2011/03/08 15:44:08 A . (.Intel Corporation - Bluetooth Auxiliary Driver.) -- C:\windows\System32\drivers\btmaux.sys [51712]
O58 - SDL:2011/03/08 15:44:08 A . (.Intel Corporation - Bluetooth HighSpeed Filter Driver.) -- C:\windows\System32\drivers\btmhsf.sys [274944]
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480]
O58 - SDL:2011/08/17 09:19:38 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\windows\System32\drivers\clwvd.sys [31216]
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488]
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496]
O58 - SDL:2011/06/17 05:40:40 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\windows\System32\drivers\ETD.sys [186152]
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016]
O58 - SDL:2012/08/21 14:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\windows\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232]
O58 - SDL:2010/10/20 18:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\HECIx64.sys [56344]
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720]
O58 - SDL:2011/02/18 01:11:54 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\windows\System32\drivers\iaStor.sys [439320]
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496]
O58 - SDL:2011/03/22 19:14:04 A . (.Intel Corporation - Intel(R) Centrino(R) Wireless (Bluetooth Ad.) -- C:\windows\System32\drivers\iBtFltCoex.sys [59904]
O58 - SDL:2010/12/16 12:39:08 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [12256512]
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112]
O58 - SDL:2010/10/14 19:28:16 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\windows\System32\drivers\IntcDAud.sys [317440]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2013/04/04 15:50:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\windows\System32\drivers\mbam.sys [25928]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2011/05/01 07:33:06 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\windows\System32\drivers\NETwNs64.sys [8593920]
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2011/06/05 01:22:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\windows\System32\drivers\nvlddmkm.sys [13076328]
O58 - SDL:2011/06/05 01:22:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\windows\System32\drivers\nvpciflt.sys [25960]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2011/04/22 12:17:04 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\windows\System32\drivers\Rt64win7.sys [471144]
O58 - SDL:2011/07/12 10:29:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [2917096]
O58 - SDL:2011/07/30 00:47:20 A . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\windows\System32\drivers\SABI.sys [13824]
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2011/04/11 12:55:24 A . (.Phoenix Technologies Ltd. - SecureGuard Driver.) -- C:\windows\System32\drivers\SGDrv64.sys [7680]
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872]
O58 - SDL:2011/12/30 15:23:16 A . (.NETGEAR Corporation - NETGEAR WNA3100M USB NDIS Driver.) -- C:\windows\System32\drivers\wna3100m.sys [1094760]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (2) - 52s
O61 - LFC: 2015/06/24 22:27:32 A . (.Skytech Co., Ltd..) -- C:\Users\val\AppData\Roaming\istartsurf\UninstallManager.exe [1916416] =>PUP.IsStart
O61 - LFC: 2015/06/28 14:22:25 A . (..) -- C:\Users\val\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin [0]

---\\ Associations Shell Spawning (O67) (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe http://www.istartsurf.com/ =>Adware.Sambreel
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel

---\\ Recherche d'infection sur les navigateurs internet (SBI (1) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Recherche de clés de registre Tracing (O100) (12) - 4s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASAPI32 =>PUP.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASMANCS =>PUP.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASAPI32 =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASMANCS =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASAPI32 =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASMANCS =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASAPI32 =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASMANCS =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASAPI32 =>PUP.uTorrentBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASMANCS =>PUP.uTorrentBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASAPI32 =>PUP.uTorrentBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASMANCS =>PUP.uTorrentBar

---\\ Scan Additionnel (O88) (68) - 0s
C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancerService.exe =>PUP.Wajam
C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancer.exe =>PUP.Wajam
C:\Program Files (x86)\MiuiTab\SupTab.dll =>PUP.MiuiTab
HKLM\SYSTEM\CurrentControlSet\Services\WInterEnhancer Service =>PUP.Wajam
C:\windows\Tasks\Rocket Updater.job =>Adware.Sambreel
C:\windows\System32\Tasks\Rocket Updater =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Assets Manager =>PUP.SystemK
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.IsStart
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WInterEnhancer =>PUP.Wajam
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Conduit
HKLM\SOFTWARE\Wow6432Node\IHProtect =>Adware.AgentODR
HKLM\SOFTWARE\Wow6432Node\Iminent =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.IsStart
HKLM\SOFTWARE\Wow6432Node\ORBTR =>PUP.Conduit
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.SearchProtect
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional
HKLM\SOFTWARE\Wow6432Node\SmdmF =>PUP.SettingsManager
HKLM\SOFTWARE\Wow6432Node\SupDp =>Adware.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>Adware.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Fuyu
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Wajam
HKLM\SOFTWARE\Wow6432Node\WInterEnhancer =>PUP.Wajam
HKCU\SOFTWARE\APN PIP =>Toolbar.Agent
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKCU\SOFTWARE\Browsersafeguard =>PUP.BrowserSafeguard
HKCU\SOFTWARE\HomeTab =>PUP.CertifiedToolbar
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\Linkey =>PUP.LinkeySearch
HKCU\SOFTWARE\Rocket Browser =>Adware.Sambreel
HKCU\SOFTWARE\RocketUpdater =>Adware.Sambreel
HKCU\SOFTWARE\SearchProtectWS =>PUP.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.SimplyTech
HKCU\SOFTWARE\TNT2 =>Adware.TidyNetwork
HKCU\SOFTWARE\WajIEnhance =>Adware.Multiplug
HKCU\SOFTWARE\WajIntEnhance =>PUP.Wajam
HKCU\SOFTWARE\WInterEnhancer =>PUP.Wajam
C:\Program Files (x86)\Assets Manager =>PUP.SystemK
C:\Program Files (x86)\EnhanceTronic =>PUP.EnhanceTronic
C:\Program Files (x86)\MiuiTab =>PUP.MiuiTab
C:\Program Files (x86)\ORBTR =>PUP.Conduit
C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect
C:\Program Files (x86)\Wajam =>PUP.Wajam
C:\Program Files (x86)\WInterEnhancer =>PUP.Wajam
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WInterEnhancer =>PUP.Wajam
C:\ProgramData\IHProtectUpDate =>Adware.AgentODR
C:\ProgramData\PC Drivers HeadQuarters =>PUP.Optional
C:\ProgramData\smdmf =>PUP.SystemK
C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu
C:\Users\val\AppData\Roaming\istartsurf =>PUP.IsStart
C:\Users\val\AppData\Roaming\RocketUpdater =>Adware.Sambreel
C:\Users\val\AppData\Local\Rocket =>Adware.Sambreel
C:\Users\val\AppData\Local\SearchProtect =>PUP.SearchProtect
C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rocket =>Adware.Sambreel
C:\Users\val\AppData\Roaming\istartsurf\UninstallManager.exe =>PUP.IsStart
C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASAPI32 =>PUP.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASMANCS =>PUP.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASAPI32 =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASMANCS =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASAPI32 =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASMANCS =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASAPI32 =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASMANCS =>Adware.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASAPI32 =>PUP.uTorrentBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASMANCS =>PUP.uTorrentBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASAPI32 =>PUP.uTorrentBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASMANCS =>PUP.uTorrentBar

---\\ Récapitulatif des détections trouvées sur votre station (24) - 0s
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Wajam
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.IsStart
http://www.nicolascoolman.fr/blog =>PUP.MiuiTab
http://www.nicolascoolman.fr/blog =>Adware.Sambreel
http://www.nicolascoolman.fr/pup-systemk/ =>PUP.SystemK
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Conduit
http://www.nicolascoolman.fr/blog =>Adware.AgentODR
http://www.nicolascoolman.fr/adware-imbooster/ =>Adware.IMBooster
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.SearchProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional
http://www.nicolascoolman.fr/blog =>PUP.SettingsManager
http://www.nicolascoolman.fr/pup-suptab/ =>Adware.SupTab
http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Fuyu
http://www.nicolascoolman.fr/blog =>Toolbar.Agent
http://www.nicolascoolman.fr/pup-browsersafeguard/ =>PUP.BrowserSafeguard
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.CertifiedToolbar
http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.LinkeySearch
http://www.nicolascoolman.fr/blog =>PUP.SimplyTech
http://www.nicolascoolman.fr/adware-tidynetwork/ =>Adware.TidyNetwork
http://www.nicolascoolman.fr/pup-mutiplug/ =>Adware.Multiplug
http://www.nicolascoolman.fr/pup-enhancetronic / =>PUP.EnhanceTronic
http://www.nicolascoolman.fr/blog =>PUP.uTorrentBar

~ End of the scan, 33259 items in 128 seconds (868)(0)()

Publicité


Signaler le contenu de ce document

Publicité