cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.18.95 Par Nicolas Coolman (2015/07/18)
~ Démarré par admin (Administrator) (2015/07/18 23:18:47)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\admin\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\admin\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 32-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v39.0.2171.95
MSIE: Internet Explorer v11.0.9600.17914

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : 99499
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Activation Technologies : OK

---\\ Logiciels de protection (1) - 0s
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Logiciels d'optimisation (1) - 0s
CCleaner v5.00

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2096.696 MB (49% free)
~ System Restore: Activé (Enable)
~ System drive C: has 90 GB free of 152 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DC5750
~ User Name: admin
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 90 GB free of 152 GB (System)
~ Drive E: has GB free of 4 GB

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256]
[MD5.63B01F72FD727D5736DBEF54174D8F93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232]
[MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888]
[MD5.01C5B803F6E1FDF8F16F0763DA9B997D] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [124416]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904]
[MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168]
[MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632]

---\\ Processus lancés (10) - 2s
[MD5.B19505648F033393E907E2E419FDE8B3] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [176128] [PID.852]
[MD5.D313E25114C6AE5D3E9764190725C04A] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [252632] [PID.1200]
[MD5.378F5EB676C0BD7EAAAFA7AD5BA44B16] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [348160] [PID.1356]
[MD5.6FACA9C62024E14251C7ED33A8E8B660] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2571704] [PID.1928]
[MD5.77E9B4C2F8BB693F2147FEC7D7AFFC99] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [1017712] [PID.2144]
[MD5.77E9B4C2F8BB693F2147FEC7D7AFFC99] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [1017712] [PID.2152]
[MD5.D72ABA21ABB9314DA878FB9760E7A4C2] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12111576] [PID.3508]
[MD5.41CC3214E57521C0934329851B054459] - (...) -- C:\ProgramData\Dfx audio.exe [172032] [PID.3660]
[MD5.D6E2ED7F1F7BE7CCB8676491BF950B57] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe [4673432] [PID.3792]
[MD5.D6E2ED7F1F7BE7CCB8676491BF950B57] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe [4673432] [PID.2820]

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (5) - 0s
P2 - EXT FILE: (...) -- C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\72wn5o06.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\72wn5o06.default\extensions\iobitascsurfingprotection@iobit.com
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\admin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
P2 - FPN: [HKLM] [@ngm.nexoneu.com/NxGame] - (.Nexon.) -- C:\ProgramData\NexonEU\NGM\npNxGameEU.dll
P2 - FPN: [HKLM] [@zylom.com/ZylomGamesPlayer] - (.zylom.) -- C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (15) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0xE256DEB27A908040AE065C2A7BD4364E - [HKCU]{B2DE56E2-907A-4080-AE06-5C2A7BD4364E} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (21) - 1s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [EEventManager] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files\Epson Software\Event Manager\EEventManager.exe
O4 - HKLM\..\Run: [153063257895684ddc48f656bb7abfb9] . (...) -- C:\ProgramData\Dfx audio.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKCU\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
O4 - HKCU\..\Run: [153063257895684ddc48f656bb7abfb9] . (...) -- C:\ProgramData\Dfx audio.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\admin\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [EPLTarget\P0000000000000001] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHJE.EXE
O4 - HKUS\S-1-5-21-3196130861-1696785139-576777002-1000\..\Run: [153063257895684ddc48f656bb7abfb9] . (...) -- C:\ProgramData\Dfx audio.exe

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Liste des services NT non Microsoft et non désactivés (O23) (8) - 1s
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe

---\\ Enumère les données de BootExecute (BEX) (O34) (1) - 0s
O34 - HKLM BootExecute: (sdnclean.exe) - File not found

---\\ Tâches planifiées en automatique (O39) (151) - 18s
O39 - APT: - (...) -- C:\Windows\Tasks\1-Click PC Fix Scheduled Scan.job [422]
O39 - APT: - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054]
O39 - APT: - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\ASC8_SkipUac_admin [2842]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2772]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3532]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3802]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4054]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\SidebarExecute [3230]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{01FBAC2A-9452-4D1B-B554-643E6C3CD401} [2956]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{0293FE21-6F3F-43BD-862C-1EAD9A796B06} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{0311E411-74A1-4F0C-B3D0-42E92248FD07} [3060]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{0458B773-D382-4135-99F2-E6F4278D3670} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{050F21BA-19AA-4F51-A962-59FA1AC0B12A} [3200]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{073ABF41-E25B-45C2-B210-21D36D9BE380} [2966]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{07FF0DAF-8EC1-4A9F-9496-A1BB7762D7D1} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{09D90891-59CA-4441-B258-F5F7985B0B7D} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{11DA5088-517D-4875-9F20-E1BFE2ABD008} [2982]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{149571A3-A715-4437-988F-ED5ACCBE6BD8} [2956]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{149B6D2E-DBA8-4243-B614-3947BF0D3D91} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{17B66725-589D-43DF-BAE9-F6532326087F} [3078]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{17BC9F6F-27D8-4ECE-8EB4-6FA3399A338D} [2990]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{1A5A4FC7-FA73-4465-878D-7608BCFDC1A4} [2900]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{1A7321EB-7AA2-41FB-80EB-2613D0C4595C} [3198]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{1FBF3DC9-E6E6-4DE9-A807-042FACAFECFD} [2982]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{224D7E30-8198-4031-B62D-9BA0ED7B7BA0} [3192]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{23634391-54D5-48B4-A2BA-575E7FD53966} [3048]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{2A299302-1A88-426B-83C0-334122FE2F6A} [3180]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{2B3A7055-6853-4FB5-9CCE-DD12B68045EF} [2966]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{2DEDCD53-E00E-4340-B2A4-509479DAE5D7} [3038]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{2F35EDFA-305D-4123-877C-8505FA2A69CF} [3000]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{2F7EB1C0-D16C-4160-B64F-57C1C6F67470} [2942]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{34DD041B-C20F-4C33-B19A-9E0F32F848D7} [2974]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{360D9AC7-0ABE-45E0-8A9B-631E7ACB8B43} [3096]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{3623A6D8-3862-48A7-8CE4-18EC62254888} [2964]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{3A0F39AC-BC42-4337-B653-4CCEC46C686F} [3100]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{3ABE9EA4-7E0B-4DD4-BF78-51961F8064A3} [2942]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{3AC1C7F0-A2F4-4BE0-A121-1C0BBB0B04E0} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{3D442DE4-910F-454F-BD70-065A21FE8E08} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{3FCF2700-5AAB-412B-B9F8-CC602DB11580} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{416E57E2-57DB-460B-BF6B-624ED685A139} [2968]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{42A1E2DD-BBE2-4C09-B703-1A3575E1676E} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4355D798-34F3-4FA7-92B2-E7F1C846389F} [3002]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4371E566-E080-4E69-B2F2-BDF00B043582} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{43F31652-C023-4014-A352-D3F9BB2D7E3C} [2958]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4476E77D-947B-4D29-8F06-4750FCCCE81C} [2958]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4B6D7944-189F-4EE6-AF72-AD79B600CFA4} [2992]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4C7762D1-2940-4CDA-8197-429B24A4A75B} [2966]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4D4EAD4D-1FE5-4D81-8A81-509097077113} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4ED83917-2B05-4D80-BA76-2C9FA21FB64C} [3020]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4F115C08-EA5F-4D9A-9BD5-1C2B2B0B6BBD} [3004]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{4F11AE7E-E8B1-4AE3-AA6C-75D7ABC75927} [2900]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5384CE08-0A14-42E6-A054-64AAA16B13A0} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{55165559-852C-4F84-8E19-A0E9B518D78F} [2992]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{562BE851-2475-4AEC-A85E-887050025F64} [3050]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5778B5F2-2A63-4DEA-82D4-541CA87ADA07} [3078]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{58DAD529-6148-4DA6-B113-38C654C1886D} [2946]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{58E3247E-76B1-4DF8-BBDE-148F17A639FA} [2944]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5B1FA895-D4D5-4C7B-A7F7-313347CCB8FA} [3002]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5B8FB303-D619-4632-ACCE-2FEB7E89F62B} [2900]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5BC11888-4910-4FEC-9FF1-8B55B61DE162} [3050]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5DDCA5C9-F969-4556-9B05-83FE6064B874} [3056]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{5FE5B564-B568-4D8A-9268-8896F834FABE} [2944]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{61E74908-2DDE-45CC-879F-AC9F1C34840F} [3118]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{6313491A-8CA4-4BB8-9C84-AB9E1841BAA1} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{69E89720-C2AB-48C1-ADAE-3389CEFFF6DD} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{6CD5340F-30D2-4496-BEF4-6A6AD7A6DC27} [2956]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{6CF7D7BD-496B-47BA-B81B-90010D088AB6} [3010]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{6E70BD36-EEB5-4CC4-AAC1-DC9DDD70FEA1} [3110]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{7243FF11-853A-4728-B82D-5BB292BB6BF4} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{72B6AC1E-4CEB-4B20-A2D6-006092A1EF4E} [3000]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{73D2BE0E-27B1-4FD3-B7D6-7DDBDE0C4439} [2992]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{7AEECF99-879C-4B79-9FFD-ED9CAB4429CE} [3372]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{7E99A5A2-3278-4E11-B958-342832860BF4} [2954]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{7FE22419-C16C-4907-92FB-008ED1793E76} [3136]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{80440610-E9D7-4D74-8FA9-1D6A3FADD421} [3096]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{80AB6605-2A31-438D-8C62-017CD7056FDE} [3294]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{813C3A62-8311-4A8F-9424-EF6E4C5819DC} [3124]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{813E2739-D102-48E1-A24B-DACCB047FFF6} [3110]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{88FF3C5A-FBA7-4DB4-AADC-46433A8F6FD2} [3006]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{89D82D5F-2DBE-4054-A525-43F193454F4F} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{8FBDBBE8-D8CC-436E-B0CD-1E407F139884} [2992]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{951AACD4-9432-47E7-A11F-2F8D636EE53D} [3036]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9545C31C-C07E-4715-94E4-D04A1B211A1E} [3118]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9737395C-5E22-458A-83E2-FFF0AB8B676B} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{987DFECD-816E-4B78-A338-4E1335814FF9} [2946]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{98D1903D-AEB5-4C12-8C5D-03AEFB4F5AC2} [3110]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{98FDE840-C55D-4D16-BBB6-8D3476DE27FD} [2946]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{992EC05C-7A10-4381-BA97-93A340F4FE26} [3010]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{99DAAFE9-B584-46FC-9F4C-2154409F03C8} [3082]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{99E42605-75FF-4D6F-B3BC-4489B9B0AA07} [3020]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9B587A24-CDFB-4C9F-AD63-B83A2A3F3698} [2956]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9B90467E-032D-4F81-90FF-06F81054CF98} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9E13A6ED-1C68-4183-BF93-6BF25CC9C937} [2954]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A246B1B5-0219-403C-B18F-6F1327866F68} [3050]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A439F3BD-0491-4DEE-8EBF-D79571A26141} [3026]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A49608F0-29AD-4BB5-895E-0A1184DE5038} [2956]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A5E70B90-5BDB-4F3C-8CAC-2A14EE113303} [3138]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A5FC3851-0CF4-40F5-B248-2E9F6C75AE73} [3118]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{ABE39E5F-1415-4515-9CE3-B70AF770F3B0} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{ACE82E84-5CBE-4DA5-BD26-03B116A850DA} [2988]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{ACFDA994-F0B7-45E1-9CCB-41FBDCD68FAF} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{B10EB1FB-3A3E-4727-A0D0-D42F328C7F01} [2938]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{B5351848-1B56-4D34-B4C3-818B854AD244} [3008]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{B692E9BF-B32F-4F27-826D-710821EEF203} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{B6C3A990-5634-463C-8DA9-260B555E4E90} [2958]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{B6C704DE-BBFB-4E19-A23D-85AEF3C234E4} [2992]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{B833C516-6754-4992-9445-E893DB955629} [3120]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{BA578220-1475-4D6F-BAE2-9F782ABA0347} [3176]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{BB67E57F-DE00-47DF-A20E-2B3ECED11FC3} [2980]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{BC42611C-0C7E-4DBE-9468-FE54B0BAE0BD} [2930]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{BDE5A71A-729A-4A30-8E8D-3AA8FE8358F5} [2966]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{BF8419CE-F2C3-4E8B-BE4F-77921C45DEAD} [3048]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C008036A-9996-4AF6-A4CC-76A6740CDB04} [2930]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C0190F6C-ED47-4A18-899C-B69B8B906CD7} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C105B18D-9EC5-4EC4-A034-E668C533A5AE} [3088]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C161235C-44D4-4135-80DB-A03CB165A8BF} [3002]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C2516D43-179A-41BF-8CB1-3F7357D15DB4} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C2FC493E-FE48-4E71-A0FB-76C3E9C364F2} [2954]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C39E15BA-D7F4-4B2B-8131-838DF00F2316} [2930]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{C3E41E5A-80F6-4802-9D56-7ECAD9CC0B60} [2990]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{CBE788FF-0D91-4943-BEC4-A15A00A7D8F3} [2966]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{CDB72DBF-AB1E-447D-8682-A9B9EAAD3A29} [2998]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{D0E027F4-D026-4AF1-BA68-B0BAB820A8B6} [2930]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{D3E9AB02-CA2E-4DFD-863F-B350D7756795} [2990]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{D6201401-7AED-40FE-8BA8-83B325A0362F} [3006]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{D7BE94F9-8051-486A-8350-8F8B91913BAE} [3136]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{D7F8FCF6-056E-4C67-BE52-CC57DF944371} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{DAAD9E51-021F-4919-8A8D-4B6A39C40A4E} [2948]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{DC3A7E17-B880-4ADD-B02D-EA54FDADF709} [2980]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{DCF98AAA-A45C-4D6B-BCB7-9E3BEA790285} [2994]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{DF9ACAAF-051F-4569-80B9-D7814C526DFB} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E380EFE0-D476-4C39-9D74-03A70B37E773} [2976]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E4A094B9-BF6C-4AA1-A6ED-A79D9BA8DFDA} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E5BC93E6-02E9-4DD3-9D4D-CC886170E8C5} [2956]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E6219630-1391-4A76-AD70-7B29DB75790E} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E7674EBA-182C-4899-A512-0E01D829D42E} [3006]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E7BDCE45-2843-4844-954B-5BC15822E1E5} [3006]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{EAF880E7-C73F-4894-8097-332D025C8436} [2996]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{EBDBFED3-B4D3-4CC3-9170-7792CD755DF5} [3128]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{EC847EA9-28C6-41A4-91AF-C17C417D33D8} [3014]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{ED18B6C0-2F1E-4DF8-873A-A174628F6DC4} [3140]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{F04311E7-0F4F-4823-AFA4-C6A123EE7CE7} [2930]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{F25EFE76-6B69-4364-9AF4-DB825452D312} [2974]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{F3144819-BBD6-4349-BDAF-74D209D6EF8E} [3122]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{F81217AD-02C9-40D0-BB44-B6CB165F9952} [2976]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FBB2C093-7ED5-4573-9D47-522547573695} [3050]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FDA2A7E2-1F17-42A4-A0F0-0F8CD9AB330C} [2918]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FE02EE4B-DBE5-43F5-A00E-880E97CC8477} [3016]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FE17FED1-1752-41DF-946F-B09541D7BD44} [2964]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FF196AFC-6344-44A3-9624-6B6B94D73CCF} [3192]

---\\ Logiciels installés (O42) (28) - 25s
O42 - Logiciel: 7-Zip 9.38 beta - (...) [HKLM] -- 7-Zip
O42 - Logiciel: Adobe Acrobat 4.0 - (...) [HKLM] -- Adobe Acrobat 4.0
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM] -- DAEMON Tools Lite
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner
O42 - Logiciel: EPSON SX130 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX130 Series
O42 - Logiciel: Guide d'utilisation EPSON SX130 Series - (...) [HKLM] -- EPSON SX130 Series Useg
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Haali Media Splitter - (...) [HKLM] -- HaaliMkx
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: MiPony 2.2.3 - (...) [HKLM] -- MiPony
O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: XXClone ver 2.07.2 - (.Pixelab.) [HKLM] -- XXClone
O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D}
O42 - Logiciel: MSXML 4.0 SP2 Parser and SDK - (.Microsoft Corporation.) [HKLM] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM] -- {8A17C27D-0325-400C-8AA9-DAA6B16CBD74}
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {8D7133DE-27D2-47E5-B248-4180278D32AA}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM] -- {A02D7029-C4EF-44C1-9FD4-C0D3CA518113}
O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION.) [HKLM] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178}
O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU] -- Akamai

---\\ HKCU & HKLM Software Keys (257) - 25s
HKLM\SOFTWARE\7-Zip
HKLM\SOFTWARE\Abacus
HKLM\SOFTWARE\ABBYY
HKLM\SOFTWARE\Act-3D
HKLM\SOFTWARE\Activision
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdsFix
HKLM\SOFTWARE\aducky =>PUP.Optional.aDucky
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\aerosoft
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\anset
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\ATI
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\Auran
HKLM\SOFTWARE\Auslogics
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\AVC3
HKLM\SOFTWARE\AVG
HKLM\SOFTWARE\BitDefender Parental Control
HKLM\SOFTWARE\Blimey! Games
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CBSTEST
HKLM\SOFTWARE\DICE
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\DivX
HKLM\SOFTWARE\DownloaderAssistant =>PUP.Optional.Salus
HKLM\SOFTWARE\DRWNewFree
HKLM\SOFTWARE\Elcom
HKLM\SOFTWARE\Electronic Arts
HKLM\SOFTWARE\EPSON
HKLM\SOFTWARE\eSellerate
HKLM\SOFTWARE\FarStone
HKLM\SOFTWARE\Florenc
HKLM\SOFTWARE\Gameforge
HKLM\SOFTWARE\GlarySoft
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GSC Game World
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Innovative Solutions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\IObit
HKLM\SOFTWARE\iolo
HKLM\SOFTWARE\ISSS
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\MgameEU
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NexonEU
HKLM\SOFTWARE\Nuance
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OldTimer Tools
HKLM\SOFTWARE\P1-App =>PUP.Optional.CrossRider
HKLM\SOFTWARE\PCPitstop
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Pixelab
HKLM\SOFTWARE\PluginProtect
HKLM\SOFTWARE\Primax
HKLM\SOFTWARE\R-TT
HKLM\SOFTWARE\Rail Simulator
HKLM\SOFTWARE\RailSimulator.com
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Run8RS
HKLM\SOFTWARE\Safer Networking Limited
HKLM\SOFTWARE\SCS Software
HKLM\SOFTWARE\SEIKO EPSON CORPORATION
HKLM\SOFTWARE\Serif
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SmartPCFixer
HKLM\SOFTWARE\SoftVTU
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\Sony Corporation
HKLM\SOFTWARE\SOSVirus
HKLM\SOFTWARE\SoundResearch
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\SUPERAntiSpyware.com
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Sysinternals
HKLM\SOFTWARE\TG Byte Software
HKLM\SOFTWARE\TuneUp
HKLM\SOFTWARE\Universal
HKLM\SOFTWARE\Valve
HKLM\SOFTWARE\VertigoGames
HKLM\SOFTWARE\Vitalia
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\Vstep
HKLM\SOFTWARE\webtogo
HKLM\SOFTWARE\WIBU-SYSTEMS
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wondershare
HKLM\SOFTWARE\WRUpdater
HKCU\SOFTWARE\153063257895684ddc48f656bb7abfb9 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\2015
HKCU\SOFTWARE\4A-Games
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Abacus
HKCU\SOFTWARE\Activision
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AdsFix
HKCU\SOFTWARE\Aeria Games
HKCU\SOFTWARE\AhnLab
HKCU\SOFTWARE\Ajworks
HKCU\SOFTWARE\Akamai
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\apple
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\ATI Technologies Inc.
HKCU\SOFTWARE\Atola
HKCU\SOFTWARE\Auran
HKCU\SOFTWARE\Auslogics
HKCU\SOFTWARE\AVG
HKCU\SOFTWARE\Besier 3D-Edutainment
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Boonty
HKCU\SOFTWARE\BtOB
HKCU\SOFTWARE\Bugsplat
HKCU\SOFTWARE\CamStudioOpenSource for Nick
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\City Interactive
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\Cryptic
HKCU\SOFTWARE\CyberphobX
HKCU\SOFTWARE\Debugmode
HKCU\SOFTWARE\DestinyDream
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\dskMetrics
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\DSS
HKCU\SOFTWARE\Ecru
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Elcom
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\eSellerate
HKCU\SOFTWARE\Evolved
HKCU\SOFTWARE\file repair
HKCU\SOFTWARE\ForumerIT =>Toolbar.Forumer
HKCU\SOFTWARE\FreeDataRecovery
HKCU\SOFTWARE\Gameforge4d
HKCU\SOFTWARE\GameHitZone
HKCU\SOFTWARE\GamersFirst
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\GetData
HKCU\SOFTWARE\GlarySoft
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GreedyTorrent
HKCU\SOFTWARE\GUPPY
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IMDownloader
HKCU\SOFTWARE\Innovative Solutions
HKCU\SOFTWARE\ISSS
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\Kamuse Inc.
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linksolutions
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\LowRegistry
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Macrovision
HKCU\SOFTWARE\Malavida
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Mathieu O'HARE
HKCU\SOFTWARE\MgameEU
HKCU\SOFTWARE\Micromega Software System
HKCU\SOFTWARE\MountAndBladeWarbandKeys
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Nadeo
HKCU\SOFTWARE\NET+FRAM+Chrom
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\none
HKCU\SOFTWARE\Noviy Disk
HKCU\SOFTWARE\O&O
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\P!HDS
HKCU\SOFTWARE\Parisprog
HKCU\SOFTWARE\PCPitstop
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Prompt Downloader
HKCU\SOFTWARE\Protect Software GmbH
HKCU\SOFTWARE\R-TT
HKCU\SOFTWARE\RAD Game Tools
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Recoveronix
HKCU\SOFTWARE\Recovery Software
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\SCS Software
HKCU\SOFTWARE\Serif
HKCU\SOFTWARE\Shovsoft
HKCU\SOFTWARE\SimScape
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\softorbits
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Squad
HKCU\SOFTWARE\Stellar
HKCU\SOFTWARE\Stentec
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Temp
HKCU\SOFTWARE\tfdfu
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Toggle
HKCU\SOFTWARE\TransmissionRemote
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\undelete360
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valusoft
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VSO
HKCU\SOFTWARE\Vstep
HKCU\SOFTWARE\Wargaming.net
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\weltenbauer. Software Entwicklung GmbH
HKCU\SOFTWARE\WinLicense
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WPO
HKCU\SOFTWARE\WSysInfo
HKCU\SOFTWARE\YellowIncs
HKCU\SOFTWARE\yuPlay
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Сергей
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (203) - 13s
O43 - CFD: 2015/04/03 11:21:05 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 2014/12/13 12:46:30 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2014/10/14 11:35:43 - [] D -- C:\Program Files\CodeMeter
O43 - CFD: 2015/03/30 10:13:40 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2015/02/09 09:37:51 - [] D -- C:\Program Files\DAEMON Tools Lite
O43 - CFD: 2011/04/12 03:45:02 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 2015/03/05 11:17:12 - [] D -- C:\Program Files\epson
O43 - CFD: 2015/03/05 11:18:35 - [] D -- C:\Program Files\Epson Software
O43 - CFD: 2014/11/14 20:13:11 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2014/12/15 13:07:12 - [] D -- C:\Program Files\Google
O43 - CFD: 2013/09/01 17:36:07 - [] D -- C:\Program Files\Haali
O43 - CFD: 2015/07/18 09:17:37 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/07/18 11:00:26 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/02/04 10:06:02 - [] D -- C:\Program Files\IObit
O43 - CFD: 2015/07/18 22:44:29 - [] D -- C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 2015/05/27 06:15:59 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2013/11/05 14:32:27 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2014/06/14 17:16:03 - [] D -- C:\Program Files\MiniGet
O43 - CFD: 2015/03/23 22:14:41 - [] D -- C:\Program Files\MiPony
O43 - CFD: 2015/03/07 11:55:48 - [] D -- C:\Program Files\mo
O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2014/06/23 10:36:32 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2013/08/01 09:04:16 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/06/14 09:40:43 - [] D -- C:\Program Files\Software
O43 - CFD: 2015/05/27 12:47:42 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2014/06/13 20:19:04 - [] D -- C:\Program Files\VSO
O43 - CFD: 2013/08/30 19:31:04 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/27 09:02:43 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2011/04/12 03:35:39 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/03/11 12:02:27 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2013/07/31 17:23:38 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2011/04/12 03:35:39 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 2010/11/20 23:33:48 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2015/06/14 09:40:43 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2015/02/15 10:16:21 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2015/05/28 08:38:02 - [] D -- C:\Program Files\XXCLONE
O43 - CFD: 2015/04/03 11:21:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 2015/06/14 09:40:44 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/11/03 19:06:10 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/12/13 12:46:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/02/09 09:38:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2015/03/05 12:05:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/03/05 11:19:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
O43 - CFD: 2015/02/07 18:07:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow
O43 - CFD: 2015/05/27 17:33:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2013/09/01 17:36:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
O43 - CFD: 2009/07/14 06:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/18 22:44:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/05/27 06:16:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/03/23 22:14:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiPony
O43 - CFD: 2014/11/27 21:38:39 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2011/04/12 03:44:38 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/02/08 09:27:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/05/28 08:38:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XXCLONE
O43 - CFD: 2015/03/10 10:24:57 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 2015/03/22 11:20:27 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/10/22 12:14:18 - [] D -- C:\ProgramData\Apache
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/09/01 17:47:09 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2015/03/27 09:44:24 - [] D -- C:\ProgramData\Auslogics
O43 - CFD: 2015/01/26 16:46:36 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2014/08/06 22:37:24 - [] D -- C:\ProgramData\BlueSprig
O43 - CFD: 2013/07/31 17:23:38 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/09/02 17:35:28 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2014/12/11 20:57:08 - [] D -- C:\ProgramData\COMODO
O43 - CFD: 2015/02/27 18:43:15 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/07/30 21:57:31 - [] D -- C:\ProgramData\Emsisoft
O43 - CFD: 2015/06/14 09:40:44 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 2013/07/31 17:23:38 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2013/10/06 19:08:53 - [] D -- C:\ProgramData\fltk.org
O43 - CFD: 2014/06/05 18:03:49 - [] D -- C:\ProgramData\GRAW2DemoSP
O43 - CFD: 2015/03/02 11:13:24 - [] D -- C:\ProgramData\InstallMate
O43 - CFD: 2014/12/11 20:57:08 - [] D -- C:\ProgramData\IObit
O43 - CFD: 2014/12/13 14:09:53 - [] D -- C:\ProgramData\Logs
O43 - CFD: 2015/07/18 22:44:24 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2013/07/31 17:23:38 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/07/18 09:11:28 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2014/05/10 19:08:35 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2013/07/31 17:23:38 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/09/11 17:37:31 - [] D -- C:\ProgramData\NexonEU
O43 - CFD: 2015/02/12 05:52:38 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2014/12/06 05:34:15 - [] D -- C:\ProgramData\ProductData
O43 - CFD: 2015/03/30 10:13:43 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/11/13 09:19:28 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/02/23 19:08:43 - [] AD -- C:\ProgramData\TEMP
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/03/27 12:49:10 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 2015/03/05 11:19:08 - [] D -- C:\ProgramData\UDL
O43 - CFD: 2015/06/13 17:11:02 - [] D -- C:\ProgramData\{543eeb51-3269-2142-543e-eeb51326ad44}
O43 - CFD: 2014/11/03 17:41:26 - [0] SHD -- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
O43 - CFD: 2015/03/22 11:20:28 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2014/09/24 10:42:01 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 2013/09/01 21:14:25 - [] D -- C:\Program Files\Common Files\DivX Shared
O43 - CFD: 2015/03/05 12:05:33 - [] D -- C:\Program Files\Common Files\EPSON
O43 - CFD: 2014/12/09 18:30:10 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 2014/11/28 22:17:00 - [] D -- C:\Program Files\Common Files\IObit
O43 - CFD: 2015/03/29 11:53:32 - [] D -- C:\Program Files\Common Files\Microsoft Games
O43 - CFD: 2015/03/14 13:04:07 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2015/03/16 12:17:28 - [] D -- C:\Program Files\Common Files\Steam
O43 - CFD: 2015/03/29 13:13:22 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2014/05/10 19:07:18 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 2015/03/24 11:28:56 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 2014/10/21 10:22:04 - [] D -- C:\Program Files\Common Files\Wondershare
O43 - CFD: 2015/04/02 10:21:36 - [] D -- C:\Users\admin\AppData\Roaming\Abacus
O43 - CFD: 2015/07/18 23:06:09 - [] D -- C:\Users\admin\AppData\Roaming\Adobe
O43 - CFD: 2013/09/08 20:52:51 - [] D -- C:\Users\admin\AppData\Roaming\Aeria Games & Entertainment
O43 - CFD: 2015/06/14 09:40:46 - [] D -- C:\Users\admin\AppData\Roaming\Apple Computer
O43 - CFD: 2014/11/24 12:35:59 - [] D -- C:\Users\admin\AppData\Roaming\ATNSOFT
O43 - CFD: 2014/07/27 10:06:17 - [] D -- C:\Users\admin\AppData\Roaming\BlueSprig
O43 - CFD: 2013/09/01 17:36:08 - [] D -- C:\Users\admin\AppData\Roaming\CDXReader
O43 - CFD: 2014/11/04 10:35:42 - [] D -- C:\Users\admin\AppData\Roaming\com.ea.Vault
O43 - CFD: 2015/06/14 09:40:46 - [] D -- C:\Users\admin\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2014/11/21 12:16:07 - [] D -- C:\Users\admin\AppData\Roaming\DeltaBin
O43 - CFD: 2015/03/19 11:26:17 - [] D -- C:\Users\admin\AppData\Roaming\DigitalVolcano
O43 - CFD: 2015/03/05 11:47:14 - [] D -- C:\Users\admin\AppData\Roaming\Epson
O43 - CFD: 2013/09/02 17:38:05 - [] D -- C:\Users\admin\AppData\Roaming\eTeks
O43 - CFD: 2014/11/10 19:15:22 - [] D -- C:\Users\admin\AppData\Roaming\FarStone
O43 - CFD: 2013/10/06 19:17:52 - [] D -- C:\Users\admin\AppData\Roaming\fltk.org
O43 - CFD: 2015/06/21 09:31:23 - [] D -- C:\Users\admin\AppData\Roaming\IObit
O43 - CFD: 2014/03/20 19:08:17 - [] D -- C:\Users\admin\AppData\Roaming\LavasoftStatistics
O43 - CFD: 2013/09/01 17:36:10 - [] D -- C:\Users\admin\AppData\Roaming\LavFilters
O43 - CFD: 2014/10/10 10:22:23 - [] D -- C:\Users\admin\AppData\Roaming\Leadertech
O43 - CFD: 2015/02/19 10:40:07 - [] D -- C:\Users\admin\AppData\Roaming\LibreOffice
O43 - CFD: 2014/11/20 10:39:17 - [] D -- C:\Users\admin\AppData\Roaming\LogMate
O43 - CFD: 2014/12/12 09:00:10 - [] D -- C:\Users\admin\AppData\Roaming\Macromedia
O43 - CFD: 2015/07/18 21:55:09 - [] SD -- C:\Users\admin\AppData\Roaming\Microsoft
O43 - CFD: 2014/12/11 20:57:25 - [] D -- C:\Users\admin\AppData\Roaming\MiniGet
O43 - CFD: 2015/06/21 10:26:02 - [] D -- C:\Users\admin\AppData\Roaming\Mipony
O43 - CFD: 2014/07/15 11:57:52 - [] D -- C:\Users\admin\AppData\Roaming\MOVAVI
O43 - CFD: 2015/06/14 09:40:50 - [] D -- C:\Users\admin\AppData\Roaming\Mozilla
O43 - CFD: 2014/11/10 19:47:20 - [] D -- C:\Users\admin\AppData\Roaming\nBrowser
O43 - CFD: 2015/02/24 09:57:58 - [] D -- C:\Users\admin\AppData\Roaming\OfficeRecovery
O43 - CFD: 2013/11/05 14:42:03 - [] D -- C:\Users\admin\AppData\Roaming\OpenOffice
O43 - CFD: 2014/07/26 17:37:26 - [] D -- C:\Users\admin\AppData\Roaming\ProductData
O43 - CFD: 2015/06/14 09:40:50 - [] D -- C:\Users\admin\AppData\Roaming\Quest3D
O43 - CFD: 2014/10/16 10:03:09 - [] D -- C:\Users\admin\AppData\Roaming\R-TT
O43 - CFD: 2015/03/22 10:19:49 - [] D -- C:\Users\admin\AppData\Roaming\Roaming
O43 - CFD: 2014/12/12 10:16:27 - [] D -- C:\Users\admin\AppData\Roaming\Serif
O43 - CFD: 2014/12/11 20:57:26 - [] D -- C:\Users\admin\AppData\Roaming\Simraceway
O43 - CFD: 2015/03/30 09:29:47 - [] D -- C:\Users\admin\AppData\Roaming\Skype
O43 - CFD: 2014/06/26 19:03:27 - [] D -- C:\Users\admin\AppData\Roaming\SoftGrid Client
O43 - CFD: 2014/01/19 10:46:51 - [] D -- C:\Users\admin\AppData\Roaming\Subversion
O43 - CFD: 2014/06/23 20:14:04 - [] HD -- C:\Users\admin\AppData\Roaming\TempMods
O43 - CFD: 2013/09/02 17:35:36 - [] D -- C:\Users\admin\AppData\Roaming\TuneUp Software
O43 - CFD: 2013/09/13 19:48:26 - [] D -- C:\Users\admin\AppData\Roaming\Unity
O43 - CFD: 2013/09/29 10:19:55 - [] D -- C:\Users\admin\AppData\Roaming\WebGamePlay
O43 - CFD: 2014/06/01 15:00:07 - [] D -- C:\Users\admin\AppData\Roaming\WinRAR
O43 - CFD: 2014/05/18 17:51:45 - [] D -- C:\Users\admin\AppData\Roaming\wi_upd
O43 - CFD: 2014/11/26 11:33:29 - [] D -- C:\Users\admin\AppData\Roaming\Z-Software
O43 - CFD: 2015/07/18 23:18:47 - [] D -- C:\Users\admin\AppData\Roaming\ZHP
O43 - CFD: 2014/11/07 09:59:23 - [] D -- C:\Users\admin\AppData\Local\30760
O43 - CFD: 2014/12/11 20:57:18 - [] D -- C:\Users\admin\AppData\Local\Adobe
O43 - CFD: 2014/11/06 16:46:59 - [] D -- C:\Users\admin\AppData\Local\Ajworks
O43 - CFD: 2015/06/21 09:31:54 - [] D -- C:\Users\admin\AppData\Local\Akamai
O43 - CFD: 2014/12/09 20:52:00 - [] D -- C:\Users\admin\AppData\Local\Apache
O43 - CFD: 2013/07/31 17:23:51 - [0] SHD -- C:\Users\admin\AppData\Local\Application Data
O43 - CFD: 2015/05/27 12:36:08 - [] D -- C:\Users\admin\AppData\Local\Apps
O43 - CFD: 2014/01/18 19:27:40 - [] D -- C:\Users\admin\AppData\Local\ATI
O43 - CFD: 2014/11/03 17:34:31 - [] D -- C:\Users\admin\AppData\Local\Avg
O43 - CFD: 2015/01/26 16:54:10 - [] D -- C:\Users\admin\AppData\Local\Blizzard Entertainment
O43 - CFD: 2014/12/11 20:57:21 - [] D -- C:\Users\admin\AppData\Local\cache
O43 - CFD: 2014/05/12 17:59:38 - [] D -- C:\Users\admin\AppData\Local\Chromium
O43 - CFD: 2014/03/27 08:48:41 - [] D -- C:\Users\admin\AppData\Local\Comodo
O43 - CFD: 2015/01/20 18:24:17 - [] D -- C:\Users\admin\AppData\Local\defaultmsctfmonitorRecovery
O43 - CFD: 2015/04/02 10:27:29 - [] D -- C:\Users\admin\AppData\Local\Downloaded Installations
O43 - CFD: 2015/07/18 23:06:11 - [0] SHD -- C:\Users\admin\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/07/18 23:06:10 - [0] SHD -- C:\Users\admin\AppData\Local\EmieSiteList
O43 - CFD: 2015/07/18 23:06:11 - [0] SHD -- C:\Users\admin\AppData\Local\EmieUserList
O43 - CFD: 2014/06/16 17:37:05 - [] D -- C:\Users\admin\AppData\Local\GamersFirst LIVE!
O43 - CFD: 2015/06/14 09:40:45 - [] D -- C:\Users\admin\AppData\Local\Google
O43 - CFD: 2013/07/31 17:23:51 - [0] SHD -- C:\Users\admin\AppData\Local\Historique
O43 - CFD: 2014/08/09 09:57:55 - [] D -- C:\Users\admin\AppData\Local\infidele-messenger
O43 - CFD: 2013/09/11 17:08:22 - [] D -- C:\Users\admin\AppData\Local\Ironfront
O43 - CFD: 2013/10/16 09:39:57 - [] D -- C:\Users\admin\AppData\Local\IsolatedStorage
O43 - CFD: 2013/09/16 17:14:07 - [] D -- C:\Users\admin\AppData\Local\Kamuse
O43 - CFD: 2014/04/26 17:19:05 - [] D -- C:\Users\admin\AppData\Local\messengerdusexe
O43 - CFD: 2015/07/18 23:06:09 - [] D -- C:\Users\admin\AppData\Local\Microsoft
O43 - CFD: 2015/03/04 18:12:30 - [] D -- C:\Users\admin\AppData\Local\Microsoft Game Studios
O43 - CFD: 2014/07/15 11:57:52 - [] D -- C:\Users\admin\AppData\Local\Movavi
O43 - CFD: 2015/06/14 09:40:46 - [] D -- C:\Users\admin\AppData\Local\Mozilla
O43 - CFD: 2015/07/18 22:44:13 - [] D -- C:\Users\admin\AppData\Local\Programs
O43 - CFD: 2014/05/10 17:28:23 - [] D -- C:\Users\admin\AppData\Local\rencontreshard
O43 - CFD: 2015/02/08 11:46:28 - [] D -- C:\Users\admin\AppData\Local\SKIDROW
O43 - CFD: 2014/03/08 18:51:10 - [] D -- C:\Users\admin\AppData\Local\Skype
O43 - CFD: 2015/03/14 18:25:23 - [] D -- C:\Users\admin\AppData\Local\Steam
O43 - CFD: 2015/07/18 23:18:22 - [] D -- C:\Users\admin\AppData\Local\Temp
O43 - CFD: 2013/07/31 17:23:51 - [0] SHD -- C:\Users\admin\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/12/17 20:27:52 - [] D -- C:\Users\admin\AppData\Local\VirtualStore
O43 - CFD: 2014/10/14 17:57:03 - [] D -- C:\Users\admin\AppData\Local\Windows Live
O43 - CFD: 2014/10/21 10:22:06 - [] D -- C:\Users\admin\AppData\Local\Wondershare
O43 - CFD: 2009/07/14 06:42:04 - [] RD -- C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/11 16:40:01 - [] RD -- C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/02/15 11:59:25 - [] D -- C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2009/07/14 06:37:42 - [] RD -- C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/18 23:14:57 - [] RD -- C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/02/08 09:27:51 - [] D -- C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (3) - 0s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (...) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Advanced SystemCare 8 [Key] . (...) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (...) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe (.not file.)

---\\ Liste des pilotes du système (SDL) (O58) (83) - 9s
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976]
O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512]
O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400]
O58 - SDL:2012/12/03 21:49:36 A . (.Advanced Micro Devices Inc. - AMD miniIDE Driver.) -- C:\Windows\System32\drivers\amdide.sys [11944]
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256]
O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312]
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608]
O58 - SDL:2009/08/18 03:48:06 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [4994560]
O58 - SDL:2014/11/25 13:51:16 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [83872]
O58 - SDL:2014/09/24 10:35:47 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [412952]
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128]
O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080]
O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952]
O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720]
O58 - SDL:2015/02/09 09:37:51 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [243128]
O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712]
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160]
O58 - SDL:2005/07/15 18:07:00 A . (.FarStone Inc. - FarStone SCSI Miniport.) -- C:\Windows\System32\drivers\fgdscsi.sys [64868]
O58 - SDL:2003/08/06 10:46:12 A . (.FarStone Inc. - FarStone Bus Enumerator.) -- C:\Windows\System32\drivers\fgdxbus.sys [10899]
O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624]
O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152]
O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160]
O58 - SDL:2009/06/10 23:19:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [4756480]
O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040]
O58 - SDL:2012/12/04 03:21:12 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [16440]
O58 - SDL:2014/11/25 13:51:16 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [25888]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824]
O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848]
O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256]
O58 - SDL:2015/06/18 08:41:42 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936]
O58 - SDL:2015/07/18 23:13:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [98520]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584]
O58 - SDL:2015/06/18 08:41:54 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928]
O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624]
O58 - SDL:2009/06/10 23:19:48 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [9853248]
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120]
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744]
O58 - SDL:2012/11/28 15:30:12 A . (.TPMX Electronics Ltd. - Mouse Suite Driver.) -- C:\Windows\System32\drivers\PELMOUSE.SYS [19456]
O58 - SDL:2012/11/28 16:25:18 A . (.TPMX Electronics Ltd. - USB Mouse Filter Driver.) -- C:\Windows\System32\drivers\pelusblf.sys [26112]
O58 - SDL:2009/11/02 15:00:14 A . (.TPMX Electronics Ltd. - USB Device Filter Driver.) -- C:\Windows\System32\drivers\PELVENDR.SYS [10240]
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488]
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064]
O58 - SDL:2014/12/11 15:14:36 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3422744]
O58 - SDL:2009/07/14 00:02:52 A . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\drivers\Rtnicxp.sys [43008]
O58 - SDL:2014/06/10 08:58:02 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUStor.sys [214232]
O58 - SDL:2015/07/18 23:11:26 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\scawrvn.sys [52440]
O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016]
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888]
O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072]
O58 - SDL:2013/12/03 20:58:20 A . (.Echo Digital Audio Corporation - Echo Broadcom 57762 AVB.) -- C:\Windows\System32\drivers\Streamware.sys [57248]
O58 - SDL:2014/08/06 22:45:25 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [29160]
O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976]
O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904]
O58 - SDL:2013/11/29 20:33:24 A . (...) -- C:\Windows\System32\drivers\VSPE.sys [25984]
O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
O58 - SDL:2010/04/09 13:16:50 N . (...) -- C:\Windows\System32\pwdrvio.sys [16472]
O58 - SDL:2010/04/09 13:16:46 N . (...) -- C:\Windows\System32\pwdspio.sys [11104]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (1) - 6s
O61 - LFC: 2015/07/13 10:14:22 A . (..) -- C:\Users\admin\AppData\Local\Google\Chrome\User Data\PepperFlash\18.0.0.209\pepflashplayer.dll [16307888]

---\\ Associations Shell Spawning (O67) (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (7) - 10s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {114DB5FA-0AFB-BB92-A75B-F44D3CE875CD} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] - (Mysearchdial) - http://start.mysearchdial.com/ =>PUP.Optional.MySearchDial
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-19] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (32) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2057216]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (6) - 1s
O87 - FAEL: "TCP Query User{4D3DAADD-CD27-4002-B2D8-4514588F6983}C:\users\admin\appdata\local\akamai\netsession_win.exe" [In-None-P6-TRUE] .(.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\users\admin\appdata\local\akamai\netsession_win.exe
O87 - FAEL: "UDP Query User{32FB11C1-9550-4161-8835-3EAD5DD57850}C:\users\admin\appdata\local\akamai\netsession_win.exe" [In-None-P17-TRUE] .(.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\users\admin\appdata\local\akamai\netsession_win.exe
O87 - FAEL: "{68D7EA9A-F295-4896-9147-53B73446DBA6}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O87 - FAEL: "{DD2CE5DA-8B6F-4ACE-B7AF-4D1076AD97C8}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O87 - FAEL: "{0E7C1496-4DA8-4651-B32E-F502C94F07EA}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Dfx audio.exe
O87 - FAEL: "{E6C7DDF1-840D-492E-94E3-D2D8055D61A4}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Dfx audio.exe

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (10) - 194s
SR - Auto [2014/11/04 14:19:48] [ 815392] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
SR - Auto [2009/08/18 02:36:08] [ 176128] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - Auto [2012/12/03 14:49:32] [ 2571704] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
SR - Auto [2015/03/05 12:01:08] [ 142432] EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
SS - Auto [2014/12/15 13:06:27] [ 107912] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - Demand [2014/12/15 13:06:27] [ 107912] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - Demand [2005/04/04 01:41:10] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
SR - Auto [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
SR - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
SR - Auto [2014/12/11 15:14:34] [ 252632] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe

---\\ Scan Additionnel (O88) (4) - 0s
HKLM\SOFTWARE\aducky =>PUP.Optional.aDucky
HKLM\SOFTWARE\DownloaderAssistant =>PUP.Optional.Salus
HKLM\SOFTWARE\P1-App =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ForumerIT =>Toolbar.Forumer

---\\ Récapitulatif des éléments trouvées sur votre station (5) - 0s
http://www.nicolascoolman.fr/blog =>PUP.Optional.aDucky
http://www.nicolascoolman.fr/pup-salus/ =>PUP.Optional.Salus
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/toolbar-forumer/ =>Toolbar.Forumer
http://www.nicolascoolman.fr/blog =>PUP.Optional.MySearchDial

~ End of the scan, 13192 items in 300 seconds (960)(0)()

Publicité


Signaler le contenu de ce document

Publicité