cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.7.85 Par Nicolas Coolman (2015\07\07)
~ Démarré par Nadège (Administrator) (2015/07/07 18:31:01)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Nadège\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Nadège\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (3) - 1s
GCIE: Google Chrome v43.0.2357.130
MFIE: Mozilla v38.0.5
MSIE: Internet Explorer v11.0.9600.17207

---\\ Informations sur les produits Windows (3) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 7s
Avast Free Antivirus v10.0.2208
Malwarebytes Anti-Malware version 2.0.2.1012

---\\ Logiciels de protection et autres (Superflus) (1) - 8s
Spybot - Search & Destroy v1.6.2

---\\ Logiciels d'optimisation (1) - 9s
CCleaner v5.07

---\\ Surveillance de Logiciels (2) - 9s
Adobe Flash Player 17 NPAPI
Adobe Reader XI

---\\ Logiciels de partage P2P (1) - 9s
eMule

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 3773172
~ System Restore: Activé (Enable)
~ System drive C: has 137 GB free of 294 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: H
~ User Name: Nadège
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 137 GB free of 294 GB (System)

---\\ Recherche particulière de fichiers génériques (23) - 4s
[MD5.81394C91B7B5A7C799E249AE82491F13] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2373784]
[MD5.6E0BDFBEEED65B017F2E4C2C910B0520] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [52736]
[MD5.48CFA7BE561A7BE144C29BB912055016] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [144384]
[MD5.2EE102DF0EDD8A1EDD3D1E9B99A91BEC] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2266112]
[MD5.306EB21E5B480AE9065EA55AC8C35936] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [562176]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488]
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144]
[MD5.498288DD5CA42C2D36D125893E968C53] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [77312]
[MD5.84CFC5EFA97D0C965EDE1D56F116A541] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [107520]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848]
[MD5.0696F66E4D423793951A60562F794D14] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [402432]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624]
[MD5.1C80517BE6836A812F6A9B99B8321351] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2013016]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520]
[MD5.4BB9BC49DEE1A319EC58274A7BBED663] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310616]

---\\ Processus lancés (26) - 11s
[MD5.6CF81DD5083D7F94A7E76E50429A949C] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [239616] [PID.384]
[MD5.6831D30B0DB45E25E6C3207247C6EC36] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872] [PID.1164]
[MD5.E3F7EC811923F3F1A77B185F22638E5E] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1324]
[MD5.4E1D0A246E10CFDDBF856432418DE404] - (.All rights reserved - GFNEXSrv.) -- C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe [156672] [PID.1468]
[MD5.ED32035BDFECED1AD66D459FD9CC1140] - (.TOSHIBA Corporation - TDCSrv Application.) -- C:\Windows\system32\TODDSrv.exe [140632] [PID.1952]
[MD5.54A4A93A984E5C30B5CAB9257A0A05BF] - (...) -- C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe [512000] [PID.2020]
[MD5.CB92B9BD85B54DEECA1B05E5ABCEA1AA] - (.TOSHIBA Corporation - TOSHIBA eco Utility Service.) -- C:\Program Files\TOSHIBA\Teco\TecoService.exe [289192] [PID.1728]
[MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368] [PID.2168]
[MD5.4F4EBF6163D3A02D52A66BBD145B0069] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248] [PID.2460]
[MD5.04BADFD7FB4A26033ADF47489382DD40] - (.AVAST Software - avast! NG service.) -- C:\Program Files\AVAST Software\Avast\ng\ngservice.exe [169312] [PID.2888]
[MD5.8608681DC6E2975815A593209A6432CD] - (.TOSHIBA Corporation - TOSHIBA PC Health Monitor.) -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [458152] [PID.4632]
[MD5.5201342394DD42848027CE96A37043DB] - (.TOSHIBA Corporation - TSS TMachInfo Service.) -- C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [53384] [PID.4508]
[MD5.E964837B2A702D82E51DE879FEFDF22B] - (.Toshiba Europe GmbH - Toshiba TEMPRO.) -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088] [PID.988]
[MD5.89B1B68B76363ABD2E24E3BB614CE53C] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [588288] [PID.9988]
[MD5.6436372949731033979444E0B887F14C] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1256080] [PID.7604]
[MD5.F072EF002CE7B945DC7DBBA6F9664FCF] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13261456] [PID.4960]
[MD5.4B7F09079E38B87D7946115D34664D93] - (.SRS Labs, Inc. - SRS Control Panel.) -- C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2170784] [PID.11584]
[MD5.6B7FACB65F96A55CAC5E39210D182D0F] - (.TOSHIBA Corporation - TOSHIBA Hotkey Main Module.) -- C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2608040] [PID.6656]
[MD5.57C4B4289DAB34CBAEEB92865C6BC022] - (.TOSHIBA Corporation - Resident module of eco Utility.) -- C:\Program Files\TOSHIBA\Teco\TecoResident.exe [169896] [PID.9248]
[MD5.22FCD0750F598EFEAC2E438CD08FA0C6] - (.TOSHIBA Corporation - TOSHIBA PC Health Monitor.) -- C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe [518056] [PID.9336]
[MD5.8DFA7EC54AD2D293AE1D6F7CEE558C26] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256] [PID.11420]
[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.6640]
[MD5.484E6AA96E535E675D999CFF0AE72571] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [182000] [PID.11372]
[MD5.695BE0A3D240FFF4B876D9289110634A] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5227648] [PID.5812]
[MD5.B7C0AC916884B05310E85E45C7FC2EDF] - (.TOSHIBA Corporation - TOSHIBA Service Station.) -- C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [1295496] [PID.9116]
[MD5.BCDBE3A95368C3896A4664C3AC29E2BD] - (.Copyright © 2014 VAPC (Lux) S.a.r.L. All Rights Reser - WinZip Driver Updater.) -- C:\Program Files\WinZip Driver Updater\DriverUpdater.exe [23946704] [PID.7484]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (8) - 2s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] "http://www.google.fr/"
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] "https://www.google.fr/"
G2 - GCE: Extension [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT
G2 - GCE: Extension [User Data\Default] [ekdhbcnjagldifnlibdlcgacgnanhigj] Le Parisien
G2 - GCE: Extension [User Data\Default] [kmhkepipobnjllejbafajoemahjejdcm] __MSG_addons_name__
G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Extension [User Data\Default] [lhlflcpjmbmnhfehipheboagibdjgmog] __MSG_extension_name__
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (18) - 8s
M0 - MFSP: prefs.js [Nadège - 5dy4r709.default] https://www.google.com/?trackid=sp-006
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited.) -- C:\Users\Nadège\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_190.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@divx.com/DivX VOD Helper,version=1.0.0] - (.DivX, LLC..) -- C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
P2 - FPN: [HKLM] [@divx.com/DivX Web Player Plug-In,version=1.0.0] - (.DivX, LLC.) -- C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.7] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
P2 - FPN: [HKLM] [@zylom.com/ZylomGamesPlayer] - (.Zylom.) -- C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (16) - 2s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com?fr=hp-avast&type=avastbcl
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com?fr=hp-avast&type=avastbcl
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://fr.search.yahoo.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com?fr=hp-avast&type=avastbcl
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://fr.search.yahoo.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://fr.search.yahoo.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (R5) (3) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 1s
~ Le fichier hôte est sain (The hosts file is clean) (15516)

---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 1s
O2 - BHO: iGraal BHO [64Bits] - {240373D3-4199-4F41-BB4D-15D5B830C82D} (Orphean) =>PUP.Optional.iGraal
O2 - BHO: (no name) [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (21) - 5s
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O4 - HKLM\..\Run: [SRS Premium Sound HD] . (.SRS Labs, Inc. - SRS Control Panel.) -- C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
O4 - HKLM\..\Run: [TCrdMain] %ProgramFiles%\TOSHIBA\Hotkey\TCrdMain_Win8.exe
O4 - HKLM\..\Run: [TecoResident] . (.TOSHIBA Corporation - Resident module of eco Utility.) -- C:\Program Files\TOSHIBA\Teco\TecoResident.exe
O4 - HKLM\..\Run: [TosWaitSrv] %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
O4 - HKLM\..\Run: [TODDMain] . (.Copyright (C) 2012 TOSHIBA Corporation. All rights r - TOSHIBA System Settings Service.) -- C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Nadège\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKLM\..\Wow6432Node\Run: [Intel AppUp(SM) center] . (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
O4 - HKLM\..\Wow6432Node\Run: [ToshibaDynamicIconUtility] . (.Toshiba - Toshiba Places Icon Utility.) -- C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe
O4 - HKLM\..\Wow6432Node\Run: [TPUReg] . (.Pegatron Corporation - TOSHIBA Password Utility.) -- C:\Program Files (x86)\TOSHIBA\Password Utility\TosPU.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [DivXMediaServer] . (.DivX, LLC - DivX Media Server Launcher.) -- C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Wow6432Node\Run: [DivXUpdate] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
O4 - HKUS\S-1-5-21-960005156-2734398101-3416795636-1001\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-21-960005156-2734398101-3416795636-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Nadège\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKUS\S-1-5-21-960005156-2734398101-3416795636-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe

---\\ Modification Domaine/Adresses DNS (O17) (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Liste des services NT non Microsoft et non désactivés (O23) (12) - 10s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: GFNEX Service (GFNEXSrv) . (.All rights reserved - GFNEXSrv.) - C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Nero Update (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation - TOSHIBA eco Utility Service.) - C:\Program Files\TOSHIBA\Teco\TecoService.exe
O23 - Service: UDisk Monitor (UDisk Monitor) . (...) - C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe

---\\ Tâches planifiées en automatique (O39) (54) - 24s
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001Core.job [914]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001UA.job [936]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1004Core.job [926]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1004UA.job [948]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1005Core.job [926]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1005UA.job [948]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1076]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1080]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001Core.job [1034]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001UA.job [1086]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Start WinZip Driver Updater for H@Nadège(logon).job [296]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3886]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [4182]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\avastBCLRestartS-1-5-21-960005156-2734398101-3416795636-1001 [3264]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2774]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [3538]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001Core [3436]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001UA [3786]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1004Core [3450]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1004UA [3800]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1005Core [3454]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1005UA [3804]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3816]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4052]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001Core [3654]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-960005156-2734398101-3416795636-1001UA [4034]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-960005156-2734398101-3416795636-1004 [3080]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Start WinZip Driver Updater for H@Nadège(logon) [2556]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{0C966B9D-4507-4EE2-8161-45CF5B331929} [3366]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{11DEF653-6BA0-493A-9F09-3CDEBEB0EF4F} [3258]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{19156FE4-A217-4D34-B80C-F2008C518682} [3394]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{259D75F2-F1DE-49CA-BC08-197F975457D2} [3270]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{28671C7D-117C-4E1A-8A36-7B97EB7BFDDC} [3378]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{3FAD9BBC-79AE-4ED1-8A3E-7CC17653F1B7} [3284]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{456EBC90-6AE0-4E5A-A2EB-02C204F7BAF3} [3260]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{4D222728-9C13-4923-AB8D-90B78BC0A4B8} [3270]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{5A42EE39-1EDE-4BCD-A77A-2ED846D0B9FD} [3296]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{77010FFF-58A7-4DB3-9D1B-D683631EB2E1} [3656]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{7AA27DC7-D52E-4E0E-8B88-0D4365BD1E1E} [3312]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{7D6E56BF-E7FF-4758-940D-3440B96D0DB2} [3304]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{9D0D10D7-A266-4694-AF18-B95F3634E470} [3248]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{A0EEC970-1172-4FDA-A96C-D9DEC25A8C20} [3278]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{A22D52A1-AB90-4892-AB05-0DB84943C9C0} [3266]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{B5985842-A0BF-4B30-98AF-E7F555BE8E54} [3346]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{BE58E8F7-438C-40F4-8C2B-7BE83F6E6852} [3310]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{C1F192DE-018A-4F7F-9DFF-6AA2D5C56D51} [3266]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{C90AF8E6-39DD-4275-97CD-2136496BA9CF} [3292]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{CD38E13E-DA26-46CB-A45F-640596F00B64} [3272]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{CF55875B-4DD2-4F9D-A706-1170615111CC} [3284]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{E5CBFC11-8004-4275-BF3D-1858A81D6CA3} [3304]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{F738980E-0746-4FCA-BCBE-96A0CE3B89B6} [3234]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\{FC0E5BE1-01C6-4B5B-BD38-8AE477B37476} [3276]

---\\ Logiciels installés (O42) (156) - 105s
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: WinZip Driver Updater - (.VAPC (Lux) S.a.r.L.) [HKLM][64Bits] -- WinZip Driver Updater
O42 - Logiciel: TOSHIBA Function Key - (.Toshiba Corporation.) [HKLM][64Bits] -- {16562A90-71BC-41A0-B890-D91B0C267120}
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441}
O42 - Logiciel: TOSHIBA eco Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- {5944B9D4-3C2A-48DE-931E-26B31714A2F7}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {787136D2-F0F8-4625-AA3F-72D7795AC842}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8DE47BBC-F471-6960-2FAB-13D8983397C5}
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8E7CCFB3-4102-6A32-8C4F-202B7AB7C8E3}
O42 - Logiciel: Premium Sound HD - (.SRS Labs, Inc..) [HKLM][64Bits] -- {94F03B8E-CB73-4653-AFE9-79112C01FED2}
O42 - Logiciel: TOSHIBA Desktop Assist - (.Toshiba Corporation.) [HKLM][64Bits] -- {95CCACF0-010D-45F0-82BF-858643D8BC02}
O42 - Logiciel: TOSHIBA PC Health Monitor - (.Toshiba Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {B8BA155B-1E75-405F-9CB4-8A99615D09DC}
O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {B8C8422F-01F1-4791-B084-047AAFF9BFCC}
O42 - Logiciel: Toshiba Places Icon Utility - (.TOSHIBA.) [HKLM][64Bits] -- {C991A8C4-307C-4FDD-8AAE-A1BF44881E95}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
O42 - Logiciel: TOSHIBA VIDEO PLAYER - (.Toshiba Corporation.) [HKLM][64Bits] -- {FF07604E-C860-40E9-A230-E37FA41F103A}
O42 - Logiciel: V.3.00 on C - (...) [HKLM][64Bits] -- V.3.00 on C
O42 - Logiciel: 10 Jours Sous Les Mers - (...) [HKLM][64Bits] -- 10 Jours Sous Les Mers
O42 - Logiciel: 4 Elements By Crimo - (...) [HKLM][64Bits] -- 4 Elements
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Alabama Smith - Escape from Pompeii - (...) [HKLM][64Bits] -- Alabama Smith - Escape from Pompeii
O42 - Logiciel: Android USB Driver - (...) [HKLM][64Bits] -- Android USB Driver_is1
O42 - Logiciel: Ankh 2 - le Coeur d'Osiris - (...) [HKLM][64Bits] -- Ankh - Heart of Osiris
O42 - Logiciel: Audacity 2.0.5 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast
O42 - Logiciel: Azada - Ancient Magic - (...) [HKLM][64Bits] -- Azada - Ancient Magic
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant
O42 - Logiciel: Cooking Academy - (...) [HKLM][64Bits] -- Cooking Academy
O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM][64Bits] -- DivX Setup
O42 - Logiciel: Dream Day Honeymoon - (...) [HKLM][64Bits] -- Dream Day Honeymoon
O42 - Logiciel: eMule - (...) [HKLM][64Bits] -- eMule
O42 - Logiciel: FormatFactory 3.3.5.0 - (.Format Factory.) [HKLM][64Bits] -- FormatFactory
O42 - Logiciel: Free YouTube to Mp3 Converter version 3.1 - (.DVD Video Soft Limited..) [HKLM][64Bits] -- Free YouTube to Mp3 Converter_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Hide and Secret - (...) [HKLM][64Bits] -- Hide and Secret
O42 - Logiciel: Hot Dish 2 - Cross Country Cook Off - (...) [HKLM][64Bits] -- Hot Dish 2 - Cross Country Cook Off
O42 - Logiciel: Image Converter - (.Image Converter.) [HKLM][64Bits] -- Image Converter Image Converter
O42 - Logiciel: Toshiba Password Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- InstallShield_{6D35FF17-A8B3-43D3-917E-5A1F2C3FB628}
O42 - Logiciel: Intel AppUp(SM) center - (.Intel.) [HKLM][64Bits] -- Intel AppUp(SM) center 33268
O42 - Logiciel: Jane`s Hotel - Family Hero - (...) [HKLM][64Bits] -- Jane`s Hotel - Family Hero
O42 - Logiciel: Jennys Fish Shop - (...) [HKLM][64Bits] -- Jennys Fish Shop
O42 - Logiciel: Laura Jones and the Gates of Good and Evil - (...) [HKLM][64Bits] -- Laura Jones and the Gates of Good and Evil
O42 - Logiciel: Le Comte de Monte Cristo - (...) [HKLM][64Bits] -- Le Comte de Monte Cristo
O42 - Logiciel: Les Chasseurs de Tresor - Reves d'Or - (...) [HKLM][64Bits] -- Les Chasseurs de Tresor - Reves d'Or
O42 - Logiciel: Les Tresors de l'Ile Mysterieuse - (...) [HKLM][64Bits] -- Les Tresors de l'Ile Mysterieuse
O42 - Logiciel: Little Shop - Big City - (.GameHouse, Inc..) [HKLM][64Bits] -- Little Shop - Big City
O42 - Logiciel: Magic Encyclopedia - (...) [HKLM][64Bits] -- Magic Encyclopedia
O42 - Logiciel: Magic Seeds - (...) [HKLM][64Bits] -- Magic Seeds
O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.2.1012 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 38.0.5 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Mystery Case Files - Madame Fate - (...) [HKLM][64Bits] -- Mystery Case Files - Madame Fate
O42 - Logiciel: Mystère a Londres - (...) [HKLM][64Bits] -- Mystère a Londres
O42 - Logiciel: Nostradamus, la dernière prophétie - (.Elektrogames.) [HKLM][64Bits] -- Nostradamus, la dernière prophétie_is1
O42 - Logiciel: SFR - Mediacenter Evolution - (.SFR.) [HKLM][64Bits] -- SFR_Mediacenter Evolution
O42 - Logiciel: The Secret of Margrave Manor - (...) [HKLM][64Bits] -- The Secret of Margrave Manor
O42 - Logiciel: The Sultan's Labyrinth - (...) [HKLM][64Bits] -- The Sultan's Labyrinth
O42 - Logiciel: Uninstall 1.0.0.0 - (...) [HKLM][64Bits] -- Uninstall_is1
O42 - Logiciel: VLC media player 2.0.7 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent toshiba Master Uninstall =>.WildTangent
O42 - Logiciel: WinRAR 5.11 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Women's Murder Club - (...) [HKLM][64Bits] -- Women's Murder Club
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-08c36a38-7e39-4ff5-b262-98b4d49d107a =>.WildTangent
O42 - Logiciel: Jewel Quest Solitaire 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-1256837b-5659-4df3-a0ed-50a8eeb121b9 =>.WildTangent
O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-363a6b9d-22b7-47d8-8023-eb20a480f844 =>.WildTangent
O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-579281fe-c496-43cd-81cf-8b5095d163c9 =>.WildTangent
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-8dcc207a-bac5-4b26-bcac-5c13006ee344 =>.WildTangent
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-8e83003e-621f-45a6-93fd-b971d5789fb9 =>.WildTangent
O42 - Logiciel: Island Tribe - (.WildTangent.) [HKLM][64Bits] -- WTA-ade4ba54-ad4c-4d7f-96fd-a4099293927f =>.WildTangent
O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-b4b2d6e9-4ec2-41c3-b9ad-e92646ede74f =>.WildTangent
O42 - Logiciel: Peggle Nights - (.WildTangent.) [HKLM][64Bits] -- WTA-c16ff033-b3a7-40f6-9ffc-79c671bee256 =>.WildTangent
O42 - Logiciel: Empress of the Deep - The Darkest Secret - (.WildTangent.) [HKLM][64Bits] -- WTA-dae15bc4-a4ee-4e74-9c20-e92fd4ddebb3 =>.WildTangent
O42 - Logiciel: Virtual Villagers 4 - The Tree of Life - (.WildTangent.) [HKLM][64Bits] -- WTA-ef161ee8-d885-4da4-9faf-5f5897047847 =>.WildTangent
O42 - Logiciel: Nero BackItUp - (.Nero AG.) [HKLM][64Bits] -- {0071820F-09B0-4998-8320-F89629DCBC99}
O42 - Logiciel: Nero Kwik Media - (.Nero AG.) [HKLM][64Bits] -- {052A1E34-A54B-458C-A4E3-24C3E054754A}
O42 - Logiciel: TOSHIBA System Settings - (.Toshiba Corporation.) [HKLM][64Bits] -- {05A55927-DB9B-4E26-BA44-828EBFF829F0}
O42 - Logiciel: Nero Express Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0708FF30-78C0-47B0-81F0-C84604DC769C}
O42 - Logiciel: Nero RescueAgent Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0B311221-05A5-4766-8D03-7A6446794156}
O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {0E4630AF-0AB7-440E-A978-1A78FC4F43B9}
O42 - Logiciel: Nero BurnRights - (.Nero AG.) [HKLM][64Bits] -- {1001266B-D4BB-46D9-B023-2612A8CE3A31}
O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM][64Bits] -- {1B6F5E51-575E-4693-BCA2-7543570D076D}
O42 - Logiciel: TOSHIBA System Driver - (.Toshiba Corporation.) [HKLM][64Bits] -- {1E6A96A1-2BAB-43EF-8087-30437593C66C}
O42 - Logiciel: Nero Kwik Media Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {1F16820E-D0E7-4636-939E-45CBFEFB06E1}
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7}
O42 - Logiciel: iGraal Toolbar for Internet Explorer - (.iGraal.) [HKLM][64Bits] -- {240373D3-4199-4F41-BB4D-15D5B830C82D}-32 =>PUP.Optional.iGraal
O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0}
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {24D38277-CE6E-4E12-A2EE-F46832A4FA2F}
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {25A3B953-1423-3F15-640E-B620DD0F419A}
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {400C31E4-796F-4E86-8FDC-C3C4FACC6847}
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090}
O42 - Logiciel: Nero Blu-ray Player Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {5B79E730-D897-4B8F-A1AD-7BB2D1F22B96}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
O42 - Logiciel: VoiceOver Kit - (.Apple Inc..) [HKLM][64Bits] -- {6B4AD1A9-E73A-4184-9D6B-072F8A3C5EBA}
O42 - Logiciel: WildTangent Games App (Toshiba Games) - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-toshiba =>.WildTangent
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD}
O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}
O42 - Logiciel: Welcome App (Start-up experience) - (.Nero AG.) [HKLM][64Bits] -- {828175FA-7307-4DBF-95AD-9CEE086B6F45}
O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {848A7C68-0ADC-4193-8A89-2CEA78E56A0C}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: Facebook Video Calling 2.0.0.447 - (.Skype Limited.) [HKLM][64Bits] -- {8DF41A9F-FE13-43E8-A003-5F9B55A011EE}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: Nero BurnRights Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {8E7EABFA-BF37-4824-B792-4220C9E04233}
O42 - Logiciel: TOSHIBA Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Realtek WLAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A55F-4fed-B2B9-173001290E16}
O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM][64Bits] -- {A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {AAC5D43E-816D-4C2D-8E51-55FFF35BE301}
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824144531}
O42 - Logiciel: Adobe Reader XI (11.0.11) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
O42 - Logiciel: TOSHIBA Recovery Media Creator - (.Toshiba Corporation.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}
O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {B953732D-B623-4E84-B369-CFFF7B1AE06F}
O42 - Logiciel: Nero 12 Essentials Toshiba - (.Nero AG.) [HKLM][64Bits] -- {BA8958DC-ADD7-41E5-8436-5883C7E871C7}
O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
O42 - Logiciel: Nero ControlCenter Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {C994C746-C6D0-4EBA-B09E-DF7B18381B69}
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E68EADA6-63A4-F6D3-FE12-968B879F7AD6}
O42 - Logiciel: e-Carte Bleue Société Générale - (...) [HKLM][64Bits] -- {EC3CAFA6-1CDC-46D1-AD8D-B66CFDE59EE0}
O42 - Logiciel: Nero BackItUp Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {EF0D1292-8FC1-41BE-9740-DBC134F66415}
O42 - Logiciel: The Dream Voyagers - (...) [HKLM][64Bits] -- {EFAF4432-4297-461A-BD58-6B8F87C699E3}_is1
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Toshiba TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {F76F5214-83A8-4030-80C9-1EF57391D72A}
O42 - Logiciel: Amanda Rose - The Game of Time - (...) [HKCU][64Bits] -- Amanda Rose - The Game of Time
O42 - Logiciel: Awakening 3 - Le Royaume Gobelin Edition Collector - (...) [HKCU][64Bits] -- Awakening 3 - Le Royaume Gobelin Edition Collector
O42 - Logiciel: Death at Fairing Point - Un Roman de Dana Knightstone Edition Collector - (...) [HKCU][64Bits] -- Death at Fairing Point - Un Roman de Dana Knightstone Edition Collector
O42 - Logiciel: Fireworks Extravaganza Deluxe - (.Zylom Games.) [HKCU][64Bits] -- Fireworks Extravaganza Deluxe
O42 - Logiciel: Hidden in Time 2 - Le Sentier des Illusions - (...) [HKCU][64Bits] -- Hidden in Time 2 - Le Sentier des Illusions
O42 - Logiciel: Hidden Mysteries - Les Secrets de Salem - (...) [HKCU][64Bits] -- Hidden Mysteries - Les Secrets de Salem
O42 - Logiciel: Image Editor Packages - (...) [HKCU][64Bits] -- Image Editor Packages
O42 - Logiciel: Les Chasseurs de Trésor 2 - Les Toiles Enchantées - (...) [HKCU][64Bits] -- Les Chasseurs de Trésor 2 - Les Toiles Enchantées
O42 - Logiciel: Les Chasseurs de Trésor 4 - L' Heure est venue Edition Collector - (...) [HKCU][64Bits] -- Les Chasseurs de Trésor 4 - L' Heure est venue Edition Collector
O42 - Logiciel: Lost Souls - Le Portrait Ensorcele Edition Collector - (...) [HKCU][64Bits] -- Lost Souls - Le Portrait Ensorcele Edition Collector
O42 - Logiciel: My Farm Life - (...) [HKCU][64Bits] -- My Farm Life
O42 - Logiciel: Mystery Case Files - 13th Skull Edition Collector - (...) [HKCU][64Bits] -- Mystery Case Files - 13th Skull Edition Collector
O42 - Logiciel: Mystery Chronicles 2 - Amours et Trahisons - (...) [HKCU][64Bits] -- Mystery Chronicles 2 - Amours et Trahisons
O42 - Logiciel: Mystery Trackers - Le Manoir des Void Edition Collector - (...) [HKCU][64Bits] -- Mystery Trackers - Le Manoir des Void Edition Collector
O42 - Logiciel: Nightmare Adventures - Le Fardeau des Wystwick - (...) [HKCU][64Bits] -- Nightmare Adventures - Le Fardeau des Wystwick
O42 - Logiciel: PuppetShow 3 - La Ville Cachee Edition Collector - (...) [HKCU][64Bits] -- PuppetShow 3 - La Ville Cachee Edition Collector
O42 - Logiciel: RhiannonFr - (.Arberth Studios.) [HKCU][64Bits] -- RhiannonFr
O42 - Logiciel: Shiver - Disparitions à Gordon Creek - Edition Collector - (...) [HKCU][64Bits] -- Shiver - Disparitions à Gordon Creek - Edition Collector
O42 - Logiciel: Spirits of Mystery - La Malédiction d'Ambre Edition Collector - (...) [HKCU][64Bits] -- Spirits of Mystery - La Malédiction d'Ambre Edition Collector
O42 - Logiciel: Ultimate Codecs Setup Wizard Packages - (...) [HKCU][64Bits] -- Ultimate Codecs Setup Wizard Packages =>PUP.Optional.InstallCore
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (112) - 106s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\DivX
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\e-Carte Bleue Société Générale
HKLM\SOFTWARE\Wow6432Node\GameHouse
HKLM\SOFTWARE\Wow6432Node\games
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\iGraal-32 =>PUP.Optional.iGraal
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\ManyCam
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NCH Software
HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Neuf
HKLM\SOFTWARE\Wow6432Node\NSIS_Example2
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenOffice.org
HKLM\SOFTWARE\Wow6432Node\PopCap
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\ReflexiveArcade
HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited
HKLM\SOFTWARE\Wow6432Node\sMedio
HKLM\SOFTWARE\Wow6432Node\TOSHIBA
HKLM\SOFTWARE\Wow6432Node\Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ArberthStudios
HKCU\SOFTWARE\Artogon
HKCU\SOFTWARE\Astar Games
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\Avast Software
HKCU\SOFTWARE\Big Fish Games
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Dekovir
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\EKG
HKCU\SOFTWARE\eMule
HKCU\SOFTWARE\FindHiddenObjects.com
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Fugazo
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\Gameo =>PUP.Optional.Gameo
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\GoldenGate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\ManyCam
HKCU\SOFTWARE\margrave
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Meridian93
HKCU\SOFTWARE\MisAndCheeze
HKCU\SOFTWARE\Modern UI Test
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Neuf
HKCU\SOFTWARE\Opalium
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PopCap
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Rumbic Studio
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Stepok
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Test3D
HKCU\SOFTWARE\Toshiba
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Visicom Media Inc
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Zylom
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\iGraal =>PUP.Optional.iGraal

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (357) - 110s
O43 - CFD: 2014/11/02 06:22:44 - [] D -- C:\Program Files (x86)\0ca45c95134d
O43 - CFD: 2014/10/23 15:34:01 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2014/10/23 15:34:05 - [] D -- C:\Program Files (x86)\Adobe Download Assistant
O43 - CFD: 2012/11/06 07:23:22 - [] D -- C:\Program Files (x86)\AMD APP
O43 - CFD: 2012/11/06 07:23:24 - [] D -- C:\Program Files (x86)\AMD AVT
O43 - CFD: 2013/11/09 21:43:10 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2013/01/14 14:55:33 - [] D -- C:\Program Files (x86)\ArberthStudiosRhiannonFr
O43 - CFD: 2014/09/14 14:49:08 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 2013/11/08 21:46:36 - [] D -- C:\Program Files (x86)\Audacity
O43 - CFD: 2014/10/23 15:33:59 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2013/12/04 22:11:13 - [] D -- C:\Program Files (x86)\Cradle of Rome 2
O43 - CFD: 2014/07/21 15:18:53 - [] D -- C:\Program Files (x86)\Death at Fairing Point - Un Roman de Dana Knightstone Edition Collector
O43 - CFD: 2014/08/02 22:45:26 - [] D -- C:\Program Files (x86)\Delicious - Emily's Childhood Memories
O43 - CFD: 2014/09/20 17:34:59 - [] D -- C:\Program Files (x86)\DivX
O43 - CFD: 2014/09/20 18:06:36 - [0] D -- C:\Program Files (x86)\DSP-worx
O43 - CFD: 2014/03/31 20:02:13 - [] D -- C:\Program Files (x86)\DVDVideoSoft
O43 - CFD: 2013/02/28 15:59:58 - [] D -- C:\Program Files (x86)\e-Carte Bleue Société Générale
O43 - CFD: 2012/09/04 17:29:15 - [] D -- C:\Program Files (x86)\eBay
O43 - CFD: 2013/01/13 21:17:31 - [] D -- C:\Program Files (x86)\eMule
O43 - CFD: 2014/11/02 06:22:44 - [] D -- C:\Program Files (x86)\f552dd4c52e3
O43 - CFD: 2014/10/06 01:24:26 - [] D -- C:\Program Files (x86)\FreeTime
O43 - CFD: 2013/02/26 22:53:35 - [] D -- C:\Program Files (x86)\Froyo_Android_Driver
O43 - CFD: 2013/01/28 13:59:27 - [] D -- C:\Program Files (x86)\GameHouse
O43 - CFD: 2015/01/25 20:35:40 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/06/09 14:47:33 - [] D -- C:\Program Files (x86)\GUM5AC3.tmp
O43 - CFD: 2013/02/12 20:41:15 - [0] D -- C:\Program Files (x86)\GUMC4B7.tmp
O43 - CFD: 2013/10/05 22:45:45 - [] D -- C:\Program Files (x86)\Hidden in Time 2 - Le Sentier des Illusions
O43 - CFD: 2013/10/07 13:31:30 - [] D -- C:\Program Files (x86)\Hidden Mysteries - Les Secrets de Salem
O43 - CFD: 2013/03/21 22:04:26 - [] D -- C:\Program Files (x86)\iGraal =>PUP.Optional.iGraal
O43 - CFD: 2013/08/22 01:52:57 - [] D -- C:\Program Files (x86)\Image Converter
O43 - CFD: 2015/04/15 23:34:32 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2012/09/04 17:29:43 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2014/07/10 03:20:48 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/03/31 23:33:48 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2013/09/12 00:05:44 - [] D -- C:\Program Files (x86)\Jeux EJPC
O43 - CFD: 2015/04/19 16:45:43 - [] D -- C:\Program Files (x86)\L' Héritage Secret - Une Aventure Kate Brooks
O43 - CFD: 2013/09/12 00:44:07 - [] D -- C:\Program Files (x86)\Les Chasseurs de Trésor 2 - Les Toiles Enchantées
O43 - CFD: 2013/09/10 23:34:00 - [] D -- C:\Program Files (x86)\Les Chasseurs de Trésor 4 - L' Heure est venue
O43 - CFD: 2013/10/07 13:33:09 - [] D -- C:\Program Files (x86)\Les Chasseurs de Trésor 4 - L' Heure est venue Edition Collector
O43 - CFD: 2013/09/29 13:49:18 - [] D -- C:\Program Files (x86)\Lost Souls - Le Portrait Ensorcele Edition Collector
O43 - CFD: 2013/05/09 18:02:44 - [] D -- C:\Program Files (x86)\Magic Encyclopedia
O43 - CFD: 2014/11/02 06:22:45 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2014/02/06 22:50:47 - [0] D -- C:\Program Files (x86)\ManyCam
O43 - CFD: 2014/08/02 22:54:42 - [] D -- C:\Program Files (x86)\Micro Application
O43 - CFD: 2012/09/04 17:46:28 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/06/11 16:33:56 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2013/05/04 21:54:25 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 2013/05/04 21:59:14 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/07/03 18:07:26 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/03 18:07:26 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2013/12/25 00:15:55 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2013/10/05 22:41:21 - [] D -- C:\Program Files (x86)\My Farm Life
O43 - CFD: 2014/06/26 17:53:59 - [] D -- C:\Program Files (x86)\Mystery Case Files - 13th Skull Edition Collector
O43 - CFD: 2013/09/12 00:46:54 - [] D -- C:\Program Files (x86)\Mystery Chronicles 2 - Amours et Trahisons
O43 - CFD: 2014/08/29 02:56:33 - [] D -- C:\Program Files (x86)\Mystery Trackers - Le Manoir des Void Edition Collector
O43 - CFD: 2013/09/09 17:33:42 - [] D -- C:\Program Files (x86)\Mystère a Londres
O43 - CFD: 2014/09/04 17:26:06 - [] D -- C:\Program Files (x86)\Nancy Drew - Chasseurs de Tornades
O43 - CFD: 2012/09/04 17:40:40 - [] D -- C:\Program Files (x86)\Nero
O43 - CFD: 2013/09/12 00:49:19 - [] D -- C:\Program Files (x86)\Nightmare Adventures - Le Fardeau des Wystwick
O43 - CFD: 2013/01/13 19:43:44 - [] D -- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 2013/05/09 19:28:44 - [] D -- C:\Program Files (x86)\Pirate Poppers =>Trojan.Vonteera
O43 - CFD: 2013/09/28 21:42:28 - [] D -- C:\Program Files (x86)\PuppetShow 3 - La Ville Cachee Edition Collector
O43 - CFD: 2012/11/06 07:31:57 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2013/03/25 00:58:46 - [] D -- C:\Program Files (x86)\Realtek WLAN Driver
O43 - CFD: 2013/12/25 00:15:55 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2014/06/15 22:49:18 - [] D -- C:\Program Files (x86)\SFR
O43 - CFD: 2014/08/27 20:53:07 - [] D -- C:\Program Files (x86)\Shiver - Disparitions à Gordon Creek - Edition Collector
O43 - CFD: 2014/08/03 02:13:18 - [] D -- C:\Program Files (x86)\Spirits of Mystery - La Malédiction d'Ambre Edition Collector
O43 - CFD: 2013/01/13 23:59:02 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 2013/01/13 22:09:37 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2
O43 - CFD: 2012/11/06 07:26:54 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2013/09/10 05:18:18 - [] D -- C:\Program Files (x86)\The Dream Voyagers
O43 - CFD: 2015/04/15 23:34:44 - [] D -- C:\Program Files (x86)\TOSHIBA
O43 - CFD: 2012/11/06 07:59:37 - [] D -- C:\Program Files (x86)\TOSHIBA Games
O43 - CFD: 2013/08/14 03:04:11 - [] D -- C:\Program Files (x86)\Toshiba TEMPRO
O43 - CFD: 2013/01/13 20:12:33 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2012/11/06 07:54:46 - [] D -- C:\Program Files (x86)\WildTangent Games
O43 - CFD: 2014/05/16 17:41:39 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2013/05/04 21:59:09 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2013/11/14 09:13:28 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2014/05/08 19:40:19 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2014/05/08 19:40:20 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2013/11/14 09:13:28 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2014/05/08 19:40:19 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/12/25 00:57:28 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2014/10/06 00:35:01 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2013/05/09 19:27:41 - [] D -- C:\Program Files (x86)\Women's Murder Club
O43 - CFD: 2015/04/12 22:01:45 - [] D -- C:\Program Files (x86)\Zylom Games
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\10 Jours Sous Les Mers
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4 Elements
O43 - CFD: 2013/08/22 17:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013/11/14 09:16:51 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/05/08 19:40:55 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/12/04 22:44:35 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Airport Mania - First Flight
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alabama Smith - Escape from Pompeii
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Azada - Ancient Magic
O43 - CFD: 2014/10/06 01:28:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2014/12/15 20:59:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COKTEL
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cooking Academy
O43 - CFD: 2013/05/22 18:19:15 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defender of the Crown
O43 - CFD: 2014/09/20 17:34:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dream Day Honeymoon
O43 - CFD: 2014/03/31 20:02:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
O43 - CFD: 2015/04/12 22:02:32 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Go-Go Gourmet
O43 - CFD: 2014/11/02 06:22:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/04/12 22:03:03 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gourmania
O43 - CFD: 2014/09/20 18:45:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hide and Secret
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hot Dish 2 - Cross Country Cook Off
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Converter
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center
O43 - CFD: 2014/03/31 22:15:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jane`s Hotel - Family Hero
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jennys Fish Shop
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Laura Jones and the Gates of Good and Evil
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Le Comte de Monte Cristo
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Chasseurs de Tresor - Reves d'Or
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Tresors de l'Ile Mysterieuse
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Encyclopedia
O43 - CFD: 2013/12/25 01:01:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Seeds
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/11/02 06:22:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2014/08/02 22:57:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application
O43 - CFD: 2015/06/10 23:26:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Madame Fate
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystère a Londres
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nostradamus
O43 - CFD: 2013/12/25 01:01:56 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pirate Poppers =>Trojan.Vonteera
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RhiannonFr
O43 - CFD: 2014/06/15 22:49:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs
O43 - CFD: 2014/12/05 14:11:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2014/05/08 19:40:56 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/11/14 09:16:50 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Dream Voyagers
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Secret of Margrave Manor
O43 - CFD: 2014/08/27 20:28:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sultan's Labyrinth
O43 - CFD: 2013/12/25 00:57:41 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2013/12/25 01:01:56 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2014/10/06 00:35:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/07/07 18:27:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
O43 - CFD: 2013/12/25 01:01:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Women's Murder Club
O43 - CFD: 2013/12/25 00:57:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zylom Games
O43 - CFD: 2014/07/05 22:23:22 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2014/10/23 15:34:09 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2013/05/12 16:43:25 - [] D -- C:\ProgramData\Airport Mania - First Flight
O43 - CFD: 2013/10/05 22:49:33 - [] D -- C:\ProgramData\aliasworlds
O43 - CFD: 2012/11/06 07:23:25 - [] D -- C:\ProgramData\AMD
O43 - CFD: 2014/03/31 22:05:54 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2013/11/09 21:44:50 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2013/01/13 18:47:09 - [] D -- C:\ProgramData\Astar Games
O43 - CFD: 2013/11/25 17:35:30 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2013/01/13 18:11:30 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/09/07 21:14:15 - [] D -- C:\ProgramData\Dekovir
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2014/09/20 17:35:07 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/08/29 02:57:00 - [] D -- C:\ProgramData\Elephant Games
O43 - CFD: 2013/01/13 21:18:11 - [] D -- C:\ProgramData\eMule
O43 - CFD: 2013/01/20 18:53:44 - [] D -- C:\ProgramData\FarmFrenzy_Vikings
O43 - CFD: 2013/09/29 14:17:21 - [] D -- C:\ProgramData\Fenomen Games
O43 - CFD: 2013/05/09 19:18:05 - [] D -- C:\ProgramData\Flood Light Games
O43 - CFD: 2013/05/22 22:46:20 - [] D -- C:\ProgramData\Fugazo
O43 - CFD: 2013/09/10 05:18:26 - [] D -- C:\ProgramData\GameHouse
O43 - CFD: 2013/01/14 14:45:34 - [] D -- C:\ProgramData\HideAndSecret3
O43 - CFD: 2012/09/04 17:30:39 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2013/03/22 23:37:14 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 2014/11/02 02:11:26 - [0] D -- C:\ProgramData\LizardSales =>PUP.Optional.LizardSales
O43 - CFD: 2014/07/14 00:45:15 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2013/11/11 23:01:44 - [] D -- C:\ProgramData\ManyCam
O43 - CFD: 2014/12/01 23:21:42 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2013/01/13 18:11:30 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2013/09/07 22:38:10 - [] D -- C:\ProgramData\Meridian93
O43 - CFD: 2014/12/10 19:51:46 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2014/03/13 17:45:09 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2013/05/04 21:53:47 - [] D -- C:\ProgramData\Microsoft SkyDrive
O43 - CFD: 2013/01/13 18:11:30 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/05/12 22:02:50 - [] D -- C:\ProgramData\MonteCristo
O43 - CFD: 2013/01/14 00:20:00 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2013/01/28 13:59:46 - [] D -- C:\ProgramData\n7-89-o9-3r-4t-r9
O43 - CFD: 2012/09/04 18:21:04 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2015/04/15 23:26:58 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2013/05/22 22:59:13 - [] D -- C:\ProgramData\PlayFirst
O43 - CFD: 2013/05/22 17:43:34 - [] D -- C:\ProgramData\Playrix Entertainment
O43 - CFD: 2013/12/25 00:57:44 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2013/11/14 09:16:50 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2013/03/22 01:37:25 - [] D -- C:\ProgramData\Rumbic Studio
O43 - CFD: 2015/04/12 21:57:10 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/03/24 16:16:43 - [] D -- C:\ProgramData\Synaptics
O43 - CFD: 2015/04/19 16:09:25 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2013/01/13 18:29:47 - [] D -- C:\ProgramData\Toshiba
O43 - CFD: 2013/03/22 23:37:14 - [] D -- C:\ProgramData\TOSHIBA Tempro
O43 - CFD: 2013/01/13 18:21:46 - [] D -- C:\ProgramData\ToshibaEurope
O43 - CFD: 2013/09/12 00:35:07 - [] D -- C:\ProgramData\Valusoft
O43 - CFD: 2012/11/06 07:59:36 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2015/07/07 18:26:58 - [] D -- C:\ProgramData\WinZip
O43 - CFD: 2013/05/09 17:40:31 - [] D -- C:\ProgramData\Zylom
O43 - CFD: 2013/02/19 22:52:24 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014/10/23 15:33:59 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2014/03/31 22:14:13 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2012/11/06 07:23:25 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 2014/09/20 17:34:34 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 2014/03/31 20:02:23 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 2013/12/25 00:34:52 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2013/12/25 00:57:19 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2012/09/04 17:39:53 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2013/11/14 09:13:28 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/04/15 23:35:01 - [] D -- C:\Program Files (x86)\Common Files\Toshiba Shared
O43 - CFD: 2013/05/04 21:51:52 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2013/02/19 22:54:10 - [] D -- C:\Users\Nadège\AppData\Roaming\Adobe
O43 - CFD: 2013/10/07 00:41:52 - [] D -- C:\Users\Nadège\AppData\Roaming\Alawar
O43 - CFD: 2013/02/10 18:26:37 - [] D -- C:\Users\Nadège\AppData\Roaming\AlawarEntertainment
O43 - CFD: 2013/10/05 22:49:33 - [] D -- C:\Users\Nadège\AppData\Roaming\aliasworlds
O43 - CFD: 2013/10/07 08:42:32 - [] D -- C:\Users\Nadège\AppData\Roaming\Ankh
O43 - CFD: 2014/08/03 00:14:25 - [] D -- C:\Users\Nadège\AppData\Roaming\Ankh - Heart of Osiris
O43 - CFD: 2014/03/31 21:59:10 - [] D -- C:\Users\Nadège\AppData\Roaming\Apple Computer
O43 - CFD: 2014/08/27 20:53:28 - [] D -- C:\Users\Nadège\AppData\Roaming\Artogon
O43 - CFD: 2013/01/13 18:30:42 - [] D -- C:\Users\Nadège\AppData\Roaming\ATI
O43 - CFD: 2014/07/14 01:19:13 - [] D -- C:\Users\Nadège\AppData\Roaming\Audacity
O43 - CFD: 2013/11/25 17:49:15 - [] D -- C:\Users\Nadège\AppData\Roaming\AVAST Software
O43 - CFD: 2013/09/12 01:00:20 - [] D -- C:\Users\Nadège\AppData\Roaming\Awem
O43 - CFD: 2013/09/09 17:35:13 - [] D -- C:\Users\Nadège\AppData\Roaming\Big Fish Games
O43 - CFD: 2013/02/17 02:44:16 - [] D -- C:\Users\Nadège\AppData\Roaming\BlamGames
O43 - CFD: 2013/10/18 00:34:34 - [] D -- C:\Users\Nadège\AppData\Roaming\Boomzap
O43 - CFD: 2014/09/20 17:30:12 - [] D -- C:\Users\Nadège\AppData\Roaming\CDXReader
O43 - CFD: 2014/10/06 00:10:55 - [] D -- C:\Users\Nadège\AppData\Roaming\DivX
O43 - CFD: 2014/08/29 02:57:00 - [] D -- C:\Users\Nadège\AppData\Roaming\Elephant Games
O43 - CFD: 2014/08/03 02:31:07 - [] D -- C:\Users\Nadège\AppData\Roaming\ERS Game Studios
O43 - CFD: 2013/05/09 19:18:05 - [] D -- C:\Users\Nadège\AppData\Roaming\Flood Light Games
O43 - CFD: 2014/11/15 15:49:17 - [] D -- C:\Users\Nadège\AppData\Roaming\Friday's games
O43 - CFD: 2013/01/28 13:59:34 - [] D -- C:\Users\Nadège\AppData\Roaming\GameHouse
O43 - CFD: 2013/10/07 13:36:20 - [] D -- C:\Users\Nadège\AppData\Roaming\GameMill Entertainment
O43 - CFD: 2013/09/12 01:44:22 - [] D -- C:\Users\Nadège\AppData\Roaming\Ghost Ship Studios
O43 - CFD: 2013/05/22 22:53:41 - [] D -- C:\Users\Nadège\AppData\Roaming\Go Go Gourmet
O43 - CFD: 2013/01/20 18:25:21 - [] D -- C:\Users\Nadège\AppData\Roaming\Gogii
O43 - CFD: 2014/09/20 17:38:53 - [] HD -- C:\Users\Nadège\AppData\Roaming\GoldenGate
O43 - CFD: 2013/02/26 18:27:06 - [] D -- C:\Users\Nadège\AppData\Roaming\Google
O43 - CFD: 2013/12/25 02:01:50 - [] D -- C:\Users\Nadège\AppData\Roaming\Identities
O43 - CFD: 2013/05/22 18:27:09 - [] D -- C:\Users\Nadège\AppData\Roaming\Jane s Hotel Family Hero
O43 - CFD: 2013/02/16 23:30:39 - [] D -- C:\Users\Nadège\AppData\Roaming\JoyBits
O43 - CFD: 2014/09/20 17:30:14 - [] D -- C:\Users\Nadège\AppData\Roaming\LavFilters
O43 - CFD: 2013/09/12 01:37:34 - [] D -- C:\Users\Nadège\AppData\Roaming\Lazy Turtle Games
O43 - CFD: 2013/09/29 21:35:00 - [] D -- C:\Users\Nadège\AppData\Roaming\MA2
O43 - CFD: 2013/01/13 20:12:25 - [] D -- C:\Users\Nadège\AppData\Roaming\Macromedia
O43 - CFD: 2013/09/12 00:49:54 - [] D -- C:\Users\Nadège\AppData\Roaming\Magic Seeds
O43 - CFD: 2013/12/26 19:52:13 - [] D -- C:\Users\Nadège\AppData\Roaming\ManyCam
O43 - CFD: 2013/09/07 22:37:15 - [] D -- C:\Users\Nadège\AppData\Roaming\Meridian93
O43 - CFD: 2014/11/02 04:10:28 - [] SD -- C:\Users\Nadège\AppData\Roaming\Microsoft
O43 - CFD: 2013/10/05 23:44:44 - [] D -- C:\Users\Nadège\AppData\Roaming\Monkey Barrel Games
O43 - CFD: 2015/06/12 13:21:41 - [] D -- C:\Users\Nadège\AppData\Roaming\Mozilla
O43 - CFD: 2013/02/19 00:18:06 - [] D -- C:\Users\Nadège\AppData\Roaming\MysteryStudio
O43 - CFD: 2013/03/17 09:08:19 - [] D -- C:\Users\Nadège\AppData\Roaming\Nero
O43 - CFD: 2013/01/13 20:09:59 - [] D -- C:\Users\Nadège\AppData\Roaming\OpenOffice.org
O43 - CFD: 2013/09/29 17:35:01 - [] D -- C:\Users\Nadège\AppData\Roaming\Orneon
O43 - CFD: 2013/05/12 16:43:55 - [] D -- C:\Users\Nadège\AppData\Roaming\PeaZip
O43 - CFD: 2013/09/10 03:41:20 - [] D -- C:\Users\Nadège\AppData\Roaming\Phantasmat_bf_ce1
O43 - CFD: 2013/08/22 02:02:31 - [] D -- C:\Users\Nadège\AppData\Roaming\PhotoScape
O43 - CFD: 2014/08/03 20:15:05 - [] D -- C:\Users\Nadège\AppData\Roaming\PlayFirst
O43 - CFD: 2013/10/18 01:41:16 - [] D -- C:\Users\Nadège\AppData\Roaming\SecretIslandFraBF
O43 - CFD: 2014/06/15 22:55:49 - [] D -- C:\Users\Nadège\AppData\Roaming\SFR
O43 - CFD: 2013/03/24 23:17:01 - [] D -- C:\Users\Nadège\AppData\Roaming\sMedio
O43 - CFD: 2013/01/13 21:50:40 - [] D -- C:\Users\Nadège\AppData\Roaming\SMIGames
O43 - CFD: 2013/02/19 00:20:43 - [] D -- C:\Users\Nadège\AppData\Roaming\SprillBermudeFr
O43 - CFD: 2014/08/27 20:29:12 - [] D -- C:\Users\Nadège\AppData\Roaming\SultansLabyrinth
O43 - CFD: 2013/03/24 23:03:07 - [] D -- C:\Users\Nadège\AppData\Roaming\Toshiba
O43 - CFD: 2015/07/06 19:23:14 - [] D -- C:\Users\Nadège\AppData\Roaming\uTorrent
O43 - CFD: 2013/09/12 00:35:07 - [] D -- C:\Users\Nadège\AppData\Roaming\Valusoft
O43 - CFD: 2014/10/06 00:11:54 - [] D -- C:\Users\Nadège\AppData\Roaming\vlc
O43 - CFD: 2014/09/07 23:43:00 - [] D -- C:\Users\Nadège\AppData\Roaming\WhiteBirdsProductions
O43 - CFD: 2013/03/25 00:56:58 - [] D -- C:\Users\Nadège\AppData\Roaming\WinBatch
O43 - CFD: 2014/12/29 18:59:10 - [0] D -- C:\Users\Nadège\AppData\Roaming\Windows Live Writer
O43 - CFD: 2014/10/06 00:35:39 - [] D -- C:\Users\Nadège\AppData\Roaming\WinRAR
O43 - CFD: 2015/07/07 18:32:32 - [] D -- C:\Users\Nadège\AppData\Roaming\ZHP
O43 - CFD: 2013/05/09 18:16:47 - [] D -- C:\Users\Nadège\AppData\Roaming\Zylom
O43 - CFD: 2015/01/11 17:46:12 - [] D -- C:\Users\Nadège\AppData\Local\Adobe
O43 - CFD: 2013/11/09 21:43:13 - [] D -- C:\Users\Nadège\AppData\Local\Apple
O43 - CFD: 2013/11/09 21:46:56 - [] D -- C:\Users\Nadège\AppData\Local\Apple Computer
O43 - CFD: 2013/12/25 00:45:40 - [0] SHD -- C:\Users\Nadège\AppData\Local\Application Data
O43 - CFD: 2013/01/13 18:30:42 - [] D -- C:\Users\Nadège\AppData\Local\ATI
O43 - CFD: 2013/08/22 17:37:16 - [] D -- C:\Users\Nadège\AppData\Local\avgchrome
O43 - CFD: 2015/06/14 03:02:11 - [0] D -- C:\Users\Nadège\AppData\Local\Diagnostics
O43 - CFD: 2014/07/20 11:11:58 - [] SHD -- C:\Users\Nadège\AppData\Local\EmieSiteList
O43 - CFD: 2014/07/20 11:11:58 - [] SHD -- C:\Users\Nadège\AppData\Local\EmieUserList
O43 - CFD: 2013/01/14 00:40:30 - [] D -- C:\Users\Nadège\AppData\Local\eMule
O43 - CFD: 2013/06/28 23:09:11 - [] D -- C:\Users\Nadège\AppData\Local\fontconfig
O43 - CFD: 2013/05/16 22:58:49 - [] D -- C:\Users\Nadège\AppData\Local\gegl-0.2
O43 - CFD: 2015/01/25 16:14:50 - [] D -- C:\Users\Nadège\AppData\Local\Google
O43 - CFD: 2013/12/25 00:45:40 - [0] SHD -- C:\Users\Nadège\AppData\Local\Historique
O43 - CFD: 2013/01/18 14:59:24 - [] D -- C:\Users\Nadège\AppData\Local\Macromedia
O43 - CFD: 2014/12/29 18:58:58 - [] D -- C:\Users\Nadège\AppData\Local\Microsoft
O43 - CFD: 2014/11/18 18:37:56 - [] D -- C:\Users\Nadège\AppData\Local\Mozilla
O43 - CFD: 2014/12/15 21:40:36 - [] D -- C:\Users\Nadège\AppData\Local\Nero
O43 - CFD: 2014/12/15 21:35:39 - [] D -- C:\Users\Nadège\AppData\Local\Nero_AG
O43 - CFD: 2013/09/29 13:43:17 - [] D -- C:\Users\Nadège\AppData\Local\Oberon Games
O43 - CFD: 2014/11/20 01:22:48 - [] D -- C:\Users\Nadège\AppData\Local\Packages
O43 - CFD: 2013/01/13 22:04:17 - [] D -- C:\Users\Nadège\AppData\Local\Programs
O43 - CFD: 2013/07/15 18:57:35 - [] D -- C:\Users\Nadège\AppData\Local\SCE
O43 - CFD: 2013/01/13 18:25:21 - [] D -- C:\Users\Nadège\AppData\Local\SRS Labs
O43 - CFD: 2013/05/22 22:13:19 - [0] D -- C:\Users\Nadège\AppData\Local\STARGAZE_IMAGE_CACHE
O43 - CFD: 2014/09/20 17:36:00 - [0] D -- C:\Users\Nadège\AppData\Local\StormFall =>PUP.Optional.StormFall
O43 - CFD: 2015/07/07 18:35:54 - [] D -- C:\Users\Nadège\AppData\Local\Temp
O43 - CFD: 2013/12/25 00:45:40 - [0] SHD -- C:\Users\Nadège\AppData\Local\Temporary Internet Files
O43 - CFD: 2013/04/14 02:38:46 - [] D -- C:\Users\Nadège\AppData\Local\TOSHIBA
O43 - CFD: 2014/08/03 20:48:59 - [] D -- C:\Users\Nadège\AppData\Local\VirtualStore
O43 - CFD: 2014/12/29 18:58:59 - [] D -- C:\Users\Nadège\AppData\Local\Windows Live
O43 - CFD: 2014/12/29 18:59:21 - [] D -- C:\Users\Nadège\AppData\Local\Windows Live Writer
O43 - CFD: 2015/04/12 22:01:02 - [] D -- C:\Users\Nadège\AppData\Local\Zylom Games
O43 - CFD: 2013/05/22 13:07:06 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\10 Jours Sous Les Mers
O43 - CFD: 2013/05/22 17:43:18 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4 Elements
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/06/15 21:31:28 - [] RD -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/05/22 22:13:03 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alabama Smith - Escape from Pompeii
O43 - CFD: 2013/09/09 17:29:37 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Azada - Ancient Magic
O43 - CFD: 2013/05/22 22:46:07 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cooking Academy
O43 - CFD: 2013/09/29 13:41:31 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dream Day Honeymoon
O43 - CFD: 2014/10/06 01:25:57 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 2013/01/13 18:33:22 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/11/30 22:22:19 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2013/10/07 00:37:55 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hide and Secret
O43 - CFD: 2013/09/12 00:34:51 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hot Dish 2 - Cross Country Cook Off
O43 - CFD: 2013/12/25 01:01:54 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iGraal =>PUP.Optional.iGraal
O43 - CFD: 2013/05/22 18:25:34 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jane`s Hotel - Family Hero
O43 - CFD: 2013/10/07 00:39:21 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jennys Fish Shop
O43 - CFD: 2013/05/19 18:22:47 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Laura Jones and the Gates of Good and Evil
O43 - CFD: 2013/05/12 21:37:31 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Le Comte de Monte Cristo
O43 - CFD: 2013/09/29 13:27:54 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Les Chasseurs de Tresor - Reves d'Or
O43 - CFD: 2013/10/18 01:39:54 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Les Tresors de l'Ile Mysterieuse
O43 - CFD: 2013/12/25 01:01:54 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lost Souls - Le Portrait Ensorcele Edition Collector
O43 - CFD: 2013/05/09 18:02:44 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Magic Encyclopedia
O43 - CFD: 2013/09/12 00:41:14 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Magic Seeds
O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/11/20 01:17:47 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Micro Application
O43 - CFD: 2013/05/22 22:58:48 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Madame Fate
O43 - CFD: 2013/09/09 17:33:42 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystère a Londres
O43 - CFD: 2013/12/25 01:01:54 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nightmare Adventures - Le Fardeau des Wystwick
O43 - CFD: 2013/05/09 19:28:44 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pirate Poppers =>Trojan.Vonteera
O43 - CFD: 2013/01/14 14:55:32 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RhiannonFr
O43 - CFD: 2014/09/20 17:53:35 - [] RD -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/12/25 00:50:31 - [] RD -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/01/20 18:23:35 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Secret of Margrave Manor
O43 - CFD: 2014/08/27 20:28:35 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Sultan's Labyrinth
O43 - CFD: 2014/10/06 00:35:01 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2013/05/09 19:17:48 - [0] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Women's Murder Club
O43 - CFD: 2015/04/12 22:01:57 - [] D -- C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zylom Games

---\\ Liste des pilotes du système (SDL) (O58) (64) - 34s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176]
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200]
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016]
O58 - SDL:2014/12/20 18:02:26 A . (...) -- C:\WINDOWS\System32\drivers\aswHwid.sys [29208]
O58 - SDL:2013/03/07 01:33:20 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [22600]
O58 - SDL:2014/12/20 18:02:26 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [83280]
O58 - SDL:2014/12/20 18:02:26 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [93568]
O58 - SDL:2014/12/20 18:02:26 A . (...) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [65776]
O58 - SDL:2014/12/20 18:03:15 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswsnx.sys [1050432]
O58 - SDL:2014/12/20 18:02:26 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswsp.sys [436624]
O58 - SDL:2014/12/20 18:02:27 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswstm.sys [116728]
O58 - SDL:2014/12/20 18:02:27 A . (...) -- C:\WINDOWS\System32\drivers\aswVmm.sys [267632]
O58 - SDL:2014/07/21 22:04:28 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [13209088]
O58 - SDL:2014/07/21 22:04:28 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [626688]
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2011/08/24 10:02:22 A . (.Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\CT_U_USBSER.sys [122368]
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024]
O58 - SDL:2012/08/21 14:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248]
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2014/05/12 07:25:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816]
O58 - SDL:2014/05/12 07:26:00 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [91352]
O58 - SDL:2015/07/07 18:36:31 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [122584]
O58 - SDL:2013/12/06 15:37:50 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\WINDOWS\System32\drivers\mcaudrv_x64.sys [35232]
O58 - SDL:2013/11/27 03:53:58 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\WINDOWS\System32\drivers\mcvidrv.sys [52128]
O58 - SDL:2013/01/15 04:54:04 A . (.ManyCam LLC - ManyCam Virtual Webcam.) -- C:\WINDOWS\System32\drivers\mcvidrv_x64.sys [44544]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840]
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840]
O58 - SDL:2014/05/12 07:26:14 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216]
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368]
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288]
O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360]
O58 - SDL:2012/12/10 04:12:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3242896]
O58 - SDL:2010/12/22 17:24:00 A . (.Realtek Semiconductor Corporation - Realtek RTL819xP NDIS Driverr.) -- C:\WINDOWS\System32\drivers\rtl819xp.sys [626792]
O58 - SDL:2012/06/13 18:24:00 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUStor.sys [252048]
O58 - SDL:2013/07/31 20:25:43 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [1936088]
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040]
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800]
O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080]
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072]
O58 - SDL:2013/08/28 06:32:28 A . (.Synaptics Incorporated - Synaptics Touchpad 64-bit Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [524528]
O58 - SDL:2012/07/25 01:54:00 A . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\WINDOWS\System32\drivers\tdcmdpst.sys [31184]
O58 - SDL:2012/07/31 22:28:54 A . (.Windows (R) Win 7 DDK provider - Toshiba Hotkey Driver.) -- C:\WINDOWS\System32\drivers\Thotkey.sys [28632]
O58 - SDL:2012/06/18 20:30:56 A . (.TOSHIBA Corporation - tos_sps64.) -- C:\WINDOWS\System32\drivers\tos_sps64.sys [499096]
O58 - SDL:2012/07/22 01:59:02 A . (.TOSHIBA Corporation - TOSHIBA TVALZ Filter Driver.) -- C:\WINDOWS\System32\drivers\TVALZFL.sys [16768]
O58 - SDL:2012/07/26 02:34:42 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\WINDOWS\System32\drivers\TVALZ_O.SYS [32832]
O58 - SDL:2012/12/13 15:50:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (5) - 461s
O61 - LFC: 2015/07/02 21:31:05 A . (..) -- C:\Users\Nadège\Downloads\Firefox Setup Stub 38.0.5.exe [243592]
O61 - LFC: 2015/07/07 18:25:45 A . (.VAPC (Lux) S.a.r.L.) -- C:\Users\Nadège\Downloads\wzdu32.exe [3944424]
O61 - LFC: 2015/07/01 22:24:46 A . (.BitTorrent Inc..) -- C:\Users\Nadège\AppData\Roaming\uTorrent\updates\3.4.3_40298.exe [1694560]
O61 - LFC: 2015/07/07 18:19:57 A . (..) -- C:\Users\Nadège\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/07/01 23:27:03 A . (..) -- C:\Users\Nadège\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [99845]

---\\ Associations Shell Spawning (O67) (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 21s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {1945e092-ce7a-4b44-a259-a105b5dab2fd} - (lookineo) - http://www.lookineo.com/
O69 - SBI: SearchScopes [HKCU] {68e3123d-3b5b-436f-879e-a24c3e348a77} - (Astromenda) - http://astromenda.com/ =>PUP.Optional.Astromenda
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (34) - 4s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [208896]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [155136]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [155136]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [323072]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1308160]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1063424]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [903168]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [109568]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [150528]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [107008]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1214976]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [220672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [70656]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134144]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [220160]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324096]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [81408]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [97792]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [339456]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [491520]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1576960]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [50688]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [201728]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [164352]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [101376]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [534528]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [223744]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [71680]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [433664]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [306688]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3463680]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1017856]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [629760]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (22) - 70s
SR - Auto [2015/06/12 09:25:00] [ 82112] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - Demand [2015/06/23 18:54:36] [ 268464] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - Auto [// ::] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\system32\atiesrxx.exe
SR - Auto [2014/02/12 16:50:20] [ 43336] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - Auto [2014/12/20 18:02:14] [ 50344] avast! Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - Demand [2014/12/20 18:01:55] [ 4012248] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
SS - Demand [2010/10/12 19:59:12] [ 206072] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
SR - Auto [2011/10/14 00:38:46] [ 156672] GFNEX Service (GFNEXSrv) . (.All rights reserved.) - C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe
SS - Auto [2013/02/12 20:39:15] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2013/02/12 20:39:15] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2014/02/21 03:54:44] [ 641352] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - Auto [2015/04/14 09:36:30] [ 1080120] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
SS - Demand [2015/05/26 03:12:49] [ 148080] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SR - Auto [2012/07/13 16:27:00] [ 769432] Nero Update (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - Auto [2012/12/10 04:12:22] [ 201872] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
SR - Auto [2009/01/26 16:31:10] [ 1153368] SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
SR - Demand [2013/07/18 19:05:46] [ 116088] TEMPRO Service (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
SR - Demand [2012/07/28 00:35:00] [ 53384] TMachInfo (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
SR - Auto [// ::] [ 140632] TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation.) - C:\Windows\system32\TODDSrv.exe
SR - Auto [2012/08/14 05:14:02] [ 289192] TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Teco\TecoService.exe
SR - Demand [2012/07/28 19:20:44] [ 458152] TPCH Service (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
SR - Auto [2011/05/12 15:23:38] [ 512000] UDisk Monitor (UDisk Monitor) . (...) - C:\Program Files (x86)\Froyo_Android_Driver\Bin\MonServiceUDisk.exe

---\\ Recherche de clés de registre Tracing (O100) (14) - 3s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmarterPower_RASAPI32 =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmarterPower_RASMANCS =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)temp_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)temp_RASMANCS =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)_RASMANCS =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSmarterPower_RASAPI32 =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSmarterPower_RASMANCS =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSolutionReal_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSolutionReal_RASMANCS =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSmarterPower_RASAPI32 =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSmarterPower_RASMANCS =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSolutionReal_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSolutionReal_RASMANCS =>PUP.SolutionReal

---\\ Scan Additionnel (O88) (27) - 0s
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{240373D3-4199-4F41-BB4D-15D5B830C82D} =>PUP.Optional.iGraal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{240373D3-4199-4F41-BB4D-15D5B830C82D}-32 =>PUP.Optional.iGraal
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ultimate Codecs Setup Wizard Packages =>PUP.Optional.InstallCore
HKLM\SOFTWARE\Wow6432Node\iGraal-32 =>PUP.Optional.iGraal
HKCU\SOFTWARE\Gameo =>PUP.Optional.Gameo
HKCU\SOFTWARE\AppDataLow\Software\iGraal =>PUP.Optional.iGraal =>PUP.Optional.iGraal
C:\Program Files (x86)\iGraal =>PUP.Optional.iGraal
C:\Program Files (x86)\Pirate Poppers =>Trojan.Vonteera
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pirate Poppers =>Trojan.Vonteera
C:\ProgramData\LizardSales =>PUP.Optional.LizardSales
C:\Users\Nadège\AppData\Local\StormFall =>PUP.Optional.StormFall
C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iGraal =>PUP.Optional.iGraal
C:\Users\Nadège\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pirate Poppers =>Trojan.Vonteera
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmarterPower_RASAPI32 =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmarterPower_RASMANCS =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)temp_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)temp_RASMANCS =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SolutionRealUninstaller (1)_RASMANCS =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSmarterPower_RASAPI32 =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSmarterPower_RASMANCS =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSolutionReal_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateSolutionReal_RASMANCS =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSmarterPower_RASAPI32 =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSmarterPower_RASMANCS =>PUP.Optional.Sambreel
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSolutionReal_RASAPI32 =>PUP.SolutionReal
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilSolutionReal_RASMANCS =>PUP.SolutionReal

---\\ Récapitulatif des détections trouvées sur votre station (9) - 0s
http://www.nicolascoolman.fr/toolbar-igraal/ =>PUP.Optional.iGraal
http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore
http://www.nicolascoolman.fr/blog =>PUP.Optional.Gameo
http://www.nicolascoolman.fr/trojan-vonteera/ =>Trojan.Vonteera
http://www.nicolascoolman.fr/blog =>PUP.Optional.LizardSales
http://www.nicolascoolman.fr/blog =>PUP.Optional.StormFall
http://www.nicolascoolman.fr/pup-astromenda/ =>PUP.Optional.Astromenda
http://www.nicolascoolman.fr/blog =>PUP.Optional.Sambreel
http://www.nicolascoolman.fr/blog =>PUP.SolutionReal

~ End of the scan, 90960 items in 949 seconds (1078)(0)()

Publicité


Signaler le contenu de ce document

Publicité