cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.12.88 Par Nicolas Coolman (2015/07/12)
~ Démarré par Administrator (Administrator) (2015/07/12 19:16:01)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Administrator\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Administrator\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v43.0.2357.132
MFIE: Mozilla Firefox 39.0 (x86 fr) v39.0
MSIE: Internet Explorer v11.0.9600.16476

---\\ Informations sur les produits Windows (9) - 1s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : HYRR2
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 0s
Kaspersky Internet Security Technical Preview v16.0.0.207
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Surveillance de Logiciels (1) - 0s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 4054136
~ System Restore: Activé (Enable)
~ System drive C: has 73 GB free of 119 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: WIN7
~ User Name: Administrator
~ Logged in as Administrator

---\\ Enumération des unités disques (4) - 0s
~ Drive C: has 73 GB free of 119 GB (System)
~ Drive D: has 54 GB free of 120 GB
~ Drive E: has 72 GB free of 120 GB
~ Drive F: has 13 GB free of 116 GB

---\\ Recherche particulière de fichiers génériques (24) - 1s
[MD5.CA86ABB92D4878E819768C3A4956368B] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2388992]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024]
[MD5.9B6678DB9C6A232C5A84D2FDFFF8B0E1] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\Windows\System32\wininet.dll [2334208]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632]
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1656680]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808]

---\\ Processus lancés (19) - 2s
[MD5.C5647FB500C2A1F946B77C953528042D] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.4.) -- C:\Windows\system32\nvvsvc.exe [932040] [PID.360]
[MD5.32B37DD6E7D423DF3CF3B196C8005F85] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [409800] [PID.528]
[MD5.90B24138CAA9A068B2E1C3B2A913789A] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1200328] [PID.1532]
[MD5.C5647FB500C2A1F946B77C953528042D] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.4.) -- C:\Windows\system32\nvvsvc.exe [932040] [PID.1540]
[MD5.28D0B60C58D1F734449E735E2C4FCE94] - (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560] [PID.2184]
[MD5.27E9C689B3FC1BDAED9B2B3681D833F3] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2446992] [PID.2544]
[MD5.059E588FDF6B7E83227D45D026D21874] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744] [PID.2688]
[MD5.3AE97CB476F6DF4DFA0B4378E9DD9A81] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3898960] [PID.2700]
[MD5.93C82F365F9C0A2058A211E305A5CCFA] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128] [PID.2404]
[MD5.40BF0BFC7F7B95DF824064EE1848B05E] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360] [PID.2556]
[MD5.BAC15D03EFC8249216D1D610F3B1E67F] - (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe [695528] [PID.2072]
[MD5.9FF8D956E086D8E87B97AAE1019D0E48] - (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [112856] [PID.3064]
[MD5.40BF0BFC7F7B95DF824064EE1848B05E] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360] [PID.3804]
[MD5.40BF0BFC7F7B95DF824064EE1848B05E] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360] [PID.3816]
[MD5.8F840F58C3C93CBB9F6326DE242BE254] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [87256] [PID.4040]
[MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.3764]
[MD5.9D88591D3B97D30234F5B965B8E0ABD6] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [906432] [PID.3836]
[MD5.70159220855886718AB6F594E4D31DF5] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [14400728] [PID.4628]
[MD5.59499B4B9127191704FAAF58E220F85D] - (.Internet Download Manager, Tonec Inc. - Broker for reading of IDM settings.) -- C:\Program Files (x86)\Internet Download Manager\idmBroker.exe [69144] [PID.4676]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (22) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] "http://www.linkszb.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://2609787.fls.doubleclick.net/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://apps.skypeassets.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://clients2.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://fls.doubleclick.net/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://go.skype.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://login.skype.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://secure.skypeassets.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://smetrics.skype.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.com/"
G2 - GCE: Extension [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [bknbnapaddjdnbilpmlacdkjdkjmbjhd] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Extension [User Data\Default] [lkemddiljapcmhicklfpcbpfffahfbja] Web Navigation
G2 - GCE: Extension [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (14) - 1s
M0 - MFSP: prefs.js [Administrator - c2to8epd.default] http://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=fr-fr
M0 - MFSP: prefs.js [Administrator - c2to8epd.default] http://www.linkzb.com
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_203.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVision] - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVisionStreaming] - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.linkzb.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.linkzb.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ Browser Helper Object de navigateur (BHO) (O2) (2) - 0s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll
O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {C66D064F-82FE-4E1A-B06A-B2490BA48B18} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 16.0.0\x64\IEExt\ie_plugin.dll

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: (no name) - [HKLM]{3507FA00-ADA2-4A02-99B9-51AD26CA9120} (Orphean)

---\\ Applications lancées au démarrage du sytème (O4) (13) - 1s
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Administrator\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKLM\..\Wow6432Node\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe
O4 - HKLM\..\Wow6432Node\Run: [vmware-tray.exe] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-147452606-2425110287-3727497109-500\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe
O4 - HKUS\S-1-5-21-147452606-2425110287-3727497109-500\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Administrator\AppData\Local\Microsoft\BingSvc\BingSvc.exe

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 8.8.4.4
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 8.8.4.4

---\\ Liste des services NT non Microsoft et non désactivés (O23) (19) - 2s
O23 - Service: Avira FireWall (AntiVirFirewallService) . (.Avira Operations GmbH & Co. KG - Firewall NT service process.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
O23 - Service: Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 16.0.0\avp.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.4.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe

---\\ Tâches planifiées en automatique (O39) (7) - 1s
[MD5.B8F7DF2DD3AA8A5AA865162F011636AD] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268976]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
[MD5.2A5C656B0A364580E578B26EAE2EE889] [APT] [klcp_update] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1173504]
[MD5.C20F5CD1265B5EFC757F41DFB9E347BB] [APT] [Nero\Nero Info] (.Nero AG.) -- C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [3227472]
O39 - APT: klcp_update - (..) -- C:\Windows\System32\Tasks\klcp_update [3818]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{5302A57B-599F-4278-8E01-521DCF3221F4} [3168]

---\\ Logiciels installés (O42) (72) - 5s
O42 - Logiciel: MosChip Multi-IO Controller - (...) [HKLM][64Bits] -- MosChip Technology
O42 - Logiciel: Icon Pack AERO GLASS4 LEX v1.0 - (.AlexGal.) [HKLM][64Bits] -- W7Patcher_AERO_GLASS4_LEX
O42 - Logiciel: WinRAR 5.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}
O42 - Logiciel: NVIDIA Pilote 3D Vision 341.44 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
O42 - Logiciel: NVIDIA Pilote graphique 341.44 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 2.2.2 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 340.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Advanced RAR Repair v1.2 - (...) [HKLM][64Bits] -- Advanced RAR Repair v1.2
O42 - Logiciel: Avira Internet Security v14.0.11.378 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira AntiVir Desktop
O42 - Logiciel: FormatFactory 3.6.0.0 - (.Format Factory.) [HKLM][64Bits] -- FormatFactory
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Hex Workshop v4.23 - (...) [HKLM][64Bits] -- Hex Workshop v4.20
O42 - Logiciel: Kaspersky Internet Security Technical Preview - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager
O42 - Logiciel: K-Lite Codec Pack 11.2.0 Full - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo
O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM][64Bits] -- USB Disk Security_is1
O42 - Logiciel: VMware Workstation - (.VMware, Inc.) [HKLM][64Bits] -- VMware_Workstation
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1
O42 - Logiciel: tools-freebsd - (.VMware, Inc..) [HKLM][64Bits] -- {003BFBBD-6C67-419E-A24D-0DCAFC3A5249}
O42 - Logiciel: Nero Recode Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0CF7D22B-977C-43B2-9219-E03017FBAC6D}
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94}
O42 - Logiciel: tools-netware - (.VMware, Inc..) [HKLM][64Bits] -- {197597A7-AD33-4898-9D8E-73066818B464}
O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM][64Bits] -- {1B6F5E51-575E-4693-BCA2-7543570D076D}
O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Nero Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {29F67D84-3A70-456E-806A-52301B02070B}
O42 - Logiciel: Nero Blu-ray Player Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {36DA8969-4DCD-48FF-894A-6BD3936050C3}
O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM][64Bits] -- {40E51513-D917-4563-84F6-4EF6ADD46E2F}
O42 - Logiciel: Nero Express Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {4CA46F9F-174C-4766-9EA2-2325DF414B9E}
O42 - Logiciel: Nero MediaHome - (.Nero AG.) [HKLM][64Bits] -- {4DB136AF-389B-4A34-AE34-50123559D08E}
O42 - Logiciel: Nero Video - (.Nero AG.) [HKLM][64Bits] -- {511B5F54-CB1D-4F5B-BE0E-09B1D86BE586}
O42 - Logiciel: Nero Video Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {5446D3AF-B060-49B6-9535-F300E1532022}
O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {581DCE84-1948-4891-A4A7-A1222CC137C5}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Nero MediaHome Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {75CA8AAE-5346-4312-A9A8-5CF89955930F}
O42 - Logiciel: Kaspersky Internet Security Technical Preview - (.Kaspersky Lab.) [HKLM][64Bits] -- {77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}
O42 - Logiciel: FOX LiveUpdate - (...) [HKLM][64Bits] -- {7A62901B-7A89-4D5D-A780-8213D097C6CE}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65}
O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM][64Bits] -- {A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87}
O42 - Logiciel: Nero Audio Pack 1 - (.Nero AG.) [HKLM][64Bits] -- {A7A0BF2E-31CC-49E3-9913-52C503EB969D}
O42 - Logiciel: tools-solaris - (.VMware, Inc..) [HKLM][64Bits] -- {AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63}
O42 - Logiciel: Nero PiP Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {ACE49D50-19CD-44A6-B192-46F985283B26}
O42 - Logiciel: tools-winPre2k - (.VMware, Inc..) [HKLM][64Bits] -- {AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}
O42 - Logiciel: Nero Burning Core - (.Nero AG.) [HKLM][64Bits] -- {B166374C-105E-445E-8E5D-A86CA5742645}
O42 - Logiciel: Nero Info - (.Nero AG.) [HKLM][64Bits] -- {B791E0AB-87A9-41A4-8D98-D13C2E37D928}
O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
O42 - Logiciel: Nero Disc to Device - (.Nero AG.) [HKLM][64Bits] -- {C03E2FB3-250B-44A1-8B9E-61DFCD544133}
O42 - Logiciel: 8GadgetPack - (.Helmut Buhler.) [HKLM][64Bits] -- {CA2865AD-EFF4-44F0-A2C9-DCDC0A90F27E}
O42 - Logiciel: Nero ControlCenter Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {CDFE8F95-F80F-4115-9C3F-0E1FD8F9F58C}
O42 - Logiciel: Nero 2014 - (.Nero AG.) [HKLM][64Bits] -- {CE1948D9-E55B-447D-BA32-A031889B67DB}
O42 - Logiciel: tools-linux - (.VMware, Inc..) [HKLM][64Bits] -- {D102611A-6466-4101-A51D-51069303AC65}
O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {D5115C78-2D22-4668-A5E2-6C87DED3ED1B}
O42 - Logiciel: Nero Disc Menus Basic - (.Nero AG.) [HKLM][64Bits] -- {E17BCB76-9924-4BD5-B6D6-50D3407B4E74}
O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {ED7943A4-2FF0-4096-BBEA-DE3CC206E3D4}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM][64Bits] -- {F2B9C8D6-C69C-4BA7-95D2-66F1C68D15DA}
O42 - Logiciel: Nero RescueAgent Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {F69D4104-5394-4F7C-801C-D96DC92E7F69}
O42 - Logiciel: Nero Burning ROM Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {FA78CC15-9F90-443B-BA61-A66595F06432}
O42 - Logiciel: tools-windows - (.VMware, Inc..) [HKLM][64Bits] -- {FFD9383C-01D5-4897-A954-43AF599AED30}
O42 - Logiciel: Viber - (.Viber Media Inc.) [HKCU][64Bits] -- Viber

---\\ HKCU & HKLM Software Keys (72) - 5s
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AMI
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\AviSynth
HKLM\SOFTWARE\Wow6432Node\BreakPoint
HKLM\SOFTWARE\Wow6432Node\Foxconn
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\ThinPrint
HKLM\SOFTWARE\Wow6432Node\VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\zbshareware
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\8GadgetPack
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ARAR
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BreakPoint
HKCU\SOFTWARE\BreakPoint License Manager
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Froggie
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madshi
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\StackDocklet
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\USB Disk Security
HKCU\SOFTWARE\Viber
HKCU\SOFTWARE\VMware, Inc.
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\ThinPrint

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (138) - 4s
O43 - CFD: 2015/06/28 19:14:19 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2015/07/03 12:12:34 - [] D -- C:\Program Files (x86)\ARAR
O43 - CFD: 2015/07/12 17:29:56 - [] D -- C:\Program Files (x86)\Avira
O43 - CFD: 2015/07/09 13:22:06 - [] D -- C:\Program Files (x86)\BreakPoint Software
O43 - CFD: 2015/07/01 17:01:07 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/06/27 17:26:11 - [] D -- C:\Program Files (x86)\Foxconn
O43 - CFD: 2015/06/26 17:58:19 - [] D -- C:\Program Files (x86)\FreeTime
O43 - CFD: 2015/06/28 19:16:57 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/06/27 17:26:11 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/06/26 20:46:56 - [] D -- C:\Program Files (x86)\Internet Download Manager
O43 - CFD: 2015/06/26 17:59:51 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/06/27 14:14:36 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 2015/07/12 16:28:38 - [] D -- C:\Program Files (x86)\Kaspersky Lab
O43 - CFD: 2015/06/29 13:48:27 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2015/06/26 20:56:52 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/06/26 20:56:52 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 2015/06/26 20:53:59 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2015/06/26 20:57:02 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 2015/06/26 20:56:41 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/07/09 18:38:54 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/10 11:29:40 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/06/26 20:56:55 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/06/28 18:25:11 - [] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2015/06/28 18:41:43 - [] D -- C:\Program Files (x86)\Nero
O43 - CFD: 2015/06/28 19:14:22 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/06/28 13:31:09 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2009/07/14 05:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2015/06/26 21:02:07 - [] D -- C:\Program Files (x86)\USB Disk Security
O43 - CFD: 2015/07/01 17:01:07 - [] D -- C:\Program Files (x86)\VMware
O43 - CFD: 2015/06/26 17:59:51 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/06/26 17:59:51 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/26 17:59:51 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/06/26 17:59:51 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2010/11/21 04:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/06/26 19:36:17 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/12 18:54:47 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 2015/06/26 19:36:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack
O43 - CFD: 2015/07/02 16:36:05 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/06/27 01:28:39 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/03 11:43:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced RAR Repair
O43 - CFD: 2015/07/12 17:31:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 2015/06/27 17:26:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxconn
O43 - CFD: 2015/06/27 01:28:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/06/28 19:17:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/07/09 13:22:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hex Workshop 4.2
O43 - CFD: 2015/06/26 18:49:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 2015/06/27 14:14:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 2015/07/12 16:29:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
O43 - CFD: 2009/07/14 05:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/06/29 13:48:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/06/26 20:57:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/06/28 18:40:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2015/06/28 19:14:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/06/28 13:22:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/06/26 17:40:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2011/04/12 09:28:08 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/06/26 20:53:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security
O43 - CFD: 2015/07/01 17:01:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
O43 - CFD: 2015/06/26 18:10:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/07/12 18:52:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/07/12 17:29:56 - [] D -- C:\ProgramData\Avira
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/06/26 18:12:45 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 2015/07/12 19:03:47 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 2015/06/26 20:53:23 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/06/27 15:12:03 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/06/26 20:57:54 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/06/26 18:26:20 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/06/28 18:42:56 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2015/07/12 19:02:59 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/06/28 19:14:31 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/07/09 18:39:46 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/07/12 17:50:23 - [] D -- C:\ProgramData\VMware
O43 - CFD: 2015/06/26 20:56:52 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2015/06/27 17:25:52 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/06/28 18:22:13 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2015/06/28 18:42:23 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/06/28 13:22:45 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/06/26 20:53:47 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/07/01 17:01:07 - [] D -- C:\Program Files (x86)\Common Files\VMware
O43 - CFD: 2015/06/26 17:40:49 - [] D -- C:\Users\Administrator\AppData\Roaming\Adobe
O43 - CFD: 2015/07/12 17:31:35 - [] D -- C:\Users\Administrator\AppData\Roaming\Avira
O43 - CFD: 2015/07/12 19:01:36 - [] D -- C:\Users\Administrator\AppData\Roaming\DMCache
O43 - CFD: 2015/07/12 15:31:48 - [] D -- C:\Users\Administrator\AppData\Roaming\ESET
O43 - CFD: 2015/06/26 17:40:40 - [] D -- C:\Users\Administrator\AppData\Roaming\Identities
O43 - CFD: 2015/06/28 12:17:18 - [] D -- C:\Users\Administrator\AppData\Roaming\IDM
O43 - CFD: 2015/07/09 17:46:39 - [] D -- C:\Users\Administrator\AppData\Roaming\Macromedia
O43 - CFD: 2011/04/12 09:28:08 - [0] D -- C:\Users\Administrator\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/06/28 15:15:13 - [] SD -- C:\Users\Administrator\AppData\Roaming\Microsoft
O43 - CFD: 2015/06/26 18:26:26 - [] D -- C:\Users\Administrator\AppData\Roaming\Mozilla
O43 - CFD: 2015/06/27 15:39:58 - [] D -- C:\Users\Administrator\AppData\Roaming\MPC-HC
O43 - CFD: 2015/06/28 18:43:32 - [] D -- C:\Users\Administrator\AppData\Roaming\Nero
O43 - CFD: 2015/07/12 19:15:40 - [] D -- C:\Users\Administrator\AppData\Roaming\Skype
O43 - CFD: 2015/07/12 18:59:16 - [] D -- C:\Users\Administrator\AppData\Roaming\uTorrent
O43 - CFD: 2015/06/28 14:41:33 - [] D -- C:\Users\Administrator\AppData\Roaming\ViberPC
O43 - CFD: 2015/07/03 16:27:28 - [] D -- C:\Users\Administrator\AppData\Roaming\VMware
O43 - CFD: 2015/06/26 18:11:02 - [] D -- C:\Users\Administrator\AppData\Roaming\WinRAR
O43 - CFD: 2015/06/26 20:53:15 - [] D -- C:\Users\Administrator\AppData\Roaming\Zbshareware Lab
O43 - CFD: 2015/07/12 19:16:01 - [] D -- C:\Users\Administrator\AppData\Roaming\ZHP
O43 - CFD: 2015/07/09 17:35:00 - [0] D -- C:\Users\Administrator\AppData\Local\Adobe
O43 - CFD: 2015/06/26 17:39:16 - [0] SHD -- C:\Users\Administrator\AppData\Local\Application Data
O43 - CFD: 2015/06/28 19:06:20 - [] D -- C:\Users\Administrator\AppData\Local\Apps
O43 - CFD: 2015/06/28 19:06:57 - [0] D -- C:\Users\Administrator\AppData\Local\Deployment
O43 - CFD: 2015/07/12 15:31:48 - [] D -- C:\Users\Administrator\AppData\Local\ESET
O43 - CFD: 2015/06/28 19:07:00 - [] D -- C:\Users\Administrator\AppData\Local\Google
O43 - CFD: 2015/06/26 17:39:16 - [0] SHD -- C:\Users\Administrator\AppData\Local\History
O43 - CFD: 2015/06/28 18:33:43 - [] D -- C:\Users\Administrator\AppData\Local\Microsoft
O43 - CFD: 2015/07/01 22:37:31 - [] D -- C:\Users\Administrator\AppData\Local\Microsoft Games
O43 - CFD: 2015/06/26 20:53:30 - [0] D -- C:\Users\Administrator\AppData\Local\Microsoft Help
O43 - CFD: 2015/06/27 14:09:59 - [] D -- C:\Users\Administrator\AppData\Local\Mozilla
O43 - CFD: 2015/07/01 14:35:17 - [] D -- C:\Users\Administrator\AppData\Local\Nero
O43 - CFD: 2015/06/29 17:31:16 - [] D -- C:\Users\Administrator\AppData\Local\Nero_AG
O43 - CFD: 2015/06/28 19:15:22 - [] D -- C:\Users\Administrator\AppData\Local\NVIDIA
O43 - CFD: 2015/06/28 19:16:27 - [] D -- C:\Users\Administrator\AppData\Local\NVIDIA Corporation
O43 - CFD: 2015/06/26 20:52:52 - [] D -- C:\Users\Administrator\AppData\Local\Programs
O43 - CFD: 2015/06/26 19:36:26 - [] D -- C:\Users\Administrator\AppData\Local\Sidebar7
O43 - CFD: 2015/06/28 13:22:56 - [] D -- C:\Users\Administrator\AppData\Local\Skype
O43 - CFD: 2015/07/12 19:16:00 - [] D -- C:\Users\Administrator\AppData\Local\Temp
O43 - CFD: 2015/06/26 17:39:16 - [0] SHD -- C:\Users\Administrator\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/06/27 22:08:25 - [] D -- C:\Users\Administrator\AppData\Local\Viber
O43 - CFD: 2015/07/03 16:27:28 - [] D -- C:\Users\Administrator\AppData\Local\VMware
O43 - CFD: 2009/07/14 05:54:32 - [] RD -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/06/26 17:40:53 - [] RD -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/03 11:43:01 - [0] D -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced RAR Repair
O43 - CFD: 2015/06/26 17:58:29 - [] D -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 2015/06/26 18:49:34 - [] D -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 2009/07/14 05:49:38 - [] RD -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/12 19:03:52 - [] RD -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/06/26 18:10:54 - [] D -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (1) - 0s
O53 - SMSR:HKLM\...\startupreg\Viber [Key] . (. - Viber.) -- C:\Users\Administrator\AppData\Local\Viber\Viber.exe

---\\ Liste des pilotes du système (SDL) (O58) (103) - 8s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088]
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536]
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864]
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440]
O58 - SDL:2013/12/16 01:03:19 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904]
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128]
O58 - SDL:2013/12/16 01:03:19 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008]
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632]
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856]
O58 - SDL:2012/11/08 12:41:34 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\Windows\System32\drivers\asmthub3.sys [139592]
O58 - SDL:2012/11/08 12:41:34 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\Windows\System32\drivers\asmtxhci.sys [418632]
O58 - SDL:2015/06/19 15:42:11 A . (.Avira GmbH - Packet filtering kernel driver ( NDIS IM ).) -- C:\Windows\System32\drivers\avfwim.sys [114608]
O58 - SDL:2015/06/19 15:42:12 A . (.Avira GmbH - TDI filtering kernel driver.) -- C:\Windows\System32\drivers\avfwot.sys [141376]
O58 - SDL:2015/06/19 15:42:12 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [153256]
O58 - SDL:2015/06/19 15:42:12 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [132656]
O58 - SDL:2015/06/19 15:42:12 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [28600]
O58 - SDL:2015/06/19 15:42:14 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [44088]
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848]
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432]
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704]
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720]
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104]
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720]
O58 - SDL:2012/03/08 10:09:30 A . (.Broadcom Corporation - Broadcom NetXtreme II Diagnostic Driver.) -- C:\Windows\System32\drivers\bxdiaga.sys [88104]
O58 - SDL:2012/02/22 17:06:00 A . (.Broadcom Corporation - FCoE offload x64 FREE.) -- C:\Windows\System32\drivers\bxfcoe.sys [178216]
O58 - SDL:2012/02/22 17:33:36 A . (.Broadcom Corporation - iSCSI offload x64 FREE.) -- C:\Windows\System32\drivers\bxois.sys [539176]
O58 - SDL:2012/01/24 16:44:00 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [529448]
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488]
O58 - SDL:2014/12/09 09:54:12 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x64 (Weak).) -- C:\Windows\System32\drivers\cm_km.sys [381640]
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496]
O58 - SDL:2015/03/10 17:24:42 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [44632]
O58 - SDL:2012/07/24 20:58:00 A . (.Etron Technology Inc - Etron eXtensible Hub Driver..) -- C:\Windows\System32\drivers\EtronHub3.sys [65152]
O58 - SDL:2012/07/24 20:58:00 A . (.Etron Technology Inc - Etron Enhance USB Mass Storage Driver..) -- C:\Windows\System32\drivers\EtronSTOR.sys [32512]
O58 - SDL:2012/07/24 20:58:00 A . (.Etron Technology Inc - Etron eXtensible Host Controller Driver..) -- C:\Windows\System32\drivers\EtronXHCI.sys [88832]
O58 - SDL:2012/03/26 05:24:02 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3341904]
O58 - SDL:2014/08/21 08:07:02 A . (.VMware, Inc. - VMware USB monitor.) -- C:\Windows\System32\drivers\hcmon.sys [54976]
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232]
O58 - SDL:2013/02/19 09:59:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [57848]
O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720]
O58 - SDL:2013/12/16 01:03:19 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496]
O58 - SDL:2015/04/18 02:06:24 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [195056]
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112]
O58 - SDL:2010/02/26 13:32:14 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\drivers\Impcd.sys [158976]
O58 - SDL:2013/07/17 22:43:40 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [20464]
O58 - SDL:2012/12/21 06:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [366216]
O58 - SDL:2012/12/21 06:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [786056]
O58 - SDL:2014/03/31 10:47:10 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [468576]
O58 - SDL:2015/02/19 15:13:06 A . (...) -- C:\Windows\System32\drivers\klbackupdisk.sys [43720]
O58 - SDL:2015/03/02 19:44:06 A . (.Kaspersky Lab ZAO - Backup File Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klbackupflt.sys [61128]
O58 - SDL:2015/02/05 11:21:20 A . (.Kaspersky Lab ZAO - Virtual Disk [fre_wnet_x64].) -- C:\Windows\System32\drivers\kldisk.sys [59592]
O58 - SDL:2015/03/15 06:08:42 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [161344]
O58 - SDL:2015/01/29 17:21:10 A . (.Kaspersky Lab ZAO - klhk [fre_wlh_x64].) -- C:\Windows\System32\drivers\klhk.sys [248008]
O58 - SDL:2015/03/15 06:08:46 A . (.Kaspersky Lab ZAO - Core System Interceptors [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [906816]
O58 - SDL:2014/10/10 17:02:54 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\Windows\System32\drivers\klim6.sys [30920]
O58 - SDL:2015/02/13 20:11:12 A . (.Kaspersky Lab ZAO - Keyboard Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klkbdflt.sys [32456]
O58 - SDL:2015/02/13 21:22:18 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [32968]
O58 - SDL:2015/02/13 17:02:32 A . (.Kaspersky Lab ZAO - Format Recognizer [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [22216]
O58 - SDL:2014/10/09 12:31:40 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\Windows\System32\drivers\kltdi.sys [57032]
O58 - SDL:2015/02/25 16:31:42 A . (.Kaspersky Lab ZAO - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [88776]
O58 - SDL:2015/03/04 15:17:06 A . (.Kaspersky Lab ZAO - Network Processor [fre_wnet_x64].) -- C:\Windows\System32\drivers\kneps.sys [178752]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/07/12 19:04:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2015/06/18 08:41:56 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704]
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2012/12/03 08:00:22 A . (. - Parallel driver for PCI Parallel Port..) -- C:\Windows\System32\drivers\NmPar.sys [95744]
O58 - SDL:2012/12/03 07:49:24 A . (.ASIX Electronics Corporation - NmSerial.) -- C:\Windows\System32\drivers\NmSerial.sys [67072]
O58 - SDL:2011/10/25 18:57:38 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [96768]
O58 - SDL:2011/10/25 18:57:38 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [213504]
O58 - SDL:2015/02/11 11:38:55 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [197408]
O58 - SDL:2015/02/04 04:56:28 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [12894024]
O58 - SDL:2013/12/16 01:03:19 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2013/12/16 01:03:19 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2014/11/22 11:46:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [38032]
O58 - SDL:2015/06/27 17:43:57 A . (...) -- C:\Windows\System32\drivers\pmxdrv.sys [38536]
O58 - SDL:2009/11/16 15:45:21 A . (.Intel Corporation - Intel(R) 5000 Series Chipsets Integrated De.) -- C:\Windows\System32\drivers\qd162x64.sys [40144]
O58 - SDL:2009/11/16 15:45:24 A . (.Intel Corporation - Intel(R) 5000 Series Chipsets Integrated De.) -- C:\Windows\System32\drivers\qd262x64.sys [42192]
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2013/10/28 03:44:12 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [884952]
O58 - SDL:2013/11/05 16:47:54 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3707864]
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2013/10/08 18:21:06 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\System32\drivers\vmci.sys [85584]
O58 - SDL:2015/01/16 18:14:56 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\Windows\System32\drivers\vmnet.sys [24656]
O58 - SDL:2015/01/16 18:14:56 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\Windows\System32\drivers\vmnetadapter.sys [20560]
O58 - SDL:2015/01/16 18:14:56 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\Windows\System32\drivers\vmnetbridge.sys [46160]
O58 - SDL:2015/01/16 18:15:20 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\Windows\System32\drivers\vmnetuserif.sys [31448]
O58 - SDL:2015/01/16 18:15:10 A . (.VMware, Inc. - VMware parallel port driver.) -- C:\Windows\System32\drivers\VMparport.sys [32472]
O58 - SDL:2015/01/16 18:15:38 A . (.VMware, Inc. - VMware kernel driver.) -- C:\Windows\System32\drivers\vmx86.sys [64728]
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872]
O58 - SDL:2013/10/08 18:21:10 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\Windows\System32\drivers\vsock.sys [73296]
O58 - SDL:2012/02/22 15:27:02 A . (.Bigfoot Networks, Inc. - Bigfoot Networks Killer(TM) PCI-E Gaming Ad.) -- C:\Windows\System32\drivers\Xeno7x64.sys [157288]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (20) - 30s
O61 - LFC: 2015/07/12 17:23:31 A . (..) -- C:\Users\Administrator\Downloads\Programs\avira_internet_security_fr.exe [201926256]
O61 - LFC: 2015/07/08 17:30:36 A . (..) -- C:\Users\Administrator\Downloads\Programs\Firefox Setup 39.0.exe [41247256]
O61 - LFC: 2015/07/09 13:21:39 A . (.BreakPoint Software, Inc..) -- C:\Users\Administrator\Downloads\Programs\hw32v423.exe [3823707]
O61 - LFC: 2015/07/12 19:03:55 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components2\idmcchandler2.dll [332824]
O61 - LFC: 2015/07/12 19:03:55 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components2\idmcchandler2_64.dll [460824]
O61 - LFC: 2015/07/12 19:03:55 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components2\idmmzcc.dll [34216]
O61 - LFC: 2015/07/12 19:03:55 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components2\idmmzcc64.dll [28512]
O61 - LFC: 2015/07/12 19:03:54 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components12\idmmzcc.dll [26648]
O61 - LFC: 2015/07/12 19:03:55 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components12\idmmzcc64.dll [31768]
O61 - LFC: 2015/07/12 19:03:54 A . (.Tonec Inc..) -- C:\Users\Administrator\AppData\Roaming\IDM\idmmzcc5\components\idmmzcc.dll [34216]
O61 - LFC: 2015/07/08 16:25:43 A . (..) -- C:\Users\Administrator\AppData\Roaming\IDM\DwnlData\Administrator\Firefox-20Setup-20Stub-2039.0._99\Firefox-20Setup-20Stub-2039.0..exe [242904]
O61 - LFC: 2015/07/08 16:27:58 A . (..) -- C:\Users\Administrator\AppData\Roaming\IDM\DwnlData\Administrator\Firefox-20Setup-20Stub-2039.0._101\Firefox-20Setup-20Stub-2039.0..exe [242904]
O61 - LFC: 2015/07/08 16:27:01 A . (..) -- C:\Users\Administrator\AppData\Roaming\IDM\DwnlData\Administrator\Firefox-20Setup-20Stub-2039.0._100\Firefox-20Setup-20Stub-2039.0..exe [242904]
O61 - LFC: 2015/07/07 11:00:22 A . (..) -- C:\Users\Administrator\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [4457027]
O61 - LFC: 2015/07/09 18:40:18 A . (..) -- C:\Users\Administrator\AppData\Local\NVIDIA\NvBackend\Packages\000079d8\DAO.19750200.exe [5900040]
O61 - LFC: 2015/07/07 18:33:46 A . (..) -- C:\Users\Administrator\AppData\Local\NVIDIA\NvBackend\Packages\000079a6\CoProc update.19741457.exe [456720]
O61 - LFC: 2015/07/09 16:30:20 A . (.NVIDIA Corporation.) -- C:\Users\Administrator\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe [628664]
O61 - LFC: 2015/07/09 16:30:16 A . (.NVIDIA Corporation.) -- C:\Users\Administrator\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe [172984]
O61 - LFC: 2015/07/09 16:30:12 A . (.NVIDIA Corporation.) -- C:\Users\Administrator\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology.dll [1357240]
O61 - LFC: 2015/07/12 18:26:43 A . (..) -- C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]

---\\ Associations Shell Spawning (O67) (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 3s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [697856]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (10) - 1s
O87 - FAEL: "{E8F6A57F-F36C-461C-8A0B-A7DDF89CB294}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{7A95F2D3-133F-4616-B55D-4CC4521257BE}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{2D358F1D-2762-42C4-BFE4-68C8B1A5367F}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{D6A415E5-A0C4-4772-8E87-8A71C0752C54}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{339F2405-9AC4-49C4-BCF7-EE30E056FBCA}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{4D45CD80-C13B-4FEA-8EC6-A9DF55D37C2A}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{0138C6F4-1C90-4445-8D03-B318427B2B0B}" [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O87 - FAEL: "{A2C01CBE-0263-42CA-B0E8-D84342F960E5}" [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O87 - FAEL: "{D6FCC64B-117E-46ED-81D3-203F5D143D2E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
O87 - FAEL: "{E45E014E-A83E-4E8C-8696-F83C0E269DF3}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (22) - 19s
SS - Demand [2015/07/09 16:27:31] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - Auto [2015/06/19 15:42:12] [ 1044728] Avira FireWall (AntiVirFirewallService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
SR - Auto [2015/06/19 15:42:14] [ 806192] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
SR - Auto [2015/06/19 15:42:32] [ 448304] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - Auto [2015/06/19 15:42:12] [ 448304] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - Auto [2015/06/19 15:42:17] [ 996600] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
SS - Auto [2015/03/16 17:59:28] [ 194368] Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security Technical Preview 16.0.0\avp.exe
SR - Auto [2015/01/16 07:41:08] [ 1148560] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
SS - Auto [2015/06/28 19:06:59] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2015/06/28 19:06:59] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - Auto [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
SR - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
SS - Demand [2015/07/08 16:03:00] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SR - Auto [2013/07/18 16:39:40] [ 762192] @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe
SR - Auto [2015/01/16 07:41:08] [ 1706128] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - Auto [2015/01/16 07:41:06] [21833360] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
SR - Auto [// ::] [ 932040] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - Auto [2015/02/04 01:00:09] [ 409800] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - Auto [2015/01/16 17:12:26] [ 87256] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
SR - Auto [2014/08/21 08:07:12] [ 906432] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
SR - Auto [2015/01/16 17:35:52] [14400728] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe

---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux trouvé.

---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s
~ Aucun élément malicieux trouvé.

~ End of the scan, 44599 items in 89 seconds (704)(0)()

Publicité


Signaler le contenu de ce document

Publicité