cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.20.20 Par Nicolas Coolman (2015/07/20)
~ Démarré par Opaline (Administrator) (2015/07/20 14:15:22)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Opaline\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Opaline\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 39.0 (x86 fr) v39.0
MSIE: Internet Explorer v11.0.9600.17914

---\\ Informations sur les produits Windows (4) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (1) - 3s
Avast Free Antivirus v10.3.2223

---\\ Logiciels de protection et autres (Superflus) (1) - 4s
McAfee Security Scan Plus v3.8.150.1

---\\ Surveillance de Logiciels (2) - 4s
Adobe Flash Player 18 PPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4189.108 MB (40% free)
~ System Restore: Activé (Enable)
~ System drive C: has 165 GB free of 463 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: LABELLEDU28
~ User Name: Opaline
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 165 GB free of 463 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024]
[MD5.E066FDC3A2074D926903B8C31EF3B347] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427392]
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224]
[MD5.1877EB1495CFBDAB27D6A32F6DDF3818] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184]
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808]

---\\ Processus lancés (21) - 3s
[MD5.C1668D58547DD0C4A0FBD6AFA20D5890] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 187.6.) -- C:\Windows\system32\nvvsvc.exe [392296] [PID.944]
[MD5.C1668D58547DD0C4A0FBD6AFA20D5890] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 187.6.) -- C:\Windows\system32\nvvsvc.exe [392296] [PID.1332]
[MD5.A97E144E84A665B22AE6E6A93E4DD465] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1380]
[MD5.B65F8DBA54F251906BBE8611B5A0E7AB] - (.LSI Corporation - LSI Soft Modem Call Progress Service.) -- C:\Program Files\LSI SoftModem\agr64svc.exe [16896] [PID.1696]
[MD5.5B3CE960C62DBE864BE9A0BD043A3E30] - (.NewTech Infosystems, Inc. - Backup Manager Module.) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [250368] [PID.1416]
[MD5.B5071E15D4C3F5EF5018AFF7E85A85E5] - (.NewTech Infosystems, Inc. - NTI Backup Now 5 SchedulerSvc NT Service.) -- C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [144640] [PID.1304]
[MD5.F9EC9ACD504D823D9B9CA98A4F8D3CA2] - (.Acer Group - Updater Service.) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe [243232] [PID.1436]
[MD5.4D53C848AC7EDC5977B12E2C538A4719] - (.Useful Technology - BreakingNewsAlert Service.) -- C:\ProgramData\nEFbdK\oPLCcO.exe [2732000] [PID.2620]
[MD5.89F7B7CCC82D7E6FF9832FE3D24988C4] - (.Egis Technology Inc. - MyWinLocker.) -- C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe [349552] [PID.3688]
[MD5.901A91A3527F4F5212CF6B03C21DAD82] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960] [PID.3880]
[MD5.3B30F234512DB4EFDD0168928C61FC8E] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1842472] [PID.3428]
[MD5.BCB742E868592973406ACE3ADA97304F] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [121128] [PID.2860]
[MD5.2782D83D9B1071E28E2A4D9C6F5307C6] - (.NewTech Infosystems, Inc. - Acer Backup Manager.) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [260608] [PID.4440]
[MD5.27964C4676D0F4B34DB7332AFA2B1474] - (.Egis Technology Inc. - PMM Update Application.) -- C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [401192] [PID.4480]
[MD5.0922451B8DD96D013945E4A9E4AA6607] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1277680] [PID.4596]
[MD5.56D1890D74A8999F756E338210846AF1] - (.Dritek System Inc. - Launch Manager Keyboard Application.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1094736] [PID.4720]
[MD5.D93B31DAEF7F116CE8192E266D557912] - (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [419112] [PID.4728]
[MD5.7D9EDDB07E9EB30D399E630D94DFBCC7] - (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480] [PID.4744]
[MD5.14D6542607ACD4B2D1DDB1A36E0D8813] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744] [PID.4768]
[MD5.6C695B04E2E29459CDC2E5C0970B883B] - (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201512] [PID.4812]
[MD5.799450710D1B09FAF0D220B4DA3BF431] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776] [PID.5104]

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (19) - 2s
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\Opaline\AppData\Roaming\Mozilla\Firefox\Profiles\7erlioac.default-1406753418828\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Opaline\AppData\Roaming\Mozilla\Firefox\Profiles\7erlioac.default-1406753418828\searchplugins\google-avast.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (. - jid0W5zY771zDsu5o7dTJ8KHm38w1xsjetpack.) -- C:\Users\Opaline\AppData\Roaming\Mozilla\Firefox\Profiles\7erlioac.default-1406753418828\extensions\jid0-W5zY771zDsu5o7dTJ8KHm38w1xs@jetpack
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\Opaline\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.Canon Inc.) -- C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc..) -- C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.71.2] - (.Oracle Corp..) -- C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.71.2] - (.Oracle Corp..) -- C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (4) - 0s
B2 - EXT: [BrowserV12.07] C:\Users\Opaline\AppData\Roaming\Opera Software\Opera Stable\Extensions\idhkmcfanijhphphomamdkaejjadkhgn
B2 - EXT: [CPlus.3cV16.07] C:\Users\Opaline\AppData\Roaming\Opera Software\Opera Stable\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi
B2 - EXT: [{background:{scripts:[background.js]}content_scrip] C:\Users\Opaline\AppData\Roaming\Opera Software\Opera Stable\Extensions\nickdjgcdalpckgpkilfdcnjofcpjfhb
B2 - EXT: [Opera Stable] C:\Users\Opaline\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (21) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 0s
O2 - BHO: Hatchiho 1.0.0.7 [64Bits] - {0569f0df-cce6-43e9-aecb-5c5cf431e3b4} (Orphean)
O2 - BHO: shopperz Helper [64Bits] - {3c9ce603-44cc-4997-a166-239e6186c6ef} (Orphean) =>PUP.Optional.Shopperz
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O2 - BHO: On Stage [64Bits] - {aff87634-f4a9-42bc-b2dc-be240584d095} (Orphean) =>PUP.Optional.OnStage

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (55) - 3s
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
O4 - HKLM\..\Run: [mwlDaemon] . (.Egis Technology Inc. - MyWinLocker.) -- C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe (.not file.)
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Acer ePower Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
O4 - HKLM\..\Run: [PLFSetL] C:\Windows\PLFSetL.exe (.not file.)
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (.not file.)
O4 - HKLM\..\Run: [3D BubbleSound] C:\Program Files\BubbleSound\3D BubbleSound.exe (.not file.) =>PUP.Optional.BubbleSound
O4 - HKLM\..\Run: [shopperz] C:\Program Files\shopperz\Ewhxbh.exe (.not file.) =>PUP.Optional.Shopperz
O4 - HKLM\..\Run: [shopperz64] C:\Program Files\shopperz\Ewhxbh64.exe (.not file.) =>PUP.Optional.Shopperz
O4 - HKLM\..\Run: [SpaceSoundPro] C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe (.not file.) =>PUP.Optional.SpaceSondPro
O4 - HKLM\..\Run: [Windesk Winsearch] C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe (.not file.) =>PUP.Optional.WindeskWinsearch
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (.not file.)
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_B5749977AAA6C6455748F086ED3660C8] C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Opaline\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Opaline\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe
O4 - HKLM\..\Wow6432Node\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [BackupManagerTray] . (.NewTech Infosystems, Inc. - Acer Backup Manager.) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
O4 - HKLM\..\Wow6432Node\Run: [EgisUpdate] . (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
O4 - HKLM\..\Wow6432Node\Run: [EgisTecPMMUpdate] . (.Egis Technology Inc. - PMM Update Application.) -- C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager Keyboard Application.) -- C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Wow6432Node\Run: [ArcadeDeluxeAgent] . (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
O4 - HKLM\..\Wow6432Node\Run: [PlayMovie] . (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O4 - HKLM\..\Wow6432Node\Run: [lxdfmon.exe] C:\Program Files (x86) (x86)\Lexmark 6500 Series\lxdfmon.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [lxdfamon] C:\Program Files (x86) (x86)\Lexmark 6500 Series\lxdfamon.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [fst_fr_349] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [DivXMediaServer] . (.DivX, LLC - DivX Media Server Launcher.) -- C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Wow6432Node\Run: [DivXUpdate] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_545] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_552] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010009] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010011] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010012] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010015] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010033] (Orphean) =>PUP.Optional.CrossRider
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-1657821676-617154575-344207760-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-1657821676-617154575-344207760-1000\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (.not file.)
O4 - HKUS\S-1-5-21-1657821676-617154575-344207760-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
O4 - HKUS\S-1-5-21-1657821676-617154575-344207760-1000\..\Run: [GoogleChromeAutoLaunch_B5749977AAA6C6455748F086ED3660C8] C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse
O4 - HKUS\S-1-5-21-1657821676-617154575-344207760-1000\..\RunOnce: [Uninstall C:\Users\Opaline\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe
O4 - HKUS\S-1-5-21-1657821676-617154575-344207760-1000\..\RunOnce: [Uninstall C:\Users\Opaline\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe

---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = netgear.com
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = netgear.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = netgear.com

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
O20 - AppInit_DLLs: . (.Auteurs - .) - C:\Windows\System32\

---\\ Liste des services NT non Microsoft et non désactivés (O23) (21) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) . (.LSI Corporation - LSI Soft Modem Call Progress Service.) - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: GRegService (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (...) - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (.not file.)
O23 - Service: McShield (McShield) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\mcafee\SystemCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) . (.McAfee, Inc. - McAfee Core Firewall Service.) - C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Program Files\Common Files\mcafee\SystemCore\mfevtps.exe
O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc. - Backup Manager Module.) - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 SchedulerSvc NT Service.) - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 187.6.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: oPLCcO (oPLCcO) . (.Useful Technology - BreakingNewsAlert Service.) - C:\ProgramData\nEFbdK\oPLCcO.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SW Updater (SW_Updater) . (...) - C:\Program Files (x86)\StormWarnings\SW_Updater.exe (.not file.) =>PUP.Optional.StormWarnings
O23 - Service: UfockFuloxo (UfockFuloxo) . (...) - C:\Program Files\shopperz\LikumVutyp.exe (.not file.) =>PUP.Optional.Shopperz
O23 - Service: Updater Service (Updater Service) . (.Acer Group - Updater Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: Util Hatchiho (Util Hatchiho) . (...) - C:\Program Files (x86)\Hatchiho\bin\utilHatchiho.exe (.not file.) =>PUP.Optional.Hatchiho
O23 - Service: Word Surfer 1.10.0.19 Client Service (wsasvc_1.10.0.19) . (...) - C:\Program Files (x86)\WordSurfer_1.10.0.19\Service\wsasvc.exe (.not file.) =>PUP.Optional.WordSurfer

---\\ Tâches planifiées en automatique (O39) (41) - 5s
O39 - APT: - (...) -- C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job [1064]
O39 - APT: - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: - (...) -- C:\Windows\Tasks\Bidaily Synchronize Task[3c32].job [344] =>PUP.Optional.BidailySync
O39 - APT: - (...) -- C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job [344] =>PUP.Optional.BidailySync
O39 - APT: - (...) -- C:\Windows\Tasks\MagicDrawer.job [326]
O39 - APT: - (...) -- C:\Windows\Tasks\WonderPlan.job [340]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier [4068]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [3924]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\Bidaily Synchronize Task[3c32] [3260] =>PUP.Optional.BidailySync
O39 - APT: - (...) -- C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] [3260] =>PUP.Optional.BidailySync
O39 - APT: - (...) -- C:\Windows\System32\Tasks\bvxvbvbh [3482]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\Dlvfecrd [3632]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\MagicDrawer [3242]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\SidebarExecute [3160]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\sol3007 [3092]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\WonderPlan [3256]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{1758BB67-C000-4D6C-B20B-2BC1DD299A9A} [3166]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{1885F129-90F1-4A1A-B6E5-376959A83BBD} [3266]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{32ED1688-E1FD-4CBD-86A3-0A45C0C40754} [3380]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{6DF88DCF-F3ED-4E69-84E5-D5122477D342} [3180]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{7231E6A0-F640-4BF7-8D93-A6CBFDB40655} [2878]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{78785AF9-7A35-4AA6-A49E-7B6C02D889B6} [3204]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{843054F8-6DBF-4789-8FD1-2EAF149E64DE} [3184]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{8991A0CB-7045-46AF-8F36-06337E66F88B} [3160]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{94C94211-A59F-4AC0-82A4-771C9C18EA50} [3300]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9F7C2D6F-A4F0-451E-BCF1-1664F537C1FB} [3302]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{9FE74649-9CD8-45AD-961B-799D941B7FCA} [3254]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A10D2EC2-68FF-4962-9772-3EF902A30153} [3060]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A31FB76D-E5E3-4CC0-8113-920D63DAA7CD} [3052]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{A5E145C6-3B0B-445B-B22C-D59C4C079C6F} [3180]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{DDFDA8DF-7249-493F-A21A-22D6D2749FC3} [3160]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{DE4F4DDD-F17D-4070-B46D-F13EE72CD6A8} [3230]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E061FFCC-AF6F-4565-A4C2-4BEBCB809D4E} [3200]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E1A25336-10B1-4953-BE79-AA9E9936E9BA} [3184]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{E364EEF3-8E81-4F57-898A-B4AFA360ADA8} [3142]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{F2D4F4A1-584F-4A3F-B3DF-2619AD7B607B} [3154]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FB3BEDA2-C420-4BAF-8D6B-A50F5523E413} [3104]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FBF379AD-BC57-413E-A656-7A90E91FC7E1} [3060]
O39 - APT: - (...) -- C:\Windows\System32\Tasks\{FE28A655-8015-4BE8-9496-60CADCEE8E5D} [3180]

---\\ Logiciels installés (O42) (90) - 15s
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
O42 - Logiciel: LSI HDA Modem - (.LSI Corporation.) [HKLM][64Bits] -- LSI Soft Modem
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: Canon MG5300 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series
O42 - Logiciel: Java(TM) 7 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417000FF}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE}
O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM][64Bits] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {96F70DF8-160F-4F9C-9B9E-2A9B439B4EB9}
O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Registration
O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Screensaver
O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Welcome Center
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Flash Player 18 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast
O42 - Logiciel: AviSynth 2.5 - (.GPL Public release..) [HKLM][64Bits] -- AviSynth
O42 - Logiciel: Canon MG5300 series On-screen Manual - (...) [HKLM][64Bits] -- Canon MG5300 series On-screen Manual
O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (...) [HKLM][64Bits] -- CANONIJPLM100
O42 - Logiciel: Canon My Printer - (...) [HKLM][64Bits] -- CanonMyPrinter
O42 - Logiciel: Canon Solution Menu EX - (...) [HKLM][64Bits] -- CanonSolutionMenuEX
O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM][64Bits] -- DivX Setup
O42 - Logiciel: Canon Easy-PhotoPrint EX - (...) [HKLM][64Bits] -- Easy-PhotoPrint EX
O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM][64Bits] -- Easy-WebPrint EX
O42 - Logiciel: Enregistrement utilisateur de Canon MG5300 series - (...) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MG5300 series
O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- Identity Card
O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}
O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}
O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}
O42 - Logiciel: Acer Backup Manager - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}
O42 - Logiciel: Lame ACM MP3 Codec - (...) [HKLM][64Bits] -- LameACM
O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager
O42 - Logiciel: m4ng - (...) [HKLM][64Bits] -- m4ng
O42 - Logiciel: MKVToolNix 7.7.0 (32bit) - (.Moritz Bunkus.) [HKLM][64Bits] -- MKVToolNix
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Canon MP Navigator EX 5.0 - (...) [HKLM][64Bits] -- MP Navigator EX 5.0
O42 - Logiciel: PhotoFiltre Studio - (...) [HKLM][64Bits] -- PhotoFiltre Studio
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3
O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673}
O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {05653DE1-6567-40C6-B930-39D399B64369}
O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM][64Bits] -- {0D7CD0D9-4A88-4A63-8F91-3F4E8F371768}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {1C4551A6-4743-4093-91E4-1477CD655043}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761}
O42 - Logiciel: Java 7 Update 71 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217071FF}
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964}
O42 - Logiciel: Easy Burner - (.Aedge Performance BCN SL.) [HKLM][64Bits] -- {520C2939-555B-40BF-A91B-8B671AB560EB} =>PUP.Optional.PCSpeedUp
O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM][64Bits] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D}
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Backup Manager Basic - (.NewTech Infosystems.) [HKLM][64Bits] -- {72B776E5-4530-4C4B-9453-751DF87D9D93}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: Microsoft Works 6-9 Converter - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-0137-040C-0000-0000000FF1CE}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Conseiller de mise à niveau vers Windows 7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D10CB57-B085-44c3-B435-2D193BA153F0}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM][64Bits] -- {A50DE037-B5C0-4C8A-8049-B0C576B313D1}
O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
O42 - Logiciel: Acer GameZone Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {ABEE079E-648E-488B-8301-0C3DB48C1BCE}_is1
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001802114130}
O42 - Logiciel: Adobe Reader XI (11.0.11) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: ABBYY FineReader 6.0 Sprint - (.ABBYY Software House.) [HKLM][64Bits] -- {ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
O42 - Logiciel: Les Sims™ 3 - (.Electronic Arts.) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {C779648B-410E-4BBA-B75B-5815BCEFE71D}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Microsoft Works Update Packages - (...) [HKCU][64Bits] -- Microsoft Works Update Packages
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe
O42 - Logiciel: PhotoFiltre - (...) [HKCU][64Bits] -- PhotoFiltre
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer

---\\ HKCU & HKLM Software Keys (153) - 15s
HKLM\SOFTWARE\Wow6432Node\ABBYY
HKLM\SOFTWARE\Wow6432Node\Acer Incorporated
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\AviSynth
HKLM\SOFTWARE\Wow6432Node\Canneverbe Limited
HKLM\SOFTWARE\Wow6432Node\Canon
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Digital River
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\DivX
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\DT Soft
HKLM\SOFTWARE\Wow6432Node\EA GAMES
HKLM\SOFTWARE\Wow6432Node\EasyBurner
HKLM\SOFTWARE\Wow6432Node\echo_update
HKLM\SOFTWARE\Wow6432Node\EgisTec IPS
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\Free Video Grabber 6.6-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hatchiho
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Lexmark
HKLM\SOFTWARE\Wow6432Node\LogMeIn Rescue
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\MOVAVI
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MusicNet
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\NewTech Infosystems
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\Oberon Media
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OEM
HKLM\SOFTWARE\Wow6432Node\OpenOffice.org
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\PhotoFiltre Studio
HKLM\SOFTWARE\Wow6432Node\Plus HD Video 3.1cV16.07-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\SecureDigitalServices
HKLM\SOFTWARE\Wow6432Node\Sims
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SmartSaver+ 3-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\SpaceSondPro =>PUP.Optional.SpaceSondPro
HKLM\SOFTWARE\Wow6432Node\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\webtogo
HKLM\SOFTWARE\Wow6432Node\Windows
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wistron
HKLM\SOFTWARE\Wow6432Node\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\ABBYY
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\BearShare =>PUP.Optional.BearShare
HKCU\SOFTWARE\BrowserTemp
HKCU\SOFTWARE\bunkus.org
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\CanonBJ
HKCU\SOFTWARE\CDIP
HKCU\SOFTWARE\Chicony
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CinemaPlus-3.2cV19.05-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV22.06-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\DVD Decrypter
HKCU\SOFTWARE\EA GAMES
HKCU\SOFTWARE\Elaborate Bytes
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\Freeware
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hatchiho
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Lexmark 6500 Series
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\m4ng
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\mkvmergeGUI
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewTech Infosystems
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\Oberon Media
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OEM
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PhotoFiltre
HKCU\SOFTWARE\Plus HD Video 3.1cV16.07-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Ripp-it
HKCU\SOFTWARE\RtkPCEE3sMsg
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sonix
HKCU\SOFTWARE\SP19
HKCU\SOFTWARE\spacesoundpro =>PUP.Optional.SpaceSondPro
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wistron
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Canon
HKCU\SOFTWARE\AppDataLow\Software\Google
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (246) - 12s
O43 - CFD: 2013/05/31 11:25:25 - [] D -- C:\Program Files (x86)\Abbyy FineReader 6.0 Sprint
O43 - CFD: 2014/11/12 23:29:54 - [] D -- C:\Program Files (x86)\Acer
O43 - CFD: 2010/10/12 23:26:52 - [] D -- C:\Program Files (x86)\Acer Arcade Deluxe
O43 - CFD: 2014/11/13 00:07:34 - [] D -- C:\Program Files (x86)\Acer GameZone
O43 - CFD: 2014/11/12 22:41:17 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2010/10/12 23:21:30 - [] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2015/06/22 16:15:30 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2015/03/07 19:50:40 - [] D -- C:\Program Files (x86)\AviSynth 2.5
O43 - CFD: 2015/03/05 19:11:11 - [] D -- C:\Program Files (x86)\CDBurnerXP
O43 - CFD: 2015/07/18 11:11:22 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2010/10/12 23:26:05 - [] D -- C:\Program Files (x86)\Cyberlink
O43 - CFD: 2015/03/05 20:23:20 - [] D -- C:\Program Files (x86)\DivX
O43 - CFD: 2013/12/05 19:29:10 - [] D -- C:\Program Files (x86)\EgisTec IPS
O43 - CFD: 2014/01/31 18:47:48 - [] D -- C:\Program Files (x86)\EgisTec MyWinLocker
O43 - CFD: 2015/05/19 19:43:57 - [] D -- C:\Program Files (x86)\Electronic Arts
O43 - CFD: 2015/07/16 15:35:18 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/05/19 19:43:56 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2010/04/12 22:36:59 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/07/16 03:32:34 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2010/10/12 23:23:15 - [] D -- C:\Program Files (x86)\Launch Manager
O43 - CFD: 2015/03/07 19:50:19 - [] D -- C:\Program Files (x86)\m4ng_v3
O43 - CFD: 2015/03/07 19:49:33 - [] D -- C:\Program Files (x86)\m4ng_v4
O43 - CFD: 2014/01/31 18:27:12 - [0] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2013/10/08 12:32:27 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2010/04/12 22:37:19 - [] D -- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
O43 - CFD: 2015/05/16 22:22:08 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2013/10/08 13:35:32 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 2010/10/12 23:34:10 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2010/10/12 23:36:49 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2014/07/28 23:53:18 - [] D -- C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor
O43 - CFD: 2015/05/19 19:51:07 - [] D -- C:\Program Files (x86)\Microsoft WSE
O43 - CFD: 2011/04/03 08:43:12 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/07/20 13:29:19 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/20 13:29:14 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2013/09/26 20:44:33 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 2011/03/31 11:30:50 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2010/04/12 22:38:20 - [] D -- C:\Program Files (x86)\NewTech Infosystems
O43 - CFD: 2015/06/22 17:43:03 - [] D -- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 2015/07/20 01:27:06 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2014/11/27 19:39:16 - [] D -- C:\Program Files (x86)\PhotoFiltre
O43 - CFD: 2011/08/24 21:54:02 - [] D -- C:\Program Files (x86)\PhotoFiltre Studio
O43 - CFD: 2010/10/12 23:21:41 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/06/22 16:16:58 - [] D -- C:\Program Files (x86)\Safari
O43 - CFD: 2015/07/18 11:42:44 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2014/01/31 18:00:23 - [] D -- C:\Program Files (x86)\StudioScrap4-Decouverte
O43 - CFD: 2010/10/12 23:22:06 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2013/07/29 13:27:52 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/07/09 19:09:00 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2013/05/31 10:15:47 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/22 10:21:36 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2013/05/31 10:15:46 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2013/05/31 10:15:47 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/05/31 10:15:47 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/05/02 12:03:40 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2013/05/31 11:25:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 6.0 Sprint
O43 - CFD: 2010/04/13 00:11:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2010/04/12 22:46:16 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
O43 - CFD: 2010/10/12 23:26:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe
O43 - CFD: 2010/04/12 22:38:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Backup Manager
O43 - CFD: 2014/11/13 00:07:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone
O43 - CFD: 2010/04/12 21:54:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem
O43 - CFD: 2010/04/13 00:11:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/11/15 20:38:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2014/11/24 18:18:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5
O43 - CFD: 2014/11/13 15:16:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series
O43 - CFD: 2014/11/13 15:17:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series Manual
O43 - CFD: 2014/11/13 15:20:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
O43 - CFD: 2015/05/19 18:28:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2015/03/05 20:23:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
O43 - CFD: 2014/04/24 20:56:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
O43 - CFD: 2011/10/23 12:00:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Burner
O43 - CFD: 2013/12/05 19:29:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec
O43 - CFD: 2014/11/13 15:23:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MG5300 series
O43 - CFD: 2015/05/19 19:51:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2010/04/12 22:37:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager
O43 - CFD: 2014/07/30 22:44:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2010/10/12 23:23:14 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
O43 - CFD: 2015/03/07 19:42:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\m4ng
O43 - CFD: 2015/03/07 19:44:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\m4ng_v4
O43 - CFD: 2010/04/13 00:11:50 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/06/07 11:27:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
O43 - CFD: 2010/04/12 22:37:20 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2013/10/08 14:00:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2015/05/16 22:23:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2012/10/22 13:33:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
O43 - CFD: 2014/11/24 18:17:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix
O43 - CFD: 2010/04/12 21:59:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5
O43 - CFD: 2010/04/12 21:58:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8
O43 - CFD: 2010/10/12 23:21:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/06/22 17:44:48 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3
O43 - CFD: 2011/12/15 21:25:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 2011/08/24 21:53:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio
O43 - CFD: 2011/04/01 19:51:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 2015/05/02 09:53:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/06/07 11:26:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2010/04/12 22:42:26 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/09 19:09:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2015/05/02 12:03:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2013/01/20 11:51:36 - [] D -- C:\ProgramData\2349
O43 - CFD: 2015/07/19 13:53:26 - [] D -- C:\ProgramData\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 2015/06/27 14:33:57 - [] D -- C:\ProgramData\abc
O43 - CFD: 2010/10/12 23:27:02 - [] D -- C:\ProgramData\Acer
O43 - CFD: 2014/11/12 22:41:19 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/06/22 16:15:30 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2015/06/22 16:16:29 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/07/18 10:07:28 - [] D -- C:\ProgramData\AppMgr6.32.114078
O43 - CFD: 2014/11/15 20:35:13 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2010/04/12 22:38:46 - [] D -- C:\ProgramData\BackupManager
O43 - CFD: 2012/04/25 18:51:00 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 2011/03/29 11:54:36 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2014/02/25 18:16:10 - [] D -- C:\ProgramData\Canneverbe Limited
O43 - CFD: 2014/04/24 13:14:14 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 2014/11/13 15:34:22 - [0] HD -- C:\ProgramData\CanonEPP
O43 - CFD: 2014/11/17 01:32:23 - [] D -- C:\ProgramData\CanonIJ
O43 - CFD: 2014/11/13 15:34:22 - [0] HD -- C:\ProgramData\CanonIJEPPEX2
O43 - CFD: 2014/11/13 15:33:31 - [] HD -- C:\ProgramData\CanonIJMyPrinter
O43 - CFD: 2014/12/20 00:35:57 - [] D -- C:\ProgramData\CanonIJPLM
O43 - CFD: 2014/11/16 13:23:24 - [] HD -- C:\ProgramData\CanonIJScan
O43 - CFD: 2014/11/13 15:34:28 - [] HD -- C:\ProgramData\CanonIJSolutionMenuEX
O43 - CFD: 2014/11/13 15:20:36 - [] D -- C:\ProgramData\CanonIJWSpt
O43 - CFD: 2010/10/12 23:26:05 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2015/06/22 15:47:22 - [] D -- C:\ProgramData\daCCVrgZoZ
O43 - CFD: 2012/12/11 23:28:04 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2015/03/05 20:23:20 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/01/31 18:57:42 - [] D -- C:\ProgramData\EgisTec IPS
O43 - CFD: 2010/04/12 21:56:14 - [] D -- C:\ProgramData\eSobi
O43 - CFD: 2011/03/29 11:54:36 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/06/27 01:15:06 - [] D -- C:\ProgramData\fkaKoZZDD
O43 - CFD: 2010/04/12 22:04:44 - [] D -- C:\ProgramData\Google
O43 - CFD: 2013/08/20 10:52:47 - [] D -- C:\ProgramData\lx_cats
O43 - CFD: 2014/04/24 18:12:35 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/06/07 11:26:47 - [] D -- C:\ProgramData\McAfee Security Scan
O43 - CFD: 2011/03/29 11:54:36 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/05/01 18:26:28 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/16 03:15:22 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2013/10/08 13:35:07 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2011/03/29 11:54:36 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/03/07 19:20:08 - [] D -- C:\ProgramData\Movavi
O43 - CFD: 2013/05/30 17:27:23 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/07/12 18:25:15 - [] D -- C:\ProgramData\nEFbdK
O43 - CFD: 2015/03/05 19:39:29 - [0] D -- C:\ProgramData\NtiDvdCopy
O43 - CFD: 2010/10/12 23:21:07 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2010/04/12 22:43:48 - [] D -- C:\ProgramData\OberonGameConsole
O43 - CFD: 2011/03/29 11:55:51 - [] D -- C:\ProgramData\OEM
O43 - CFD: 2014/11/15 20:32:35 - [0] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/06/22 18:20:49 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2014/07/28 21:26:09 - [] D -- C:\ProgramData\PC1Data
O43 - CFD: 2015/05/19 20:58:01 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2011/04/17 13:53:01 - [] D -- C:\ProgramData\Sandlot Games
O43 - CFD: 2015/07/18 11:42:55 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2014/07/30 23:54:01 - [] D -- C:\ProgramData\Software
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2011/06/08 20:47:37 - [] D -- C:\ProgramData\Studio-Scrap4
O43 - CFD: 2011/05/14 18:10:10 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2011/06/05 17:06:05 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2012/02/24 11:49:07 - [] HDC -- C:\ProgramData\{B49A644A-1076-4A3D-B124-DAA7862F2318}
O43 - CFD: 2011/05/31 22:47:30 - [] HDC -- C:\ProgramData\{EF2D8223-8F3C-423E-BFA7-5E8BEEA8A6C2}
O43 - CFD: 2015/07/19 13:51:15 - [] D -- C:\Program Files (x86)\Common Files\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 2014/11/12 22:41:49 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014/05/20 17:36:24 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2015/03/05 20:23:08 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 2010/10/12 23:26:14 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2014/11/15 20:32:28 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/07/09 19:09:14 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2010/04/12 22:39:12 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 2010/04/13 00:11:27 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/05/02 09:53:24 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2013/05/31 10:15:45 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2010/10/12 23:29:29 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2010/10/12 23:21:09 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 2014/12/05 17:05:44 - [] D -- C:\Users\Opaline\AppData\Roaming\0V1L2Z2Z1T1I1L1T =>PUP.Optional.InstallCore
O43 - CFD: 2015/07/19 14:09:56 - [] D -- C:\Users\Opaline\AppData\Roaming\609FFAE7-1432058881-DF11-9D44-80BF84BFD971
O43 - CFD: 2011/06/24 15:53:10 - [] D -- C:\Users\Opaline\AppData\Roaming\6500 Series
O43 - CFD: 2014/12/19 15:39:57 - [] D -- C:\Users\Opaline\AppData\Roaming\Adobe
O43 - CFD: 2015/07/19 14:09:58 - [] D -- C:\Users\Opaline\AppData\Roaming\Annoyed Wealth
O43 - CFD: 2015/06/23 17:10:53 - [] D -- C:\Users\Opaline\AppData\Roaming\Apple Computer
O43 - CFD: 2014/11/15 22:23:06 - [] D -- C:\Users\Opaline\AppData\Roaming\AVAST Software
O43 - CFD: 2014/02/25 18:16:10 - [] D -- C:\Users\Opaline\AppData\Roaming\Canneverbe Limited
O43 - CFD: 2014/11/16 13:23:24 - [] D -- C:\Users\Opaline\AppData\Roaming\Canon
O43 - CFD: 2011/03/31 18:28:58 - [] D -- C:\Users\Opaline\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2015/03/12 17:45:51 - [] D -- C:\Users\Opaline\AppData\Roaming\DivX
O43 - CFD: 2014/11/15 22:33:23 - [] D -- C:\Users\Opaline\AppData\Roaming\Dropbox
O43 - CFD: 2013/01/25 19:33:36 - [] D -- C:\Users\Opaline\AppData\Roaming\DVDVideoSoft
O43 - CFD: 2011/10/23 12:27:48 - [] D -- C:\Users\Opaline\AppData\Roaming\EasyBurner
O43 - CFD: 2011/03/29 12:47:08 - [] D -- C:\Users\Opaline\AppData\Roaming\Google
O43 - CFD: 2011/08/24 21:47:11 - [] D -- C:\Users\Opaline\AppData\Roaming\HTML Executable
O43 - CFD: 2011/03/29 11:55:07 - [] D -- C:\Users\Opaline\AppData\Roaming\Identities
O43 - CFD: 2013/07/31 13:26:42 - [] D -- C:\Users\Opaline\AppData\Roaming\Lexmark Productivity Studio
O43 - CFD: 2015/06/25 09:14:57 - [] D -- C:\Users\Opaline\AppData\Roaming\m4ng
O43 - CFD: 2011/03/29 11:55:48 - [] D -- C:\Users\Opaline\AppData\Roaming\Macromedia
O43 - CFD: 2010/04/12 22:42:26 - [0] D -- C:\Users\Opaline\AppData\Roaming\Media Center Programs
O43 - CFD: 2014/11/29 19:23:04 - [] SD -- C:\Users\Opaline\AppData\Roaming\Microsoft
O43 - CFD: 2014/11/24 18:25:04 - [0] D -- C:\Users\Opaline\AppData\Roaming\mkvtoolnix
O43 - CFD: 2011/03/29 13:37:27 - [] D -- C:\Users\Opaline\AppData\Roaming\Mozilla
O43 - CFD: 2011/05/14 18:13:56 - [] D -- C:\Users\Opaline\AppData\Roaming\OpenOffice.org
O43 - CFD: 2015/06/22 15:38:17 - [] D -- C:\Users\Opaline\AppData\Roaming\Opera Software
O43 - CFD: 2015/07/17 10:45:28 - [] D -- C:\Users\Opaline\AppData\Roaming\Optimizer Pro =>PUP.Optional.OptimizerPro
O43 - CFD: 2011/12/15 21:27:57 - [] D -- C:\Users\Opaline\AppData\Roaming\PhotoFiltre
O43 - CFD: 2015/07/18 11:43:29 - [] D -- C:\Users\Opaline\AppData\Roaming\Skype
O43 - CFD: 2011/06/16 17:46:50 - [] D -- C:\Users\Opaline\AppData\Roaming\Studio-Scrap4
O43 - CFD: 2014/10/22 20:46:35 - [] D -- C:\Users\Opaline\AppData\Roaming\TeamViewer
O43 - CFD: 2013/08/02 09:56:23 - [] D -- C:\Users\Opaline\AppData\Roaming\Template
O43 - CFD: 2012/02/18 10:33:52 - [] D -- C:\Users\Opaline\AppData\Roaming\Unity
O43 - CFD: 2011/05/31 22:51:24 - [] D -- C:\Users\Opaline\AppData\Roaming\vlc
O43 - CFD: 2011/12/10 23:45:32 - [] D -- C:\Users\Opaline\AppData\Roaming\Windows Live Writer
O43 - CFD: 2011/03/29 15:37:43 - [] D -- C:\Users\Opaline\AppData\Roaming\WinRAR
O43 - CFD: 2015/07/20 14:15:45 - [] D -- C:\Users\Opaline\AppData\Roaming\ZHP
O43 - CFD: 2014/12/11 14:19:36 - [] D -- C:\Users\Opaline\AppData\Roaming\{3D2B3714-F20B-486C-81A2-1949BAE31CF2}_AZ
O43 - CFD: 2015/07/19 14:05:48 - [] D -- C:\Users\Opaline\AppData\Local\27227
O43 - CFD: 2015/07/19 12:29:22 - [] D -- C:\Users\Opaline\AppData\Local\Adobe
O43 - CFD: 2015/07/20 14:08:04 - [] D -- C:\Users\Opaline\AppData\Local\Apple Computer
O43 - CFD: 2015/07/20 14:13:57 - [] D -- C:\Users\Opaline\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
O43 - CFD: 2015/07/17 11:35:19 - [] D -- C:\Users\Opaline\AppData\Local\EgisTec IPS
O43 - CFD: 2015/07/18 10:36:50 - [] D -- C:\Users\Opaline\AppData\Local\Google
O43 - CFD: 2015/07/20 13:30:05 - [] D -- C:\Users\Opaline\AppData\Local\Macromedia
O43 - CFD: 2015/07/20 01:23:26 - [] D -- C:\Users\Opaline\AppData\Local\Microsoft
O43 - CFD: 2015/07/20 13:29:26 - [] D -- C:\Users\Opaline\AppData\Local\Mozilla
O43 - CFD: 2015/07/17 10:45:31 - [] D -- C:\Users\Opaline\AppData\Local\Opera Software
O43 - CFD: 2015/07/17 11:17:23 - [] D -- C:\Users\Opaline\AppData\Local\Programs
O43 - CFD: 2015/07/18 11:43:07 - [] D -- C:\Users\Opaline\AppData\Local\Skype
O43 - CFD: 2015/07/17 11:18:18 - [] D -- C:\Users\Opaline\AppData\Local\Software
O43 - CFD: 2015/07/20 14:15:59 - [] D -- C:\Users\Opaline\AppData\Local\Temp
O43 - CFD: 2015/07/17 17:50:49 - [] D -- C:\Users\Opaline\AppData\Local\VirtualStore
O43 - CFD: 2015/07/17 18:03:03 - [] D -- C:\Users\Opaline\AppData\Local\Windows Live
O43 - CFD: 2010/04/13 00:11:55 - [] RD -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/18 11:03:19 - [] RD -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/11/24 18:18:48 - [0] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5
O43 - CFD: 2011/04/01 17:43:07 - [] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/01/25 23:01:00 - [] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
O43 - CFD: 2013/06/03 13:51:10 - [] RD -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Images - Raccourci
O43 - CFD: 2015/03/07 19:42:28 - [0] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\m4ng
O43 - CFD: 2015/03/07 19:44:28 - [0] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\m4ng_v4
O43 - CFD: 2010/04/13 00:11:55 - [] RD -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2011/12/15 21:25:13 - [0] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 2015/07/18 11:11:27 - [] RD -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/05/02 12:03:40 - [] D -- C:\Users\Opaline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Liste des pilotes du système (SDL) (O58) (79) - 14s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864]
O58 - SDL:2009/04/07 03:31:08 A . (.LSI Corporation - SoftModem Device Driver.) -- C:\Windows\System32\drivers\agrsm64.sys [1208320]
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904]
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856]
O58 - SDL:2011/02/23 15:57:43 A . (.AVAST Software - avast! Filtering TDI driver.) -- C:\Windows\System32\drivers\aswFW.sys [127320]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [90968]
O58 - SDL:2011/02/23 15:55:13 A . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [31064]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224]
O58 - SDL:2015/07/18 10:33:34 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1048856]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [447944]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [150160]
O58 - SDL:2015/07/18 10:34:08 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [274808]
O58 - SDL:2010/04/07 20:04:22 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2216960]
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848]
O58 - SDL:2009/06/10 22:34:38 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL664.SYS [1311232]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704]
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720]
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480]
O58 - SDL:2014/01/27 08:43:26 A . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\Windows\System32\drivers\cfwids.sys [70592]
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488]
O58 - SDL:2015/05/19 18:32:02 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30352]
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496]
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016]
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232]
O58 - SDL:2010/11/20 15:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720]
O58 - SDL:2009/06/05 03:54:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [408600]
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496]
O58 - SDL:2009/06/10 22:37:05 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [6108416]
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112]
O58 - SDL:2009/06/20 13:35:00 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\Windows\System32\drivers\k57nd60a.sys [317480]
O58 - SDL:2009/06/20 04:09:57 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E62x64.sys [54272]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2014/01/27 08:29:22 A . (.McAfee, Inc. - Access Protection Filter Driver.) -- C:\Windows\System32\drivers\mfeapfk.sys [180272]
O58 - SDL:2014/01/27 08:30:06 A . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\Windows\System32\drivers\mfeavfk.sys [311600]
O58 - SDL:2010/10/13 22:28:54 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\Windows\System32\drivers\mfeclnk.sys [9984]
O58 - SDL:2014/01/27 08:31:34 A . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\Windows\System32\drivers\mfefirek.sys [520696]
O58 - SDL:2014/01/27 08:33:26 A . (.McAfee, Inc. - McAfee Link Driver.) -- C:\Windows\System32\drivers\mfehidk.sys [783864]
O58 - SDL:2010/10/13 22:28:54 A . (.McAfee, Inc. - McAfee Code Analysis Driver.) -- C:\Windows\System32\drivers\mferkdet.sys [94864]
O58 - SDL:2014/01/27 08:37:32 A . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\Windows\System32\drivers\mfewfpk.sys [344688]
O58 - SDL:2009/06/03 04:15:30 A . (.Egis Technology Inc. - PSD Filter Driver.) -- C:\Windows\System32\drivers\mwlPSDFilter.sys [22576]
O58 - SDL:2009/06/03 04:15:30 A . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\mwlPSDNserv.sys [20016]
O58 - SDL:2009/06/03 04:15:30 A . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\mwlPSDVDisk.sys [60464]
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2009/05/06 02:46:08 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [18432]
O58 - SDL:2009/08/21 23:24:04 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [84512]
O58 - SDL:2009/10/03 20:02:06 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11684840]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2009/08/06 03:46:38 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [1974944]
O58 - SDL:2009/06/05 02:46:50 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUStor.sys [216064]
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/07/14 02:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208]
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2009/09/18 06:12:06 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [292912]
O58 - SDL:2009/05/06 02:46:08 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [16896]
O58 - SDL:2011/01/15 18:21:04 A . (.Elaborate Bytes AG - VirtualCloneCD Driver.) -- C:\Windows\System32\drivers\VClone.sys [36352]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (4) - 17s
O61 - LFC: 2015/07/20 13:26:08 A . (..) -- C:\Users\Opaline\Downloads\Firefox Setup Stub 39.0.exe [242904]
O61 - LFC: 2015/07/20 13:10:20 A . (..) -- C:\Users\Opaline\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [333410]
O61 - LFC: 2015/07/20 01:27:26 A . (..) -- C:\Users\Opaline\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin [0]
O61 - LFC: 2015/07/20 10:16:40 A . (..) -- C:\Users\Opaline\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [130783]

---\\ Associations Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (27) - 9s
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.ClearSearchHistoryOnClose", "false"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.CurrentLanguageSelection", "English"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.CurrentNavigationSelection", "Current window"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.DisplayRecentSearches", "true"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.ShowButtonText2", "true"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.UpdateTime", "1408118398977"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.setupExtension", "true"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.userEnable", true); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("HomeTab_18195.global.userID", "5ec55d381d15eff0870830f0acb3ae3b"); =>PUP.Optional.CertifiedToolbar
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("browser.search.searchengine.ptid", "cmi"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("browser.search.searchengine.uid", "HitachiXHTS545050B9A300_100926PBG40617K0LD8VX"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.Clock Hand.asul", "1425576175749"); =>PUP.Optional.ClockHand
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.Clock Hand.aul", "1425576173440"); =>PUP.Optional.ClockHand
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.Clock Hand.irl", true); =>PUP.Optional.ClockHand
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.Clock Hand.is", "isgiwhFR"); =>PUP.Optional.ClockHand
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.Clock Hand.ug", "9E44F606-7A1F-4AE2-A82E-8B133178CFB2"); =>PUP.Optional.ClockHand
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.InfoTrigger.asul", "1408118767675"); =>PUP.Optional.InfoTrigger
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.InfoTrigger.aul", "1408118402029"); =>PUP.Optional.InfoTrigger
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.InfoTrigger.irl", true); =>PUP.Optional.InfoTrigger
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.InfoTrigger.is", "baitFR"); =>PUP.Optional.InfoTrigger
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.InfoTrigger.ug", "4C3E9C6D-7E76-497E-B74D-38AFAF8B7AF1"); =>PUP.Optional.InfoTrigger
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("extensions.RollAround.cg", "a6b047e1-adaf-4d5b-86a6-e4e003d82d2a"); =>PUP.Optional.RollAround
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("plugin.state.npglobalupdateupdate", 0); =>PUP.Optional.GlobalUpdate
O69 - SBI: prefs.js [Opaline - 7erlioac.default-1406753418828] user_pref("wtbg.global.storedbrowserversion", "31.0"); =>PUP.Optional.CrossRider
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCR] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Web Search) - http://search.certified-toolbar.com?si=77302&st=bs&tid=18195&ver=6.7&ts=1408053600000.000000&tguid=77302-18195-1408118222011-BDCC405AA83B36B38CB7081E71F59E28&q={searchTerms} =>PUP.Optional.CertifiedToolbar

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (32) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2603008]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (8) - 2s
O87 - FAEL: "{422C8528-D4A7-4F3E-B81A-20FCAC9D9A46}" [In-None-P6-TRUE] .(.NewTech Infosystems, Inc. - NTI Backup Now 5 SchedulerSvc NT Service.) -- C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{AA4D9122-98EA-4C63-8E74-D610FF5275AF}" [In-None-P6-TRUE] .(.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O87 - FAEL: "{80D91C33-202D-4FD7-83AB-F8BC78CC5557}" [In-None-P17-TRUE] .(.NewTech Infosystems, Inc. - NTI Backup Now 5 SchedulerSvc NT Service.) -- C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{00865F85-A69C-4822-BE04-72D0D0A630A8}" [In-None-P17-TRUE] .(.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O87 - FAEL: "{5F998D97-0AC3-45E5-9330-AE58A086E467}" [In-None-P17-TRUE] .(.Acer Corp. - Acer Arcade Deluxe PlayMovie.) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PlayMovie.exe
O87 - FAEL: "{A36A23B7-22C3-4279-A895-B7DD39D936F8}" [In-None-P17-TRUE] .(.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O87 - FAEL: "{F4D0DE4D-084E-47BE-8C59-5BEB7E74AFBE}" [In-None-P6-TRUE] .(.ABBYY (BIT Software) - FineScanManager.) -- C:\Program Files (x86)\Abbyy FineReader 6.0 Sprint\Scan\ScanMan6.exe
O87 - FAEL: "{4256E864-DBD4-4149-9170-1B0E43E8648E}" [In-None-P17-TRUE] .(.ABBYY (BIT Software) - FineScanManager.) -- C:\Program Files (x86)\Abbyy FineReader 6.0 Sprint\Scan\ScanMan6.exe

---\\ Enumère les codes produits des logiciels (PUC) (O90) (2) - 3s
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate
O90 - PUC: "E8E877ED6825FF148AE54DA13648DD38" . (.Boxore Client.) -- C:\Windows\Installer\{DE778E8E-5286-41FF-A85E-D41A6384DD83}\Boxore.ico =>PUP.Optional.Boxore

---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) (3) - 9s
[MD5.] [WIS][2015/07/12 18:37:55] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\35916a.msi [32768] =>PUP.Optional.GlobalUpdate
[MD5.] [WIS][2012/01/14 18:31:57] (.Aedge Performance BCN SL - InstallShield® 2011 - Professional Edition.) -- C:\Windows\Installer\8c521e2e.msi [4960256] =>PUP.Optional.PCSpeedUp
[MD5.] [WIS][2011/10/23 11:58:14] (.Aedge Performance BCN SL - InstallShield® 2011 - Professional Edition.) -- C:\Windows\Installer\988eec6.msi [6466048] =>PUP.Optional.PCSpeedUp

---\\ Scan Additionnel (O88) (33) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\SW_Updater =>PUP.Optional.StormWarnings
HKLM\SYSTEM\CurrentControlSet\Services\UfockFuloxo =>PUP.Optional.Shopperz
HKLM\SYSTEM\CurrentControlSet\Services\Util Hatchiho =>PUP.Optional.Hatchiho
HKLM\SYSTEM\CurrentControlSet\Services\wsasvc_1.10.0.19 =>PUP.Optional.WordSurfer
C:\Windows\Tasks\Bidaily Synchronize Task[3c32].job =>PUP.Optional.BidailySync
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job =>PUP.Optional.BidailySync
C:\Windows\System32\Tasks\Bidaily Synchronize Task[3c32] =>PUP.Optional.BidailySync
C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] =>PUP.Optional.BidailySync
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{520C2939-555B-40BF-A91B-8B671AB560EB} =>PUP.Optional.PCSpeedUp
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Free Video Grabber 6.6-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut
HKLM\SOFTWARE\Wow6432Node\Plus HD Video 3.1cV16.07-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SmartSaver+ 3-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SpaceSondPro =>PUP.Optional.SpaceSondPro
HKLM\SOFTWARE\Wow6432Node\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick
HKLM\SOFTWARE\Wow6432Node\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKCU\SOFTWARE\CinemaPlus-3.2cV19.05-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV22.06-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Plus HD Video 3.1cV16.07-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\spacesoundpro =>PUP.Optional.SpaceSondPro
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
C:\Users\Opaline\AppData\Roaming\0V1L2Z2Z1T1I1L1T =>PUP.Optional.InstallCore
C:\Users\Opaline\AppData\Roaming\Optimizer Pro =>PUP.Optional.OptimizerPro
C:\Users\Opaline\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
C:\Windows\Installer\{DE778E8E-5286-41FF-A85E-D41A6384DD83}\Boxore.ico =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\E8E877ED6825FF148AE54DA13648DD38 =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Features\E8E877ED6825FF148AE54DA13648DD38 =>PUP.Optional.Boxore
C:\Windows\Installer\35916a.msi =>PUP.Optional.GlobalUpdate
C:\Windows\Installer\8c521e2e.msi =>PUP.Optional.PCSpeedUp
C:\Windows\Installer\988eec6.msi =>PUP.Optional.PCSpeedUp

---\\ Récapitulatif des éléments trouvées sur votre station (27) - 0s
http://www.nicolascoolman.fr/blog =>PUP.Optional.Shopperz
http://www.nicolascoolman.fr/blog =>PUP.Optional.OnStage
http://www.nicolascoolman.fr/blog =>PUP.Optional.BubbleSound
http://www.nicolascoolman.fr/blog =>PUP.Optional.SpaceSondPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.WindeskWinsearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.StormWarnings
http://www.nicolascoolman.fr/blog =>PUP.Optional.Hatchiho
http://www.nicolascoolman.fr/blog =>PUP.Optional.WordSurfer
http://www.nicolascoolman.fr/blog =>PUP.Optional.BidailySync
http://www.nicolascoolman.fr/rogue-pcspeedup/ =>PUP.Optional.PCSpeedUp
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/blog =>PUP.Optional.Infonaut
http://www.nicolascoolman.fr/pup-superClick/ =>PUP.Optional.SuperClick
http://www.nicolascoolman.fr/pup-wordshark/ =>PUP.Optional.WordShark
http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare
http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxComputerCleaner
http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore
http://www.nicolascoolman.fr/pup-optimizerpro/ =>PUP.Optional.OptimizerPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.BreakingNewsAlert
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/blog =>PUP.Optional.ClockHand
http://www.nicolascoolman.fr/pup-infotrigger/ =>PUP.Optional.InfoTrigger
http://www.nicolascoolman.fr/blog =>PUP.Optional.RollAround
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore

~ End of the scan, 37992 items in 156 seconds (1010)(0)()

Publicité


Signaler le contenu de ce document

Publicité