cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.22.99 Par Nicolas Coolman (2015/07/22)
~ Démarré par Aumia_000 (Administrator) (2015/07/22 17:32:59)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Aumia_000\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Aumia_000\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 8, 64-bit (Build 9200)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v43.0.2357.134
MFIE: Mozilla Firefox 39.0 (x86 fr) v39.0
MSIE: Internet Explorer v10.0.9200.17377

---\\ Informations sur les produits Windows (4) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 1s
Avast Internet Security v10.2.2218
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.07

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 6181.14 MB (65% free)
~ System Restore: Activé (Enable)
~ System drive C: has 619 GB free of 928 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: FAMILLEPC
~ User Name: Aumia_000
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 619 GB free of 928 GB (System)
~ Drive D: has 2 GB free of 24 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.0E8E6463F81C80AFBED533E0F1F8895D] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2391280]
[MD5.3A6209AC494296C24C2065CB4392B5F4] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [51712]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [132608]
[MD5.5F448285F3C91222B670D4130A101B08] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2237440]
[MD5.75DD70A14145499C9F7D903CF9A8C91B] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [578048]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [273408]
[MD5.65AA2DE8787146679BB8A7D14BFFB6A3] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [18944]
[MD5.FE7FB9612D354EB41DF4F0FF5D6FB259] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [576512]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080]
[MD5.431141C6859990824D17F71C30A78728] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [118784]
[MD5.58CC013EFA9893057160EDA018D8ADCE] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [145920]
[MD5.14EE56050E1637926F5CFA65B1F4209B] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [404480]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [331776]
[MD5.7BE3EDFFA3216F989A6BDCB14795DD08] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [1939288]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [117248]
[MD5.AA37946941ED3805AB3A924965907147] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [328000]

---\\ Processus lancés (28) - 1s
[MD5.BD1FB001FB20900510F1B0D1302566F7] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [241152] [PID.1000]
[MD5.4B1B82A452FCF74F74069912E482AC1D] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [562688] [PID.1124]
[MD5.7CC532832D925390BC27AF6B97CAE63C] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [245832] [PID.1272]
[MD5.F66CE44D86EA704B31BED2BF2BEDDF75] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232] [PID.1292]
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1516]
[MD5.C569E7F268C43D6C9C4D74EE2F06CCD8] - (.Avast Software s.r.o. - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [107448] [PID.1808]
[MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.1932]
[MD5.218125F7D1793BEEA18749D75CFDE161] - (.CyberLink - CyberLink Media Server Monitor Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576] [PID.2292]
[MD5.0E7A0FCDAE3119183083025CE50C6FEA] - (.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [294664] [PID.2328]
[MD5.98384182AC896D4F660B60F9D69412AF] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3053808] [PID.2856]
[MD5.C6128F2E3DC6156C6F8828F9F1B96010] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160] [PID.2280]
[MD5.D6BF6FD055BD719F3D62E51B90857159] - (.LogMeIn, Inc. - LMIGuardianSvc.) -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552] [PID.3012]
[MD5.D15E0392E1CF790CDD54609DACAEF271] - (.Copyright © 2013 - TBear.Maintenance.) -- C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe [34752] [PID.3228]
[MD5.03CABA844BC03C99DB84146BF51A9259] - (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2490216] [PID.3292]
[MD5.F4A755E3A99F4F2324FC2138D30F01B4] - (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3978600] [PID.3688]
[MD5.F5D595BBAC654CD391E824043F7FEDFB] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110144] [PID.3652]
[MD5.971E5F226E0B144FB63B1F52AF8FE112] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [183024] [PID.4968]
[MD5.83A17CFF2CF0E9E02B342F52B5F1EF6C] - (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Users\Lounes\Downloads\runtime\jre-x64\1.8.0_25\bin\java.exe [190888] [PID.5292]
[MD5.4B1B82A452FCF74F74069912E482AC1D] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [562688] [PID.5196]
[MD5.98384182AC896D4F660B60F9D69412AF] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3053808] [PID.1840]
[MD5.F66CE44D86EA704B31BED2BF2BEDDF75] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232] [PID.2512]
[MD5.971E5F226E0B144FB63B1F52AF8FE112] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [183024] [PID.1424]
[MD5.CB982A2B4A6DC990BE40498E37344FB9] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188552] [PID.5860]
[MD5.A4C34F9AAE33EC99D8ED5299F856C9D8] - (.CyberLink Corp. - CyberLink YouCam Service.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [267224] [PID.3208]
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.4852]
[MD5.4F9DD96AECDC12373D4203253D665C6D] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.4580]
[MD5.1E09DFA4048196C9D3CC40C485A39422] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.6736]
[MD5.74CDE657245C114B98816E89B8D4CCD1] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299008] [PID.6612]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (21) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.googleapis.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.nicolascoolman.fr/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://zhpdiag/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.googleusercontent.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com/
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [iikflkcanblccfahdhdonehdalibjnif] Norton Identity Safe
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (14) - 4s
P2 - EXT FILE: (...) -- C:\Users\Aumia_000\AppData\Roaming\Mozilla\Firefox\Profiles\b9gasywb.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.51.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.51.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (20) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 0s
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)
O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} (Orphean)

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA003A050000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (21) - 1s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [AccelerometerSysTrayApplet] . (.Hewlett-Packard Company - Hp Accelerometer System Tray.) -- C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Wow6432Node\Run: [YouCam Service] . (.CyberLink Corp. - CyberLink YouCam Service.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
O4 - HKLM\..\Wow6432Node\Run: [LogMeIn Hamachi Ui] . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\RunOnce: [Nohotelah] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\SysWOW64\wscript.exe
O4 - HKUS\S-1-5-21-1373204777-3586795135-4284751383-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-1373204777-3586795135-4284751383-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKUS\S-1-5-21-1373204777-3586795135-4284751383-1001\..\Run: [TunnelBear] . (.TunnelBear - TunnelBear.) -- C:\Program Files (x86)\TunnelBear\TBear.Client.exe
O4 - HKUS\S-1-5-21-1373204777-3586795135-4284751383-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKUS\S-1-5-21-1373204777-3586795135-4284751383-1001\..\Run: [ManyCam] . (.ManyCam LLC - ManyCam Virtual Webcam.) -- C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe

---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = C1-LINE.COM
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = C1-LINE.COM

---\\ Liste des services NT non Microsoft et non désactivés (O23) (26) - 2s
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) . (.Avast Software s.r.o. - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation - Bluetooth Application.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink - CyberLink Media Server Monitor Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink - CyberLink Media Server Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: @oem24.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\WINDOWS\system32\Hpservice.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - SolutionsFrameworkService.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: TunnelBear Maintenance (TunnelBearMaintenance) . (.Copyright © 2013 - TBear.Maintenance.) - C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

---\\ Enumère les données de BootExecute (BEX) (O34) (1) - 0s
O34 - HKLM BootExecute: (sdnclean64.exe) - File not found

---\\ Tâches planifiées en automatique (O39) (12) - 3s
O39 - APT: - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1092]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1096]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [4182]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2794]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8 [3160]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\CLVDLauncher [3160]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3832]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4068]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\HP AR Program Upload - 2ed42dfbf37e4f3c97dcd8025d8fb7a7892a65e4d5444652a9c7a13200961f0f [3550]
O39 - APT: - (...) -- C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements [2990]

---\\ Logiciels installés (O42) (100) - 10s
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: SecurityKISS Tunnel v0.3.0 - (...) [HKLM][64Bits] -- SecurityKISS Tunnel_is1
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: TAP-Windows 9.9.2 - (...) [HKLM][64Bits] -- TAP-Windows
O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}
O42 - Logiciel: 7-Zip 9.22 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0922-000001000000}
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2540 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {3330B490-86DE-4E57-AE3A-14AECC0ACC52}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140}
O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: DisableMSDefender - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {7847389E-CCC3-11E4-A1C2-F04DA23A5C58}
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {7DB991C0-CCC3-11E4-9D40-F04DA23A5C58}
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {9329FB02-864A-0B4D-B98E-EDECF804F22B}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {93F2A022-6C37-48B8-B241-FFABD9F60C30}
O42 - Logiciel: HP Utility Center - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {A48BD764-CFDF-40A5-A07A-710908044F5D}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {C4123106-B685-48E6-B9BD-E4F911841EB4}
O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C}
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D7B824DE-DA32-4772-9E5E-39C5158136A7}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {E83FDB2A-C81C-403D-8FD3-A816A89AF80C}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {FA00A3CC-7440-4938-A271-F186F50DD40D}
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player
O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM][64Bits] -- Avast
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net
O42 - Logiciel: FileZilla Client 3.12.0 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: Cyberlink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- LogMeIn Hamachi
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: ManyCam 2.6.55 (remove only) - (.ManyCam LLC.) [HKLM][64Bits] -- ManyCam
O42 - Logiciel: Action! - (.Mirillis.) [HKLM][64Bits] -- Mirillis Action!
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: SpeedFan (remove only) - (...) [HKLM][64Bits] -- SpeedFan
O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam
O42 - Logiciel: Garry's Mod - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 4000
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client
O42 - Logiciel: Yahoo Search Set - (.Yahoo Inc..) [HKLM][64Bits] -- Yahoo! SearchSet
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: Minecraft - (.Mojang.) [HKLM][64Bits] -- {1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}
O42 - Logiciel: HP System Event Utility - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {1C5BBAD8-4079-4014-8803-751333FBC112}
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0}
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {28129194-A7E2-46BC-88EA-2D1EE48663F3}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: Cyberlink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {39337565-330E-4ab6-A9AE-AC81E0720B10}
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090}
O42 - Logiciel: LibreOffice 4.4.1.2 - (.The Document Foundation.) [HKLM][64Bits] -- {4A754DA6-6E12-40AF-BAF0-B7D60C6BE005}
O42 - Logiciel: HP CoolSense - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {59F8C5AA-91BD-423D-BF05-09A80F39898F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {61245005-66F1-4001-AEE8-2E2D36F65C28}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: OEM Application Profile - (.Nom de votre société.) [HKLM][64Bits] -- {70D5F822-F4C4-33D9-7EEC-2A4AF4EA7BDC}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- {80EE9168-BB59-4F87-BF1A-57C137EAF714}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: Ralink RT3290 802.11bgn Wi-Fi Adapter - (.Mediatek.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE}
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE}
O42 - Logiciel: osu! - (.ppy Pty Ltd.) [HKLM][64Bits] -- {93df5898-b22b-4a6e-8e87-782fbcdf5459}
O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {941DE69D-6CEE-4171-8F1F-3D7E352AA498}
O42 - Logiciel: HP 3D DriveGuard - (.Nom de votre société.) [HKLM][64Bits] -- {AE2F1669-5B1F-47C5-B639-78D74DD0BCE4}
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {AFA1153A-F547-409B-B837-3A0D6C5A3FEC}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A}
O42 - Logiciel: HP Quick Start - (.Hewlett-Packard.) [HKLM][64Bits] -- {B9494F9E-5EA9-4C70-9F38-659F5E6C0BF3}
O42 - Logiciel: TunnelBear - (.TunnelBear.) [HKLM][64Bits] -- {C25B092B-C340-43B9-8065-650DC8BABF1F}
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {C88F84E5-AE23-44BD-922C-2ABEACACAF7A}
O42 - Logiciel: Adobe Photoshop CC 2014 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D7A4F897-B20A-42D0-862D-CB5F6DB7391D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: TunnelBear - (.TunnelBear.) [HKLM][64Bits] -- {e0f2a0a0-0c9a-4732-b06a-c7b175d785d5}
O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {E849965E-4771-440C-936F-AF5BFD144416}
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F0A8BF4A-972F-41E0-9800-1EFE3BF28266}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC3C2B77-6800-48C6-A15D-9D1031130C16}
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
O42 - Logiciel: HP Connected Music (Meridian - player) - (.Meridian Audio Ltd.) [HKCU][64Bits] -- HPConnectedMusic

---\\ HKCU & HKLM Software Keys (82) - 10s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Avg
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\BSPACode
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\CyberGhost
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\FileZilla 3
HKLM\SOFTWARE\Wow6432Node\FileZilla Client
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Insyde
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\IVTUPDATE
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\LibreOffice
HKLM\SOFTWARE\Wow6432Node\LogMeIn Hamachi
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\ManyCam
HKLM\SOFTWARE\Wow6432Node\Mojang
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OldTimer Tools
HKLM\SOFTWARE\Wow6432Node\Ralink
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\SpeedFan
HKLM\SOFTWARE\Wow6432Node\SymNRT
HKLM\SOFTWARE\Wow6432Node\TeamSpeak 3 Client
HKLM\SOFTWARE\Wow6432Node\The Document Foundation
HKLM\SOFTWARE\Wow6432Node\TunnelBear
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\Yahoo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Visicom Media
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (197) - 9s
O43 - CFD: 2015/02/25 19:07:32 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/02/24 20:45:28 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2013/10/04 19:53:24 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 2015/06/29 21:13:43 - [] D -- C:\Program Files (x86)\Battle.net
O43 - CFD: 2013/10/04 19:54:27 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 2015/07/22 07:40:56 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2013/10/04 20:24:12 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/07/22 07:40:56 - [] D -- C:\Program Files (x86)\FileZilla FTP Client
O43 - CFD: 2015/01/31 22:15:45 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/06/16 11:49:56 - [] D -- C:\Program Files (x86)\Hearthstone
O43 - CFD: 2013/10/04 20:29:06 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 2015/05/07 18:31:54 - [] D -- C:\Program Files (x86)\Hp
O43 - CFD: 2013/07/23 21:51:41 - [] D -- C:\Program Files (x86)\HPConnectedMusic
O43 - CFD: 2013/10/04 20:24:09 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2013/10/04 19:50:56 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/06/15 16:47:37 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/06/21 20:24:50 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2015/07/20 21:41:08 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/03/08 19:05:07 - [] D -- C:\Program Files (x86)\LibreOffice 4
O43 - CFD: 2015/05/23 15:45:50 - [] D -- C:\Program Files (x86)\LogMeIn Hamachi
O43 - CFD: 2015/07/22 07:40:55 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2015/07/17 14:26:27 - [] D -- C:\Program Files (x86)\ManyCam
O43 - CFD: 2013/07/23 21:43:17 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2013/07/23 21:47:38 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 2013/07/23 21:48:29 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2015/01/20 20:34:09 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/06/03 16:29:28 - [] D -- C:\Program Files (x86)\Minecraft
O43 - CFD: 2015/01/12 17:25:12 - [] D -- C:\Program Files (x86)\Mirillis
O43 - CFD: 2015/07/09 14:09:59 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/09 14:09:59 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2012/08/04 00:37:58 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/07/09 14:49:26 - [] D -- C:\Program Files (x86)\NortonInstaller
O43 - CFD: 2015/01/03 00:56:20 - [] RD -- C:\Program Files (x86)\Online Services
O43 - CFD: 2015/06/01 18:02:14 - [] D -- C:\Program Files (x86)\Ralink Corporation
O43 - CFD: 2015/06/01 18:02:01 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2012/08/04 00:37:58 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/07/09 14:31:49 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/05/11 17:03:20 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 2015/06/15 21:38:28 - [] D -- C:\Program Files (x86)\SpeedFan
O43 - CFD: 2015/07/10 06:39:23 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2013/10/04 20:27:28 - [] D -- C:\Program Files (x86)\SymSilent
O43 - CFD: 2015/02/10 19:02:01 - [] D -- C:\Program Files (x86)\TeamSpeak 3 Client
O43 - CFD: 2015/06/01 18:02:47 - [] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2015/07/22 17:06:44 - [] D -- C:\Program Files (x86)\TunnelBear
O43 - CFD: 2015/06/03 16:04:46 - [] D -- C:\Program Files (x86)\WildTangent Games
O43 - CFD: 2015/03/14 12:56:21 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2013/07/23 21:48:27 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2015/01/05 17:58:33 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/01/05 17:58:32 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2012/07/26 10:13:01 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2012/07/26 10:12:59 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/01/09 19:26:54 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2012/07/26 10:13:01 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2012/07/26 10:12:59 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/20 21:42:17 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 2015/07/22 07:40:55 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 2015/06/21 17:16:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 2012/07/26 10:13:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/01/09 19:28:29 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/01/09 19:25:54 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/03 12:40:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2015/01/03 19:47:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 2013/10/04 19:53:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 2015/07/10 06:20:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/01/03 00:55:57 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
O43 - CFD: 2015/07/22 07:40:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 2013/07/23 22:02:06 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/01/31 22:15:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/06/02 16:48:50 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
O43 - CFD: 2015/05/07 18:32:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2015/01/03 00:55:57 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 2015/06/21 20:25:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2015/07/22 07:40:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/03/08 19:05:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.4
O43 - CFD: 2015/05/23 15:45:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
O43 - CFD: 2012/07/26 10:13:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/22 07:40:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/01/20 20:29:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2015/06/03 16:21:10 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
O43 - CFD: 2015/01/12 17:25:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis
O43 - CFD: 2015/01/03 00:55:57 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
O43 - CFD: 2015/01/03 00:55:59 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
O43 - CFD: 2015/01/03 00:55:59 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
O43 - CFD: 2015/06/27 15:05:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SecurityKISS Tunnel
O43 - CFD: 2015/01/03 00:55:59 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services
O43 - CFD: 2015/04/23 21:39:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/05/11 17:04:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 2015/07/09 14:40:16 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/05/22 21:06:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2013/07/24 06:41:59 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2012/07/26 09:52:57 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/02/10 19:02:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 2015/06/27 15:10:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TunnelBear
O43 - CFD: 2015/07/22 07:40:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2015/02/25 19:39:00 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/02/24 20:45:26 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2015/02/24 20:46:13 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2012/07/26 09:22:08 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2013/10/04 20:39:24 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2015/06/01 10:10:07 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2015/01/03 19:43:48 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 2015/01/03 19:47:27 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2015/01/03 00:50:21 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/06/21 17:14:50 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2015/07/17 14:27:40 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2012/07/26 09:22:08 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2012/07/26 09:22:08 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/06/21 20:25:16 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 2013/10/04 20:29:07 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 2015/05/07 18:31:57 - [] D -- C:\ProgramData\HP
O43 - CFD: 2013/10/04 20:24:08 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 2013/10/04 19:53:35 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/05/23 15:46:52 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 2015/05/30 17:04:23 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/01/03 00:50:22 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/06/21 17:15:33 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 2015/06/01 18:16:33 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/07/23 21:47:27 - [] D -- C:\ProgramData\Microsoft SkyDrive
O43 - CFD: 2015/01/12 17:25:34 - [] D -- C:\ProgramData\Mirillis
O43 - CFD: 2015/01/03 00:50:22 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/01/03 12:14:01 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/01/03 00:54:24 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2015/07/09 14:43:26 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2015/07/20 21:42:27 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/06/27 15:10:45 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2012/08/04 00:29:07 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2015/06/01 18:02:22 - [] D -- C:\ProgramData\Ralink Bluetooth Stack
O43 - CFD: 2013/10/04 19:53:53 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 2015/04/24 13:39:58 - [0] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 2015/07/21 13:14:40 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/07/22 00:11:51 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 2015/07/09 14:31:42 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/05/11 17:03:20 - [] D -- C:\ProgramData\Sony
O43 - CFD: 2012/07/26 09:22:08 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/01/03 12:13:33 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/10/04 20:02:36 - [] D -- C:\ProgramData\Synaptics
O43 - CFD: 2013/10/04 20:24:10 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2012/07/26 09:22:08 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/06/03 16:04:43 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2013/07/23 21:52:57 - [] D -- C:\ProgramData\{4A268D42-77A5-4E91-AE73-470ED3BD9CA8}
O43 - CFD: 2015/02/25 19:41:07 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/02/24 20:44:29 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2013/10/04 20:16:53 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2015/07/22 07:40:56 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2013/10/04 19:45:58 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2013/10/04 19:53:52 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 2015/07/20 21:40:14 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/01/20 20:34:24 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2013/10/04 20:25:01 - [] D -- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 2013/10/04 19:43:31 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2012/07/26 10:13:01 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/01/03 12:40:00 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/05/23 11:03:33 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/01/05 17:58:31 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2013/07/23 21:47:17 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2015/03/01 22:39:47 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Adobe
O43 - CFD: 2015/03/01 22:39:39 - [0] D -- C:\Users\Aumia_000\AppData\Roaming\Apple Computer
O43 - CFD: 2015/01/03 09:43:25 - [] D -- C:\Users\Aumia_000\AppData\Roaming\ATI
O43 - CFD: 2015/06/08 21:41:52 - [] D -- C:\Users\Aumia_000\AppData\Roaming\AVAST Software
O43 - CFD: 2015/06/15 22:27:15 - [] D -- C:\Users\Aumia_000\AppData\Roaming\FileZilla Server
O43 - CFD: 2015/01/03 09:53:55 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Hewlett-Packard
O43 - CFD: 2015/01/03 09:41:33 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Identities
O43 - CFD: 2015/01/03 09:43:10 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Macromedia
O43 - CFD: 2015/04/01 07:37:33 - [] SD -- C:\Users\Aumia_000\AppData\Roaming\Microsoft
O43 - CFD: 2015/01/24 00:38:29 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Mozilla
O43 - CFD: 2015/05/09 23:02:29 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Skype
O43 - CFD: 2015/01/03 09:41:24 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Synaptics
O43 - CFD: 2015/07/22 17:33:18 - [] D -- C:\Users\Aumia_000\AppData\Roaming\ZHP
O43 - CFD: 2015/03/01 22:39:45 - [] D -- C:\Users\Aumia_000\AppData\Local\Adobe
O43 - CFD: 2015/07/09 20:51:01 - [] D -- C:\Users\Aumia_000\AppData\Local\Apple
O43 - CFD: 2015/01/03 00:48:13 - [0] SHD -- C:\Users\Aumia_000\AppData\Local\Application Data
O43 - CFD: 2015/01/03 09:43:25 - [] D -- C:\Users\Aumia_000\AppData\Local\ATI
O43 - CFD: 2015/07/22 17:10:06 - [] D -- C:\Users\Aumia_000\AppData\Local\CrashDumps
O43 - CFD: 2015/01/03 09:42:58 - [] D -- C:\Users\Aumia_000\AppData\Local\CyberLink
O43 - CFD: 2015/07/11 20:18:54 - [] D -- C:\Users\Aumia_000\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/02/12 22:21:31 - [] D -- C:\Users\Aumia_000\AppData\Local\Google
O43 - CFD: 2015/01/03 09:42:16 - [] D -- C:\Users\Aumia_000\AppData\Local\Hewlett-Packard
O43 - CFD: 2015/01/03 00:48:13 - [0] SHD -- C:\Users\Aumia_000\AppData\Local\Historique
O43 - CFD: 2015/03/17 22:26:43 - [0] D -- C:\Users\Aumia_000\AppData\Local\HP Quick Start
O43 - CFD: 2015/04/01 10:28:13 - [] D -- C:\Users\Aumia_000\AppData\Local\HPConnectedMusic
O43 - CFD: 2015/05/23 23:19:37 - [] D -- C:\Users\Aumia_000\AppData\Local\LogMeIn
O43 - CFD: 2015/07/09 16:21:55 - [] D -- C:\Users\Aumia_000\AppData\Local\LogMeIn Hamachi
O43 - CFD: 2015/04/01 07:37:33 - [] D -- C:\Users\Aumia_000\AppData\Local\Macromedia
O43 - CFD: 2015/06/15 22:26:49 - [] D -- C:\Users\Aumia_000\AppData\Local\Microsoft
O43 - CFD: 2015/01/24 00:38:30 - [] D -- C:\Users\Aumia_000\AppData\Local\Mozilla
O43 - CFD: 2015/07/11 20:22:22 - [] D -- C:\Users\Aumia_000\AppData\Local\Packages
O43 - CFD: 2015/01/03 09:40:24 - [] D -- C:\Users\Aumia_000\AppData\Local\Power2Go8
O43 - CFD: 2015/03/17 22:34:33 - [] D -- C:\Users\Aumia_000\AppData\Local\Skype
O43 - CFD: 2015/07/22 17:32:59 - [] D -- C:\Users\Aumia_000\AppData\Local\Temp
O43 - CFD: 2015/01/03 00:48:13 - [0] SHD -- C:\Users\Aumia_000\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/01/03 09:39:37 - [0] D -- C:\Users\Aumia_000\AppData\Local\VirtualStore
O43 - CFD: 2012/07/26 10:13:00 - [] RD -- C:\Users\Aumia_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2012/07/26 10:13:00 - [] RD -- C:\Users\Aumia_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/17 22:23:22 - [] RD -- C:\Users\Aumia_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2012/07/26 10:13:00 - [] D -- C:\Users\Aumia_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/03/17 22:23:20 - [] RD -- C:\Users\Aumia_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/07/24 06:40:21 - [] RD -- C:\Users\Aumia_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

---\\ Liste des pilotes du système (SDL) (O58) (76) - 8s
O58 - SDL:2012/07/26 07:00:49 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [106736]
O58 - SDL:2013/03/01 15:40:02 A . (.Hewlett-Packard - HP Accelerometer.) -- C:\WINDOWS\System32\drivers\Accelerometer.sys [43320]
O58 - SDL:2012/07/26 07:00:49 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\WINDOWS\System32\drivers\adp94xx.sys [492272]
O58 - SDL:2012/07/26 07:00:48 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\WINDOWS\System32\drivers\adpahci.sys [340720]
O58 - SDL:2012/07/26 07:00:49 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\WINDOWS\System32\drivers\adpu320.sys [184048]
O58 - SDL:2013/04/10 16:19:54 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [35936]
O58 - SDL:2012/07/26 07:00:49 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [76016]
O58 - SDL:2012/07/26 07:00:49 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [258288]
O58 - SDL:2012/07/26 07:00:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26352]
O58 - SDL:2012/07/26 07:00:49 A . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\WINDOWS\System32\drivers\arc.sys [104688]
O58 - SDL:2012/07/26 07:00:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [108272]
O58 - SDL:2015/06/01 10:19:30 A . (...) -- C:\WINDOWS\System32\drivers\aswHwid.sys [29168]
O58 - SDL:2015/07/03 12:39:29 A . (.Avast Software s.r.o. - avast! Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [28144]
O58 - SDL:2015/06/01 10:19:30 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [89944]
O58 - SDL:2015/07/03 12:39:22 A . (.Avast Software s.r.o. - avast! Filtering NDIS driver.) -- C:\WINDOWS\System32\drivers\aswNdisFlt.sys [449896]
O58 - SDL:2015/06/01 10:19:29 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [93528]
O58 - SDL:2015/06/01 10:19:30 A . (...) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [65736]
O58 - SDL:2015/06/01 10:19:06 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1047320]
O58 - SDL:2015/06/26 18:13:29 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [442264]
O58 - SDL:2015/06/01 10:19:31 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [137288]
O58 - SDL:2015/06/01 10:19:30 A . (...) -- C:\WINDOWS\System32\drivers\aswVmm.sys [272248]
O58 - SDL:2013/05/19 02:20:10 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [11666432]
O58 - SDL:2013/05/19 00:29:04 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [581120]
O58 - SDL:2012/12/19 21:57:44 A . (.IVT Corporation - Bluelet Audio Adapter Driver.) -- C:\WINDOWS\System32\drivers\blueletaudio.sys [33968]
O58 - SDL:2012/06/15 11:22:02 A . (.IVT Corporation - Bluetooth Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\BtAudioBus.sys [23136]
O58 - SDL:2013/04/26 18:18:00 A . (.Ralink Corporation - Bluetooth L2CAP_SCO Interface Profile Drive.) -- C:\WINDOWS\System32\drivers\BtL2caScoIf.sys [54064]
O58 - SDL:2013/07/24 06:18:36 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533224]
O58 - SDL:2013/03/05 12:01:42 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [91712]
O58 - SDL:2013/03/05 08:22:20 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\WINDOWS\System32\drivers\clwvd.sys [41408]
O58 - SDL:2013/07/24 06:18:36 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3265256]
O58 - SDL:2012/10/03 17:14:56 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2015/03/30 15:28:52 AH . (.LogMeIn Inc. - LogMeIn Hamachi Virtual Miniport Driver.) -- C:\WINDOWS\System32\drivers\Hamdrv.sys [44296]
O58 - SDL:2012/07/13 04:56:32 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784]
O58 - SDL:2013/03/01 15:40:02 A . (.Hewlett-Packard - HP Disk Filter - SATA/RAID.) -- C:\WINDOWS\System32\drivers\hpdskflt.sys [30520]
O58 - SDL:2012/07/26 07:00:52 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64752]
O58 - SDL:2013/04/30 22:25:00 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [677360]
O58 - SDL:2012/07/26 07:00:52 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [411888]
O58 - SDL:2013/06/28 19:40:18 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4444352]
O58 - SDL:2012/07/26 07:00:52 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\WINDOWS\System32\drivers\iirsp.sys [45296]
O58 - SDL:2013/05/22 17:58:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [452088]
O58 - SDL:2013/03/25 11:03:44 A . (.Ralink Corporation - Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\IvtUrbBtFlt.sys [49584]
O58 - SDL:2012/07/26 07:00:52 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108784]
O58 - SDL:2012/07/26 07:00:52 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [92400]
O58 - SDL:2012/07/26 07:00:52 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_scsi.sys [116976]
O58 - SDL:2012/07/26 07:00:52 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [81136]
O58 - SDL:2008/03/13 09:46:00 A . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture D.) -- C:\WINDOWS\System32\drivers\ManyCam_x64.sys [27136]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/07/20 15:53:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2012/07/26 07:00:52 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [51952]
O58 - SDL:2012/07/26 07:00:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\MegaSR.sys [353008]
O58 - SDL:2012/07/26 07:00:55 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [64240]
O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216]
O58 - SDL:2013/12/04 12:02:30 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2505904]
O58 - SDL:2012/07/26 07:00:55 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\WINDOWS\System32\drivers\nfrd960.sys [52464]
O58 - SDL:2012/07/26 07:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150256]
O58 - SDL:2012/07/26 07:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168176]
O58 - SDL:2013/04/10 21:09:50 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [801864]
O58 - SDL:2013/05/29 08:37:16 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3432776]
O58 - SDL:2013/05/16 21:29:20 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [288840]
O58 - SDL:2013/05/09 01:35:40 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [408136]
O58 - SDL:2012/07/26 10:11:43 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040]
O58 - SDL:2012/07/26 07:00:55 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44784]
O58 - SDL:2012/07/26 07:00:56 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81648]
O58 - SDL:2013/04/24 11:16:18 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [29424]
O58 - SDL:2013/04/24 11:16:20 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [33008]
O58 - SDL:2012/07/26 07:00:55 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [30960]
O58 - SDL:2013/04/24 11:16:22 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [495856]
O58 - SDL:2015/04/28 13:08:10 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656]
O58 - SDL:2013/08/03 08:06:00 A . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [31232]
O58 - SDL:2015/07/22 13:58:24 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [37624]
O58 - SDL:2014/08/15 23:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784]
O58 - SDL:2012/07/26 07:00:58 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19184]
O58 - SDL:2012/07/26 07:00:58 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [164080]
O58 - SDL:2012/07/26 07:00:58 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [322800]
O58 - SDL:2012/08/31 09:40:24 A . (.Hewlett-Packard Development Company, L.P. - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (2) - 9s
O61 - LFC: 2015/07/22 17:31:45 A . (..) -- C:\Users\Aumia_000\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/07/22 17:32:46 A . (..) -- C:\Users\Aumia_000\AppData\Local\ATI\ACE\Manifest.Bin [28349]

---\\ Associations Shell Spawning (O67) (1) - 1s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 4s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (34) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [204288]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [149504]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [149504]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [305664]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1366016]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1160192]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [99840]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [358400]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [62976]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [438784]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [305664]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3286016]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [826368]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [894464]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151552]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [105472]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1287680]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [219648]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [80896]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134144]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [210432]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [291328]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [97792]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [190976]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1964544]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [47104]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [207872]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [161792]
O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\WINDOWS\System32\SystemEventsBrokerServer.dll [180224]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (28) - 3s
O87 - FAEL: "{A0D5D74C-BF89-486D-B9AE-76FD3BF7CBF4}" [Out-None-P6-TRUE] .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
O87 - FAEL: "{1F9BAADD-3D5A-4B05-8905-136B8D495FDB}" [In-None-P6-TRUE] .(.Meridian Audio Ltd - HP Connected Music.) -- C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
O87 - FAEL: "{C96732E7-BBE1-4CF0-815A-B9B9438A916B}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
O87 - FAEL: "{BAE6D974-8114-4744-BE56-666A2D406987}" [In-None-P17-TRUE] .(.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
O87 - FAEL: "{1201F330-FAAD-424F-810B-3747546ADF19}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
O87 - FAEL: "{7FC16D5E-5BBA-4E5C-8715-662D835D4407}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
O87 - FAEL: "{B846F9B1-22F3-4D99-9C07-A5D855F7812A}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDirector 10.) -- C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
O87 - FAEL: "{CB7752B7-AED4-4F05-9463-FBBA5A95C041}" [In-None-P6-TRUE] .(.Blizzard Entertainment - Blizzard File Switcher.) -- C:\Program Files (x86)\Battle.net\Battle.net.exe
O87 - FAEL: "{5A110B36-3961-4B2C-9310-99A514CC2469}" [In-None-P17-TRUE] .(.Blizzard Entertainment - Blizzard File Switcher.) -- C:\Program Files (x86)\Battle.net\Battle.net.exe
O87 - FAEL: "{666089FE-A7BB-4E0B-9133-30006D3A739D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hearthstone\Hearthstone.exe
O87 - FAEL: "{93068177-0128-4C71-A16F-E3FF9038DB1C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Hearthstone\Hearthstone.exe
O87 - FAEL: "{A484B1CF-02F4-48F0-823E-68898BB2E3EF}" [In-None-P17-TRUE] .(.The Chromium Authors - Chromium.) -- C:\Users\Lounes\AppData\Local\Chromium\Application\chrome.exe
O87 - FAEL: "{6F7BF818-134D-44E8-9DAE-23963D1F19C0}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{21B9DEC7-D206-4A6C-99E4-C34320DDCCCB}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{280161C4-EE2D-4CA2-8F08-6BA67768C8D5}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
O87 - FAEL: "{1E65F4C4-EBBB-471B-82DF-E3AA72FCBDDF}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
O87 - FAEL: "{737A0F3E-A234-4AC4-8952-2EEAC6BD8848}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
O87 - FAEL: "{E2F1C2F7-3A22-4E95-B48C-690737570635}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
O87 - FAEL: "{48C84BE3-9506-4369-92E3-C467F2B11BAC}" [In-None-P6-FALSE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{1460FDDB-B325-4DF6-B4FC-FF00A16274A6}" [In-None-P17-FALSE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{4F6E79E5-5992-4906-BE64-A8AB4FA4C8F3}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{1176C2A4-1107-4CEE-88C7-E12F73049690}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{7B5EAD00-86CE-40F7-88E8-3C030B283075}" [In-None-P6-TRUE] .(.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O87 - FAEL: "{68DE7D67-17E0-4BCC-935F-281163E68066}" [In-None-P17-TRUE] .(.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O87 - FAEL: "TCP Query User{725DAF0A-AF14-41B3-95F9-17B80AFE9F0F}C:\users\lounes\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\lounes\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "UDP Query User{AB8257AD-EE2B-49F5-8F63-685B1BE7E057}C:\users\lounes\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\lounes\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "{E1FD0E51-0CEA-42B7-94D4-2D520B0ACBC7}" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\lounes\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "{FE16E9B5-5364-479D-8C32-7C6EDFEF1E5E}" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\lounes\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe

---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

---\\ Récapitulatif des éléments trouvées sur votre station (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

~ End of the scan, 27195 items in 113 seconds (788)(0)()

Publicité


Signaler le contenu de ce document

Publicité