cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2015.6.4.54 - Nicolas Coolman (31/05/2015)
~ Lancé par Carré (25/07/2015 11:05:21)
~ Facebook : https://www.facebook.com/nicolascoolman1
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Nouvelle version disponible
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox 38.0.5 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows Server License Manager Script : OK
~ Windows Operating System - Vista, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 6CJ97
Windows License : OK
Windows Automatic Updates : OK
Windows Vista (TM) Home Premium, 32-bit Service Pack 2 (Build 6002)

---\\ Logiciels de protection du système
Microsoft Security Client v4.8.0204.0

---\\ Logiciels d'optimisation du système
CCleaner v5.02

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 18 NPAPI
Adobe Reader 9 - Français

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3068 MB (48% free)
System Restore: Activé (Enable)
System drive C: has 57 GB (51%) free of 111 GB

---\\ Mode de connexion au système
~ Computer Name: PC-DE-CARRÉ
~ User Name: Carré
~ All Users Names: Carré, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Carré\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Carré\AppData\Roaming\
~ %Desktop% : C:\Users\Carré\Desktop\
~ %Favorites% : C:\Users\Carré\Favorites\
~ %LocalAppData% : C:\Users\Carré\AppData\Local\
~ %StartMenu% : C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 57 Go of 111 Go)
D: Hard drive, Flash drive, Thumb drive (Free 30 Go of 105 Go)
E: CD-ROM drive (Free 0 Go of 1 Go)



---\\ Etat du Centre de Sécurité Windows
~ Security Center: 42 Legitimates Filtered in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:23:42.) -- C:\Windows\System32\Wininit.exe [96768]
[MD5.6788C8BBFD00EA99D6DA2AB5EA4F9A2C] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.31/05/2015 - 00:49:49.) -- C:\Windows\System32\wininet.dll [1129472]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 - 07:28:13.) -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.30/05/2014 - 07:53:22.) -- C:\Windows\system32\Drivers\AFD.sys [273408]
[MD5.2D9C903DC76A66813D350A562DE40ED9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.21/01/2008 - 03:23:00.) -- C:\Windows\system32\Drivers\atapi.sys [21560]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:23:51.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.11/04/2009 - 05:39:17.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.11/04/2009 - 05:42:42.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:23:20.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:24:25.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.09/01/2015 - 01:17:41.) -- C:\Windows\system32\Drivers\MRxSmb.sys [107008]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.11/04/2009 - 05:45:37.) -- C:\Windows\system32\Drivers\netBT.sys [185856]
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.03/03/2013 - 20:07:52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:24:55.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:23:01.) -- C:\Windows\system32\Drivers\rdpdr.sys [248832]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.11/04/2009 - 05:45:22.) -- C:\Windows\system32\Drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.11/04/2009 - 05:45:56.) -- C:\Windows\system32\Drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640]
~ Generic Processes: Scanned in 00mn 01s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Favoris (My Favorites) : 1/15
~ Mes Documents (My Documents) : 1/14
~ Mon Bureau (My Desktop) : 1/5047
~ Menu demarrer (Programs) : 1/31
~ Hidden Files: Scanned in 00mn 07s



---\\ Processus lancés
[MD5.D3804513FC9C11A4637392B4F0F43BC5] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [182808] [PID.3968]
[MD5.1865429C6ED8D20F53C0214B0EF74C9D] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1037608] [PID.4016]
[MD5.9E37E0C528E1E3A79E215B6A4EEA2143] - (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192] [PID.4056]
[MD5.03726930815B2F8369C733315A298658] - (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [405504] [PID.488]
[MD5.15A33EF5C43C5ADBABECA6B216D839B5] - (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe [526896] [PID.588]
[MD5.5C1E89C623A710DDC6B7856CB98C82AE] - (.Acer Incorporated - Notification tool for RealTek audio chip.) -- C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe [544768] [PID.2192]
[MD5.D7EE83A9257D508656172A2B9DD3C317] - (.Pas de propriétaire - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe [28672] [PID.2284]
[MD5.B2AECF27EFC4770E1C5F67CB702C9066] - (.Arachnoid Biometrics Identification Group C - PdtWzd.exe.) -- C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe [3719680] [PID.3476]
[MD5.798F20E016232FB3AC3D497AE699295B] - (.Pas de propriétaire - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe [200704] [PID.3632]
[MD5.BFF2BEC55C2AEA10E19BF02993A6BE15] - (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe [809480] [PID.3924]
[MD5.014F2D0F3CA9EE44CEEE85A50CB7C280] - (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [147456] [PID.2804]
[MD5.F4CE6CAB2B114520B94ED3BC6FF10F21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [167936] [PID.4104]
[MD5.9A4C3587A330CEAF6CFCF47FAFAEAB1A] - (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [167936] [PID.4120]
[MD5.059E588FDF6B7E83227D45D026D21874] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744] [PID.4176]
[MD5.4B555106290BD117334E9A08761C035A] - (...) -- ystem32\rundll32.exe [0] [PID.1540]
[MD5.E6CB83FF2C098C6FFCF2D43A4AAC9B54] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6139904] [PID.4412]
[MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952] [PID.4472]
[MD5.FB9F9392B3D24012D22CDA7F9FF17C18] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATILRE.exe [260160] [PID.4504]
[MD5.9FBCFEACAC0CAE33976706184AB8C6EF] - (.Acer Incorporated - Acer VCM.) -- C:\Program Files\Acer\Acer VCM\AcerVCM.exe [1216512] [PID.4552]
[MD5.179B21962296CE3C35FF002229DD1F70] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [723760] [PID.4560]
[MD5.9A1F3AEA8D61AA67D90F1B336C00984E] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [5496600] [PID.4888]
[MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376] [PID.4928]
[MD5.B2994EC6452DBD04E57828EEFEDFB93C] - (.Realtek Semiconductor Corp. - Realtek HD Audio Data Rerouter.) -- C:\Users\Carré\AppData\Local\Temp\RtkBtMnt.exe [204800] [PID.5088]
[MD5.4A5E2BC7708A580AFB096CA0C488F7E5] - (.Acer Inc. - CP2 HID Agent.) -- C:\Program Files\Acer\Acer VCM\acp2HID.exe [196608] [PID.5976]
[MD5.9D60D121022F2697D00FF8563AEADA80] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [95528] [PID.3536]
[MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53784] [PID.5632]
[MD5.F99EE16B22D6AB70658789A9049118CF] - (.Pas de propriétaire - Acer Empowering Technology Framework Launch.) -- C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe [319488] [PID.6096]
[MD5.4D97ACD127B2F25D8C681C14795B6C29] - (.Piriform Ltd - Recuva.) -- D:\Yves\Recuva\recuva.exe [3793176] [PID.3420]
[MD5.923FE895B22B22A9CA03C72F3D15CE20] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [376944] [PID.5608]
[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.3348]
[MD5.9B660F85D4B9FE235DBD45A39CC76F8A] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [270960] [PID.552]
[MD5.05704EB8BF443999EBE4E9D2C075C26A] - (.Adobe Systems, Inc. - Adobe Flash Player 18.0 r0.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe [3423920] [PID.584]
[MD5.12E2FC1F74265881402DE856D01EFFFE] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8214016] [PID.5592]
[MD5.14C90971188F0EDC9EA9DAAF715427DA] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 179.2.) -- C:\Windows\system32\nvvsvc.exe [203296] [PID.944]
[MD5.CC09BB7FDEFC5763CCB3CF7DAE2D76CF] - (.Microsoft Corporation - Antimalware Service Executable.) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216] [PID.1016]
[MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.1444]
[MD5.233CB347CFD27610A93BB4BF94BD206F] - (.Arachnoid Biometrics Identification Group C - Pas de description.) -- C:\Program Files\Acer\Acer Bio Protection\CompPtcVUI.exe [3485696] [PID.1604]
[MD5.D4584341007DF94E31943B19BB9C110E] - (.Validity Sensors, Inc. - Validity Sensors Fingerprint Service.) -- C:\Windows\system32\vfsFPService.exe [599344] [PID.1832]
[MD5.23C3A0680042C0D1DE1F360F8B62BC57] - (.Microsoft Corporation - Infrastructure d'extensibilité pour les ser.) -- C:\Windows\system32\WLANExt.exe [74240] [PID.1232]
[MD5.8ED60797908FD394EEE0D6949F493224] - (.Agere Systems - Agere Soft Modem Call Progress Service.) -- C:\Windows\system32\agrsmsvc.exe [12800] [PID.2120]
[MD5.5CA9B1062C0C3E3AE19C23AD9D8A5048] - (.Pas de propriétaire - CLHNService Module.) -- C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [81504] [PID.2340]
[MD5.B1F2503E23425B386DF0F3413B2596F3] - (.Egis Incorporated - Acer eDataSecurity Management Service.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [500784] [PID.2376]
[MD5.B538590B338F5379D4B33E266902008B] - (.Seiko Epson Corporation - Epson Scanner Service (32bit).) -- C:\Windows\system32\EscSvc.exe [126128] [PID.2412]
[MD5.27D2754314D12EB27D81D462FD0D86C0] - (.Pas de propriétaire - Acer Empowering Technology Framework Servic.) -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [24576] [PID.2492]
[MD5.306AC856622864C761CBDB5E816BB9D8] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [815104] [PID.2616]
[MD5.66AF0B382E050DD2521BCB5337410916] - (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600] [PID.2780]
[MD5.1CE364D0F063D580F91C74FB004B88EA] - (...) -- C:\Program Files\Acer\Acer Bio Protection\BASVC.exe [3520512] [PID.2896]
[MD5.793FF718477345CD5D232C50BED1E452] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2980]
[MD5.1E1A308F4229FAB0011A0745EE8377AE] - (.Pas de propriétaire - app.) -- C:\Acer\Mobility Center\MobilityService.exe [110592] [PID.3028]
[MD5.A2B6583A5652A385DFF5E4F49AD48761] - (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [45056] [PID.3068]
[MD5.40B87FE8A1A9A5AC9E5A91D96F212BCD] - (...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072] [PID.3212]
[MD5.93C82F365F9C0A2058A211E305A5CCFA] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128] [PID.3256]
[MD5.B33C88DF3588ACF250B87A004526C31A] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [466944] [PID.3316]
[MD5.17E0BEF5CA5C9CE52CC8082AC6EBC449] - (.Pas de propriétaire - RichVideo Module.) -- C:\Program Files\Cyberlink\Shared files\RichVideo.exe [272024] [PID.3352]
[MD5.974AF42FC1CB6DC35DE34109BEF80054] - (.Acer Incorporated - Raw Socket Service.) -- C:\Program Files\Acer\Acer VCM\RS_Service.exe [233472] [PID.3400]
[MD5.3E42C4691AAD4B1E8D0466F9CBF05CBE] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [354840] [PID.3584]
[MD5.3FF257F54649D4F19E39263C5D581CD1] - (.Microsoft Corporation - Microsoft Network Realtime Inspection Servi.) -- c:\Program Files\Microsoft Security Client\NisSrv.exe [284504] [PID.3732]
[MD5.97D9D6A04E3AD9B6C626B9931DB78DBA] - (.Microsoft Corporation - Programme d’installation de modules Windows.) -- C:\Windows\servicing\TrustedInstaller.exe [39424] [PID.1152]
~ Processes Running: Scanned in 00mn 10s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
M2 - MFEP: Extension [Carré - l9srk0u9.default] d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com
M2 - MFEP: Extension [Carré - l9srk0u9.default] {3b829bce-3d15-4c8e-8908-477f6f3865fb}.xpi
P2 - FPN:Firefox Plugin Navigator . (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
~ Firefox Browser: 25 Legitimates Filtered in 00mn 02s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\System32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (20)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.Egis - ActiveToolBand Module.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
~ BHO: 10 Legitimates Filtered in 00mn 02s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Google Desktop Search] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O4 - HKLM\..\Run: [ePower_DMC] . (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] . (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] . (.Acer Incorporated - Notification tool for RealTek audio chip.) -- C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] . (.Arachnoid Biometrics Identification Group C - PdtWzd.exe.) -- C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
O4 - HKLM\..\Run: [PLFSetI] . (.Pas de propriétaire - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [eRecoveryService] Clé orpheline
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] . (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
O4 - HKLM\..\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
O4 - HKLM\..\Run: [PlayMovie] . (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\Windows\system32\NvCpl.dll =>.NVIDIA Corporation
O4 - HKLM\..\Run: [NvMediaCenter] . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\Windows\system32\NvMcTray.dll
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe =>.Realtek Semiconductor Corp
O4 - HKCU\..\Run: [ProductReg] . (.Acer - ProductR Application.) -- C:\Program Files\Acer\WR_PopUp\ProductReg.exe
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATILRE.exe =>.Epson Seiko Corporation
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [ProductReg] . (.Acer - ProductR Application.) -- C:\Program Files\Acer\WR_PopUp\ProductReg.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATILRE.exe =>.Epson Seiko Corporation
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 01s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} . (...) -- C:\Program Files\Acer\Acer Bio Protection\IETag.ico
O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO
O9 - Extra button: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{57CBF0D6-48B1-4372-9F5D-BE742CBC093F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{8BE7460E-0023-4F03-8E48-FB4419D9D168}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{57CBF0D6-48B1-4372-9F5D-BE742CBC093F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{8BE7460E-0023-4F03-8E48-FB4419D9D168}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{57CBF0D6-48B1-4372-9F5D-BE742CBC093F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{8BE7460E-0023-4F03-8E48-FB4419D9D168}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 . (.Arachnoid Biometrics Identification Group C - Pas de description.) -- C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
~ Winlogon: Scanned in 00mn 01s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.Google - Google Desktop.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll
~ AppInit DLL: Scanned in 00mn 00s



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll
~ STS/SSO: Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: iGroupTec Service (IGBASVC) . (...) - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
~ Services: 22 Legitimates Filtered in 00mn 24s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop General: BackupWallPaper - .(...) - D:\Documents\Pictures\Famille\septembre 2009 (2).JPG
O24 - Desktop General: WallPaper - .(...) - D:\Documents\Pictures\Famille\septembre 2009 (2).JPG
~ Desktop Component: 4 Legitimates Filtered in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002]
O39 - APT: - (..) -- C:\Windows\Tasks\DriverEasy Scheduled Scan.job [406]
O39 - APT: - (..) -- C:\Windows\Tasks\EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}.job [731]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} [731]
O39 - APT: - (..) -- C:\Windows\Tasks\EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}.job [917]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} [917]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1052]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1056]
~ Scheduled Task: 13 Legitimates Filtered in 00mn 07s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Convesoft]
[HKCU\Software\ƒAƒvƒŠƒP[ƒVƒ‡ƒ“ ƒEƒBƒU[ƒh‚Ő¶¬‚³‚ꂽƒ[ƒJƒ‹ ƒAƒvƒŠƒP[ƒVƒ‡ƒ“]
~ Key Software: 223 Legitimates Filtered in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 23/07/2015 - 16:47:38 - [] ----D C:\Program Files\20F3CF64-1437662814-DE11-A70E-00A0D1CFE345
O43 - CFD: 23/07/2015 - 16:50:40 - [] ----D C:\Program Files\20F3CF64-1437663040-DE11-A70E-00A0D1CFE345
O43 - CFD: 13/01/2009 - 07:21:40 - [] ----D C:\Program Files\Convesoft
O43 - CFD: 23/07/2015 - 17:05:47 - [] ----D C:\Program Files\On Stage =>PUP.Optional
O43 - CFD: 23/07/2015 - 16:55:30 - [] ----D C:\Program Files\WordShark_1.10.0.19
O43 - CFD: 23/07/2015 - 17:30:05 - [] ----D C:\ProgramData\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 23/07/2015 - 16:47:12 - [] ----D C:\ProgramData\BreakingNewsAlert =>PUP.BreakingNewsAlert
O43 - CFD: 23/07/2015 - 17:30:05 - [] ----D C:\ProgramData\Oenunmoiok
O43 - CFD: 23/07/2015 - 17:10:21 - [] ----D C:\ProgramData\yfe
O43 - CFD: 23/07/2015 - 16:55:02 - [] ----D C:\ProgramData\{ee14b1dd-faaa-3391-ee14-4b1ddfaac777}
O43 - CFD: 02/11/2006 - 14:37:34 - [] R-H-D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 23/07/2015 - 17:04:17 - [] ----D C:\Users\Carré\AppData\Roaming\Super Optimizer =>PUP.SuperOptimizer
O43 - CFD: 23/07/2015 - 17:19:04 - [] ----D C:\Users\Carré\AppData\Local\20F3CF64-1437670088-DE11-A70E-00A0D1CFE345
O43 - CFD: 23/07/2015 - 17:02:10 - [] ----D C:\Users\Carré\AppData\Local\2413
O43 - CFD: 23/07/2015 - 16:49:38 - [0] ----D C:\Users\Carré\AppData\Local\BreakingNewsAlert =>PUP.BreakingNewsAlert
O43 - CFD: 23/07/2015 - 16:58:58 - [] ----D C:\Users\Carré\AppData\Local\Crossbrowse =>PUP.CrossBrowser
O43 - CFD: 23/07/2015 - 16:55:04 - [] ----D C:\Users\Carré\AppData\Local\RapidMediaConverter
O43 - CFD: 23/07/2015 - 17:27:09 - [] ----D C:\Users\Carré\AppData\Local\WebBar =>PUP.WebBar
~ Program Folder: 216 Legitimates Filtered in 00mn 03s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.CB64482C852CFD1C6A38A9F7513AC183] - 20/07/2015 - 21:09:18 ---A- . (...) -- C:\Windows\System32\nvinfo.pb [21015]
O44 - LFC:[MD5.D5002A5223746DAD10CA96897E662C19] - 20/07/2015 - 21:16:04 ---A- . (...) -- C:\Windows\System32\nvcoproc.bin [4229086]
O44 - LFC:[MD5.A19F90337B3169A670196982D28F146F] - 20/07/2015 - 22:49:04 ---A- . (...) -- C:\Windows\System32\ASOROSet.bin [1660]
O44 - LFC:[MD5.B3F1D413B206715BBCBFBE80CB1DD9C4] - 20/07/2015 - 22:59:05 ---A- . (...) -- C:\Windows\win.ini [219]
O44 - LFC:[MD5.53C8D9DBDDA4D905530E68E2BCE66DCD] - 20/07/2015 - 23:11:32 ---A- . (...) -- C:\Windows\System32\GDIPFONTCACHEV1.DAT [108504]
O44 - LFC:[MD5.6A714E92C31CC703F292299C6E5BF1EB] - 21/07/2015 - 16:08:32 R---- . (...) -- C:\Windows\USetup.iss [553]
O44 - LFC:[MD5.CEAF98D916D2B75B8704BEE7680EE0B5] - 23/07/2015 - 14:50:37 ---A- . (...) -- C:\Windows\System32\agent.log [147]
O44 - LFC:[MD5.92C6E0047EFD8ECD37E45010EA8C94C2] - 23/07/2015 - 15:46:43 ---A- . (...) -- C:\END [8]
O44 - LFC:[MD5.C9BA70A77A1BB142E215CA0A63B0AB8B] - 23/07/2015 - 22:21:53 R---- . (...) -- C:\Windows\RtDefLvl.ini [1694]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 25/07/2015 - 09:09:11 ---A- . (...) -- C:\Windows\System32\LogConfigTemp.xml [0]
~ Files: 69 Legitimates Filtered in 02mn 06s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
~ LSA: 8 Legitimates Filtered in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
~ MWPS: 17 Legitimates Filtered in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:21/01/2008 - 03:23:22 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [342584]
O58 - SDL:26/01/2007 - 07:32:18 ---A- . (...) -- C:\Windows\System32\Drivers\int15.sys [69632]
O58 - SDL:02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\Drivers\iteatapi.sys [35944]
O58 - SDL:18/12/2007 - 17:12:12 ---A- . (.ITE Tech. Inc. - ITE Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\itecir.sys [54784]
O58 - SDL:02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\Drivers\iteraid.sys [35944]
O58 - SDL:27/10/2008 - 12:15:48 ---A- . (.EnTech Taiwan - TVicPort Driver for Windows NT/2000/XP.) -- C:\Windows\System32\Drivers\TVicPort.sys [14544]
O58 - SDL:21/01/2008 - 03:23:20 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\Drivers\uliahci.sys [238648]
O58 - SDL:02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\System32\Drivers\ulsata.sys [98408]
O58 - SDL:21/01/2008 - 03:23:23 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\Drivers\ulsata2.sys [115816]
O58 - SDL:27/10/2008 - 12:15:48 ---A- . (.Zeal SoftStudio - zntport.) -- C:\Windows\System32\Drivers\zntport.sys [6080]
O58 - SDL:02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
~ Drivers: 85 Legitimates Filtered in 00mn 11s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {C4C1B842-B9FB-419E-BE61-926B8DC426F5} [DefaultScope] - (Google) - http://www.google.com
~ Keys: Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.41ECADB5BEBF5F03D4BB302AF6E7CD24] [SPRF][24/07/2015] (...) -- C:\ProgramData\nvModes.dat [31871]
[MD5.14140FAF43BFF647F140661E1AD8B169] [SPRF][03/06/2015] (...) -- C:\Users\Carré\AppData\Roaming\wklnhst.dat [274]
~ Files: 3 Legitimates Filtered in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 20/07/2015 268976 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Auto 03/03/2008 16384 | (BUNAgentSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
SS - | Demand 13/01/2009 30192 | (GoogleDesktopManager-092308-165331) . (.Google.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
SS - | Auto 08/02/2015 107848 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 08/02/2015 107848 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 08/02/2015 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 05/06/2015 148080 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 21/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 11/12/2007 12800 | (AgereModemAudio) . (.Agere Systems.) - C:\Windows\system32\agrsmsvc.exe
SR - | Auto 16/01/2008 81504 | (CLHNService) . (...) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
SR - | Auto 29/07/2008 500784 | (eDataSecurity Service) . (.Egis Incorporated.) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
SR - | Auto 17/05/2012 126128 | (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\Windows\system32\EscSvc.exe
SR - | Auto 02/06/2008 24576 | (ETService) . (...) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
SR - | Auto 30/04/2008 815104 | (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
SR - | Auto 16/01/2015 915600 | (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
SR - | Auto 20/07/2008 354840 | (IAANTMON) . (.Intel Corporation.) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
SR - | Auto 31/01/2015 3520512 | (IGBASVC) . (...) - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
SR - | Auto 17/01/2007 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
SR - | Auto 06/12/2007 110592 | (MobilityService) . (...) - C:\Acer\Mobility Center\MobilityService.exe
SR - | Auto 30/04/2015 22216 | (MsMpSvc) . (.Microsoft Corporation.) - c:\Program Files\Microsoft Security Client\MsMpEng.exe
SR - | Auto 25/04/2008 45056 | (NTIBackupSvc) . (.NewTech InfoSystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
SR - | Auto 25/04/2008 131072 | (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
SR - | Auto 16/01/2015 1706128 | (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - | Auto 05/12/2008 203296 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe
SR - | Auto 30/04/2008 466944 | (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
SR - | Auto 09/01/2007 272024 | (RichVideo) . (...) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
SR - | Auto 19/07/2008 233472 | (RS_Service) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer VCM\RS_Service.exe
SR - | Auto 26/05/2008 599344 | (vfsFPService) . (.Validity Sensors, Inc..) - C:\Windows\system32\vfsFPService.exe
SR - | Auto 21/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 18/07/2008 61424 | ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) . (.Cyberlink Corp..) - C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl
~ Services: Scanned in 00mn 34s



---\\ Scan Additionnel (O88)
Database Version : 13008 - (31/05/2015)
Clés trouvées (Keys found) : 9
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 10
Fichiers trouvés (Files found) : 0

[HKLM\Software\Classes\protector_dll.protectorbho.1] =>PUP.BProtector
[HKLM\Software\Classes\protector_dll.protectorbho] =>PUP.BProtector
[HKCU\Software\Convesoft] =>PUP.SaveItKeep
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B63A470-9334-44D1-AF61-6CE2DB565AE9}] =>PUP.SaveItKeep
[HKLM\Software\Classes\Installer\Features\074A36B543391D44FA16C62EBD65A59E] =>PUP.SaveItKeep
[HKLM\Software\Classes\Installer\Products\074A36B543391D44FA16C62EBD65A59E] =>PUP.SaveItKeep
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\074A36B543391D44FA16C62EBD65A59E] =>PUP.SaveItKeep
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity
[HKLM\Software\Classes\CLSID\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity
C:\Program Files\On Stage =>PUP.Optional^
C:\ProgramData\BreakingNewsAlert =>PUP.BreakingNewsAlert^
C:\Users\Carré\AppData\Roaming\Super Optimizer =>PUP.SuperOptimizer^
C:\Users\Carré\AppData\Local\BreakingNewsAlert =>PUP.BreakingNewsAlert^
C:\Users\Carré\AppData\Local\Crossbrowse =>PUP.CrossBrowser^
C:\Users\Carré\AppData\Local\WebBar =>PUP.WebBar^
C:\Program Files\Software =>Adware.Boxore
C:\Program Files\Convesoft =>PUP.SaveItKeep
C:\Users\Carré\AppData\Roaming\Optimizer Pro =>PUP.OptimizerPro
C:\Users\Carré\AppData\Local\Software =>Adware.Boxore
~ Additionnel Scan: 279481 Items scanned in 02mn 41s



---\\ Informations complémentaires sur les modules
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5)
~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2)
~ http://nicolascoolman.fr/o3-internet-explorer-toolbars/ =>.Internet Explorer Toolbars (O3)
~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4)
~ AMI: 4 Legitimates Filtered in 00mn 00s



---\\ Récapitulatif des détections trouvées sur votre station
http://www.nicolascoolman.fr/blog/ =>PUP.Optional
http://www.nicolascoolman.fr/blog/ =>PUP.BreakingNewsAlert
http://www.nicolascoolman.fr/blog/ =>PUP.SuperOptimizer
http://www.nicolascoolman.fr/blog/ =>PUP.CrossBrowser
http://www.nicolascoolman.fr/blog/ =>PUP.WebBar
http://nicolascoolman.fr/pup-bprotector =>PUP.BProtector
http://www.nicolascoolman.fr/blog/ =>PUP.SaveItKeep
http://www.nicolascoolman.fr/blog/ =>Toolbar.eDataSecurity
http://nicolascoolman.fr/adware-boxore =>Adware.Boxore
http://nicolascoolman.fr/pup-optimizerpro =>PUP.OptimizerPro
~ MSI: 10 link(s) detected in 00mn 00s



~ 815 Legitimates filtered by white list
End of the scan (542 lines in 08mn 21s)(0.8)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 38.0.5 (x86 fr) v38.0.5
MSIE: Internet Explorer v9.0.8112.16421

---\\ Informations sur les produits Windows (3) - 11s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)

---\\ Logiciels de protection (2) - 4s
Microsoft Security Client v4.8.0204.0
Microsoft Security Essentials v4.8.204.0

---\\ Logiciels d'optimisation (1) - 5s
CCleaner v5.02

---\\ Surveillance de Logiciels (2) - 6s
Adobe Flash Player 18 NPAPI
Adobe Reader 9 - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3141.664 MB (47% free)
~ System Restore: Activé (Enable)
~ System drive C: has 58 GB free of 114 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-CARRÉ
~ User Name: Carré
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 58 GB free of 114 GB (System)
~ Drive D: has 30 GB free of 107 GB
~ Drive E: has 0 GB free of 0 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 4s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2926592]
[MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96768]
[MD5.6788C8BBFD00EA99D6DA2AB5EA4F9A2C] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1129472]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.95F5FF73B076576C41740F1A842B9B57] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408]
[MD5.2D9C903DC76A66813D350A562DE40ED9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21560]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864]
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [107008]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [185856]
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1082232]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288]
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [248832]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [224640]

---\\ Processus lancés (27) - 19s
[MD5.233CB347CFD27610A93BB4BF94BD206F] - (.Arachnoid Biometrics Identification Group Corp. - .) -- C:\Program Files\Acer\Acer Bio Protection\CompPtcVUI.exe [3485696] [PID.1604]
[MD5.D4584341007DF94E31943B19BB9C110E] - (.Validity Sensors, Inc. - Validity Sensors Fingerprint Service.) -- C:\Windows\System32\vfsFPService.exe [599344] [PID.1832]
[MD5.8ED60797908FD394EEE0D6949F493224] - (.Agere Systems - Agere Soft Modem Call Progress Service.) -- C:\Windows\System32\agrsmsvc.exe [12800] [PID.2120]
[MD5.5CA9B1062C0C3E3AE19C23AD9D8A5048] - (.Copyright 2007 - CLHNService Module.) -- C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [81504] [PID.2340]
[MD5.B1F2503E23425B386DF0F3413B2596F3] - (.Egis Incorporated - Acer eDataSecurity Management Service.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [500784] [PID.2376]
[MD5.27D2754314D12EB27D81D462FD0D86C0] - (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [24576] [PID.2492]
[MD5.306AC856622864C761CBDB5E816BB9D8] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [815104] [PID.2616]
[MD5.1CE364D0F063D580F91C74FB004B88EA] - (...) -- C:\Program Files\Acer\Acer Bio Protection\BASVC.exe [3520512] [PID.2896]
[MD5.1E1A308F4229FAB0011A0745EE8377AE] - (.Copyright (C) 2007 - app.) -- C:\ACER\Mobility Center\MobilityService.exe [110592] [PID.3028]
[MD5.A2B6583A5652A385DFF5E4F49AD48761] - (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [45056] [PID.3068]
[MD5.40B87FE8A1A9A5AC9E5A91D96F212BCD] - (...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072] [PID.3212]
[MD5.B33C88DF3588ACF250B87A004526C31A] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [466944] [PID.3316]
[MD5.17E0BEF5CA5C9CE52CC8082AC6EBC449] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\Cyberlink\Shared files\RichVideo.exe [272024] [PID.3352]
[MD5.1865429C6ED8D20F53C0214B0EF74C9D] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1037608] [PID.4016]
[MD5.03726930815B2F8369C733315A298658] - (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [405504] [PID.488]
[MD5.15A33EF5C43C5ADBABECA6B216D839B5] - (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe [526896] [PID.588]
[MD5.D7EE83A9257D508656172A2B9DD3C317] - (.Copyright (c)2005-2007, NewTech Infosystems, Inc. All - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe [28672] [PID.2284]
[MD5.B2AECF27EFC4770E1C5F67CB702C9066] - (.Arachnoid Biometrics Identification Group Corp. - PdtWzd.exe.) -- C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe [3719680] [PID.3476]
[MD5.798F20E016232FB3AC3D497AE699295B] - (.Copyright (C) 2007 - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe [200704] [PID.3632]
[MD5.BFF2BEC55C2AEA10E19BF02993A6BE15] - (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe [809480] [PID.3924]
[MD5.9A4C3587A330CEAF6CFCF47FAFAEAB1A] - (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [167936] [PID.4120]
[MD5.E6CB83FF2C098C6FFCF2D43A4AAC9B54] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6139904] [PID.4412]
[MD5.179B21962296CE3C35FF002229DD1F70] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [723760] [PID.4560]
[MD5.B2994EC6452DBD04E57828EEFEDFB93C] - (.Realtek Semiconductor Corp. - Realtek HD Audio Data Rerouter.) -- C:\Users\Carré\AppData\Local\Temp\RtkBtMnt.exe [204800] [PID.5088]
[MD5.4A5E2BC7708A580AFB096CA0C488F7E5] - (.Acer Inc. - CP2 HID Agent.) -- C:\Program Files\Acer\Acer VCM\acp2HID.exe [196608] [PID.5976]
[MD5.9D60D121022F2697D00FF8563AEADA80] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [95528] [PID.3536]
[MD5.F99EE16B22D6AB70658789A9049118CF] - (.Copyright © 2007 - Acer Empowering Technology Framework Launch.) -- C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe [319488] [PID.6096]

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (14) - 7s
P2 - EXT FILE: (...) -- C:\Users\Carré\AppData\Roaming\Mozilla\Firefox\Profiles\l9srk0u9.default\extensions\{3b829bce-3d15-4c8e-8908-477f6f3865fb}.xpi
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (.Video HDV22.07 - Plus HD Video 3.1cV22.07.) -- C:\Users\Carré\AppData\Roaming\Mozilla\Firefox\Profiles\l9srk0u9.default\extensions\d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (12) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (O2) (2) - 1s
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.Egis - ActiveToolBand Module.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll

---\\ Applications lancées au démarrage du sytème (O4) (37) - 5s
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Google Desktop Search] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O4 - HKLM\..\Run: [ePower_DMC] . (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] . (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] . (.Acer Incorporated - Notification tool for RealTek audio chip.) -- C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] . (.Arachnoid Biometrics Identification Group Corp. - PdtWzd.exe.) -- C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
O4 - HKLM\..\Run: [PLFSetI] . (.Copyright (C) 2007 - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [eRecoveryService] (Orphean)
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] . (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
O4 - HKLM\..\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
O4 - HKLM\..\Run: [PlayMovie] . (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [NvMediaCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe
O4 - HKCU\..\Run: [ProductReg] . (.Acer - ProductR Application.) -- C:\Program Files\Acer\WR_PopUp\ProductReg.exe
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATILRE.EXE
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [ProductReg] . (.Acer - ProductR Application.) -- C:\Program Files\Acer\WR_PopUp\ProductReg.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATILRE.EXE
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKUS\S-1-5-21-2352267848-3227949838-3727789580-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 1s
O20 - AppInit_DLLs: . (.Google - Google Desktop.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll

---\\ Liste des services NT non Microsoft et non désactivés (O23) (22) - 10s
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) . (.Agere Systems - Agere Soft Modem Call Progress Service.) - C:\Windows\System32\agrsmsvc.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService (CLHNService) . (.Copyright 2007 - CLHNService Module.) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service (eDataSecurity Service) . (.Egis Incorporated - Acer eDataSecurity Management Service.) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (32bit).) - C:\Windows\System32\escsvc.exe
O23 - Service: Empowering Technology Service (ETService) . (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
O23 - Service: iGroupTec Service (IGBASVC) . (...) - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService (MobilityService) . (.Copyright (C) 2007 - app.) - C:\ACER\Mobility Center\MobilityService.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 179.2.) - C:\Windows\System32\nvvsvc.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) . (.Acer Incorporated - Raw Socket Service.) - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) . (.Validity Sensors, Inc. - Validity Sensors Fingerprint Service.) - C:\Windows\System32\vfsFPService.exe
O23 - Service: {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) . (.Cyberlink Corp. - FCL Driver.) - C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl

---\\ Tâches planifiées en automatique (O39) (18) - 9s
[MD5.9B3355B29942AF67F014EA90CE1EA960] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [268976]
[MD5.9A1F3AEA8D61AA67D90F1B336C00984E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [5496600]
[MD5.E674671A541A96A251F7CADEB12E06A5] [APT] [EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}] (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FTSLRE.EXE [679488]
[MD5.E674671A541A96A251F7CADEB12E06A5] [APT] [EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}] (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FTSLRE.EXE [679488]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\DriverEasy Scheduled Scan.job [406]
O39 - APT: EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\Tasks\EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}.job [731]
O39 - APT: EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\Tasks\EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}.job [917]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854]
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2772]
O39 - APT: EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\Tasks\EPSON XP-510 Series Invitation {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} [3798]
O39 - APT: EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} - (.SEIKO EPSON CORPORATION.) -- C:\Windows\System32\Tasks\EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} [3984]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3800]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4052]

---\\ Logiciels installés (O42) (81) - 26s
O42 - Logiciel: Acer Bio Protection
AAV 6.0.00.15 - (...) [HKLM] -- Acer Acer Bio Protection 6.0.00.15
O42 - Logiciel: Adobe Flash Player ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Agere Systems HDA Modem - (.Agere Systems.) [HKLM] -- Agere Systems Soft Modem
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner
O42 - Logiciel: Désinstallation de l'imprimante EPSON XP-510 Series - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON XP-510 Series
O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop
O42 - Logiciel: Acer GridVista - (...) [HKLM] -- GridVista
O42 - Logiciel: Heredis 8 - (...) [HKLM] -- Heredis 8
O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}
O42 - Logiciel: eSobi v2 - (.esobi Inc..) [HKLM] -- InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}
O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}
O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: Launch Manager - (...) [HKLM] -- LManager
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client
O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.5 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM] -- ProInst
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
O42 - Logiciel: WIDCOMM Bluetooth Software 6.0.1.5000 - (.Broadcom Corporation.) [HKLM] -- {03D1988F-469F-4843-8E6E-E5FE9D17889D}
O42 - Logiciel: Acer VCM - (.Acer Incorporated.) [HKLM] -- {047F790A-7A2A-4B6A-AD02-38092BA63DAC}
O42 - Logiciel: PHOTOfunSTUDIO 8.3 AE - (.Panasonic Corporation.) [HKLM] -- {0E9BAB64-E234-4BF1-98A6-FA2C5D1E4F1A}
O42 - Logiciel: OpenOffice.org 3.1 - (.OpenOffice.org.) [HKLM] -- {0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6}
O42 - Logiciel: Acer Mobility Center Plug-In - (.Acer Inc..) [HKLM] -- {11316260-6666-467B-AC34-183FCB5D4335}
O42 - Logiciel: Acer eSettings Management - (.Acer Incorporated.) [HKLM] -- {13D85C14-2B85-419F-AC41-C7F21E68B25D}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761}
O42 - Logiciel: JMicron JMB38X Flash Media Controller - (.JMicron Technology Corp..) [HKLM] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C}
O42 - Logiciel: Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet D - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
O42 - Logiciel: ITECIR - (.ITE.) [HKLM] -- {40580068-9B10-40B5-9548-536CE88AB23C}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}
O42 - Logiciel: Validity Sensors software - (.Validity Sensors, Inc..) [HKLM] -- {567E8236-C414-4888-8211-3D61608D57AE}
O42 - Logiciel: Acer eAudio Management - (.CyberLink Corp..) [HKLM] -- {57265292-228A-41FA-9AEC-4620CBCC2739}
O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM] -- {58E5844B-7CE2-413D-83D1-99294BF6C74F}
O42 - Logiciel: Orion - (.Convesoft.) [HKLM] -- {5B63A470-9334-44D1-AF61-6CE2DB565AE9}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {6E3939AE-9996-4D07-9A30-14C78AE93576}
O42 - Logiciel: C:\Program Files\ - (.Oberon Media, Inc..) [HKLM] -- {71C2828F-2678-4675-BDEC-895424861262}_is1
O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}
O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM] -- {7ACB9D1D-5B26-4CE4-964A-1EB22461E6F6}
O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {80407BA7-7763-4395-AB98-5233F1B34E65}
O42 - Logiciel: Beetle Junior - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110052107}
O42 - Logiciel: Tiks Texas Hold em - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110422467}
O42 - Logiciel: Cake Mania - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}
O42 - Logiciel: Galapago - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}
O42 - Logiciel: Mystery Solitaire - Secret Island - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111796363}
O42 - Logiciel: Putt Mania - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112028410}
O42 - Logiciel: The Rise of Atlantis - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112548397}
O42 - Logiciel: Alice Greenfingers - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}
O42 - Logiciel: Heroes of Hellas - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}
O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}
O42 - Logiciel: Mythic Mahjong - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113919217}
O42 - Logiciel: Go-Go Gourmet - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-114072167}
O42 - Logiciel: Magic Match Adventures - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11408540}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Acer Empowering Technology - (.Acer Incorporated.) [HKLM] -- {8F1B6239-FEA0-450A-A950-B05276CE177C}
O42 - Logiciel: Choice Guard - (.Microsoft Corporation.) [HKLM] -- {8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
O42 - Logiciel: Acer eDataSecurity Management - (.Egis Inc..) [HKLM] -- {A5633652-3795-4829-BB0B-644F0279E279}
O42 - Logiciel: Acer Crystal Eye Webcam 3.0.6.3 - (.SuYin.) [HKLM] -- {A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001}
O42 - Logiciel: NVIDIA Pilote graphique 341.44 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 2.2.2 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM] -- {D36DD326-7280-11D8-97C8-000129760CBE}
O42 - Logiciel: Acer Product Registration - (.Acer Incorporated.) [HKLM] -- {DA20E1A8-07CB-4EE7-9B72-A7E28C953F0E}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}

---\\ HKCU & HKLM Software Keys (97) - 26s
HKLM\SOFTWARE\acer
HKLM\SOFTWARE\Acer Inc.
HKLM\SOFTWARE\Acer Incorporated
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Agere
HKLM\SOFTWARE\America Online
HKLM\SOFTWARE\Atheros Communications Inc.
HKLM\SOFTWARE\Avira
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\Digital River
HKLM\SOFTWARE\Dolby
HKLM\SOFTWARE\DTS
HKLM\SOFTWARE\EPSON
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Inventec
HKLM\SOFTWARE\ITE
HKLM\SOFTWARE\JMicron Technology Corp.
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Knowles
HKLM\SOFTWARE\LightScribe
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nahimic
HKLM\SOFTWARE\NewTech Infosystems
HKLM\SOFTWARE\nSplitter
HKLM\SOFTWARE\Nuance
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\Oberon Media
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OemSetup
HKLM\SOFTWARE\OpenOffice.org
HKLM\SOFTWARE\Panasonic
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\SlimWare Utilities Inc
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\SoundResearch
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\Sun Microsystems
HKLM\SOFTWARE\SuYin
HKLM\SOFTWARE\SymNRT
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\Validity
HKLM\SOFTWARE\VB2S360
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\Widcomm
HKLM\SOFTWARE\Wistron
HKLM\SOFTWARE\XPeFlag
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\AcerUtil
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Bsd Concept
HKCU\SOFTWARE\Convesoft
HKCU\SOFTWARE\Cyberlink
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\EPSON Software Updater
HKCU\SOFTWARE\eSobi
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hyperionics
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Inventec
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MatchWare
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewTech Infosystems
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\nSplitter
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\Panasonic
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\SEIKO EPSON CORPORATION
HKCU\SOFTWARE\Sonix
HKCU\SOFTWARE\SubSystems
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Widcomm
HKCU\SOFTWARE\Windows Live Writer
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\ƒAƒvƒŠƒP[ƒVƒ‡ƒ“ ƒEƒBƒU[ƒh‚Ő¶¬‚³‚ꂽƒ[ƒJƒ‹ ƒAƒvƒŠƒP[ƒVƒ‡ƒ“
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Google

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (216) - 37s
O43 - CFD: 2015/07/23 16:47:38 - [] D -- C:\Program Files\20F3CF64-1437662814-DE11-A70E-00A0D1CFE345 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/23 16:50:40 - [] D -- C:\Program Files\20F3CF64-1437663040-DE11-A70E-00A0D1CFE345 =>PUP.Optional.CrossRider
O43 - CFD: 2015/01/31 20:41:39 - [] D -- C:\Program Files\Acer
O43 - CFD: 2015/01/31 20:40:37 - [] D -- C:\Program Files\Acer Arcade Deluxe
O43 - CFD: 2015/05/07 21:11:31 - [] D -- C:\Program Files\Acer GameZone
O43 - CFD: 2015/01/31 20:42:44 - [] D -- C:\Program Files\Acer Inc
O43 - CFD: 2009/01/13 07:21:06 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2015/07/20 22:17:39 - [0] D -- C:\Program Files\AGEIA Technologies
O43 - CFD: 2015/02/16 22:04:26 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2009/01/13 06:28:50 - [] D -- C:\Program Files\Cisco
O43 - CFD: 2015/01/31 20:08:58 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2009/01/13 07:21:40 - [] D -- C:\Program Files\Convesoft =>PUP.Optional.Convesoft
O43 - CFD: 2009/01/13 07:27:01 - [] D -- C:\Program Files\Cyberlink
O43 - CFD: 2015/02/20 18:20:04 - [] D -- C:\Program Files\Defraggler
O43 - CFD: 2015/07/20 19:39:22 - [0] D -- C:\Program Files\DriverTurbo =>PUP.Optional.DriverTurbo
O43 - CFD: 2015/02/09 21:17:17 - [] D -- C:\Program Files\epson
O43 - CFD: 2015/02/09 21:18:59 - [] D -- C:\Program Files\EPSON Software
O43 - CFD: 2009/01/13 07:27:24 - [] D -- C:\Program Files\eSobi
O43 - CFD: 2015/01/31 20:08:58 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2015/07/23 16:56:26 - [] D -- C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/07/23 17:12:08 - [] D -- C:\Program Files\gmsd_fr_002020038 =>PUP.Optional.CrossRider
O43 - CFD: 2015/02/08 21:20:16 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/02/20 18:06:43 - [] D -- C:\Program Files\Heredis
O43 - CFD: 2015/02/20 18:08:16 - [] D -- C:\Program Files\Heredis 8
O43 - CFD: 2015/07/23 23:01:36 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2009/01/13 06:28:49 - [] D -- C:\Program Files\Intel
O43 - CFD: 2015/07/23 23:01:43 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/02/07 20:43:15 - [] D -- C:\Program Files\JRE
O43 - CFD: 2015/01/31 20:20:58 - [] D -- C:\Program Files\Launch Manager
O43 - CFD: 2009/01/13 07:02:54 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 2015/03/24 23:26:23 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2009/01/13 06:40:25 - [] D -- C:\Program Files\Microsoft Office Suite Activation Assistant
O43 - CFD: 2015/05/17 21:25:25 - [] D -- C:\Program Files\Microsoft Security Client
O43 - CFD: 2015/05/30 20:24:50 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 2015/05/30 20:24:50 - [] D -- C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 2015/07/21 00:04:37 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2015/02/21 22:21:09 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 2015/07/21 00:05:02 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2015/02/07 23:42:29 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2015/02/09 22:25:22 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/06/05 20:02:39 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2015/06/05 21:09:06 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2015/07/21 00:04:49 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2009/01/13 06:03:52 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2015/07/23 23:01:36 - [] D -- C:\Program Files\NewTech Infosystems
O43 - CFD: 2015/07/20 22:18:25 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 2015/07/23 17:05:47 - [] D -- C:\Program Files\On Stage =>PUP.Optional.OnStage
O43 - CFD: 2015/02/07 20:43:09 - [] D -- C:\Program Files\OpenOffice.org 3
O43 - CFD: 2015/07/23 17:30:05 - [] D -- C:\Program Files\Optimizer Pro 3.99 =>PUP.Optional.OptimizerPro
O43 - CFD: 2015/05/30 20:23:47 - [] D -- C:\Program Files\Panasonic
O43 - CFD: 2015/07/20 22:03:17 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/07/23 17:30:05 - [] D -- C:\Program Files\shopperz22072015 =>PUP.Optional.Shopperz
O43 - CFD: 2015/07/23 17:16:17 - [] D -- C:\Program Files\Software
O43 - CFD: 2009/01/13 06:31:33 - [] D -- C:\Program Files\Synaptics
O43 - CFD: 2015/07/20 22:44:56 - [0] HD -- C:\Program Files\Temp
O43 - CFD: 2006/11/02 15:01:55 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2015/01/31 20:15:17 - [] D -- C:\Program Files\Validity Sensors, Inc
O43 - CFD: 2015/02/09 16:13:36 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2015/01/31 20:17:41 - [] D -- C:\Program Files\WIDCOMM
O43 - CFD: 2015/02/09 22:25:22 - [] D -- C:\Program Files\Windows Calendar
O43 - CFD: 2015/02/09 22:25:20 - [] D -- C:\Program Files\Windows Collaboration
O43 - CFD: 2015/02/09 22:25:11 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/17 22:21:38 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2009/01/13 07:04:50 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 2009/01/13 07:02:40 - [] D -- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 2015/02/17 21:51:48 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/07/23 23:01:43 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2015/01/31 20:08:58 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2015/02/09 22:25:19 - [] D -- C:\Program Files\Windows Photo Gallery
O43 - CFD: 2015/02/17 21:52:25 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2015/02/09 22:25:20 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2015/07/23 16:55:30 - [] D -- C:\Program Files\WordShark_1.10.0.19 =>PUP.Optional.WordShark
O43 - CFD: 2015/07/25 11:04:48 - [] D -- C:\Program Files\ZHPDiag
O43 - CFD: 2015/07/24 14:29:10 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/01/31 20:41:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
O43 - CFD: 2015/01/31 20:36:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe
O43 - CFD: 2015/01/31 20:20:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam
O43 - CFD: 2015/04/19 13:18:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone
O43 - CFD: 2015/01/31 20:21:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista
O43 - CFD: 2015/05/06 22:28:37 - [0] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem
O43 - CFD: 2015/02/06 04:34:15 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/02/09 21:19:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/02/09 21:19:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software
O43 - CFD: 2009/01/13 07:27:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2
O43 - CFD: 2008/01/21 04:42:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 2008/01/21 04:42:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/02/20 18:08:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heredis 8
O43 - CFD: 2009/01/13 06:28:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
O43 - CFD: 2009/01/13 06:21:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager
O43 - CFD: 2015/01/31 20:20:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
O43 - CFD: 2006/11/02 14:56:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/21 17:40:15 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/03/01 20:54:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
O43 - CFD: 2015/07/24 00:47:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5
O43 - CFD: 2009/01/13 07:19:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8
O43 - CFD: 2015/07/20 22:18:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/02/07 20:44:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.1
O43 - CFD: 2015/06/12 18:02:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panasonic
O43 - CFD: 2015/07/23 23:16:22 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2006/11/02 14:37:34 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/23 23:01:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2009/01/13 07:04:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2015/07/25 11:04:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2015/07/23 17:30:05 - [] D -- C:\ProgramData\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 2009/01/13 07:05:17 - [] D -- C:\ProgramData\Acer GameZone Console
O43 - CFD: 2009/01/13 07:21:25 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/07/23 16:47:12 - [] D -- C:\ProgramData\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
O43 - CFD: 2015/01/31 20:08:58 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/07/25 10:11:34 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/02/09 21:15:58 - [] D -- C:\ProgramData\Epson
O43 - CFD: 2009/01/13 07:27:34 - [] D -- C:\ProgramData\eSobi
O43 - CFD: 2015/01/31 20:08:58 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/02/06 19:32:06 - [] D -- C:\ProgramData\Google
O43 - CFD: 2015/07/23 16:46:32 - [] D -- C:\ProgramData\InstallSightSDK =>PUP.Optional.WebBar
O43 - CFD: 2009/01/13 06:28:49 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/02/06 12:44:02 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/01/31 20:08:58 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/07/21 16:56:47 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/21 17:40:15 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/01/31 20:08:58 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/02/06 19:33:58 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/07/21 16:30:20 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/07/20 22:18:21 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/07/23 17:30:05 - [] D -- C:\ProgramData\Oenunmoiok
O43 - CFD: 2015/05/30 20:37:46 - [] D -- C:\ProgramData\Panasonic
O43 - CFD: 2015/07/23 17:30:05 - [] D -- C:\ProgramData\PpPVmYi
O43 - CFD: 2009/01/13 06:29:08 - [] D -- C:\ProgramData\Roaming
O43 - CFD: 2009/01/13 06:53:34 - [] D -- C:\ProgramData\SiteAdvisor
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/04/19 13:20:58 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 2006/11/02 15:02:04 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/03/15 15:08:02 - [] D -- C:\ProgramData\WindowsSearch
O43 - CFD: 2015/07/23 17:10:21 - [] D -- C:\ProgramData\yfe
O43 - CFD: 2015/07/23 16:55:02 - [] D -- C:\ProgramData\{ee14b1dd-faaa-3391-ee14-4b1ddfaac777}
O43 - CFD: 2009/01/13 07:21:09 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2015/07/21 00:05:21 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 2015/02/09 21:15:57 - [] D -- C:\Program Files\Common Files\EPSON
O43 - CFD: 2009/01/13 07:01:22 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 2009/01/13 06:28:49 - [] D -- C:\Program Files\Common Files\Intel
O43 - CFD: 2009/01/13 07:19:38 - [] D -- C:\Program Files\Common Files\LightScribe
O43 - CFD: 2015/07/21 00:05:08 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2009/01/13 07:06:08 - [] D -- C:\Program Files\Common Files\Oberon Media
O43 - CFD: 2015/05/30 20:26:12 - [] D -- C:\Program Files\Common Files\Panasonic
O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2015/07/20 23:59:04 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2009/01/13 07:01:41 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 2015/04/29 17:33:54 - [] SHD -- C:\Users\Carré\AppData\Roaming\.#
O43 - CFD: 2015/01/31 20:41:52 - [] D -- C:\Users\Carré\AppData\Roaming\Acer
O43 - CFD: 2009/01/13 07:05:17 - [] D -- C:\Users\Carré\AppData\Roaming\Acer GameZone Console
O43 - CFD: 2015/02/07 22:02:36 - [] D -- C:\Users\Carré\AppData\Roaming\Adobe
O43 - CFD: 2015/04/07 19:45:25 - [] D -- C:\Users\Carré\AppData\Roaming\CyberLink
O43 - CFD: 2015/04/07 20:21:56 - [] D -- C:\Users\Carré\AppData\Roaming\dvdcss
O43 - CFD: 2015/07/20 19:50:03 - [] D -- C:\Users\Carré\AppData\Roaming\Easeware
O43 - CFD: 2015/02/08 22:35:45 - [] D -- C:\Users\Carré\AppData\Roaming\eSobi
O43 - CFD: 2015/02/06 19:32:27 - [] D -- C:\Users\Carré\AppData\Roaming\Google
O43 - CFD: 2015/02/20 18:01:03 - [] D -- C:\Users\Carré\AppData\Roaming\Hyperionics
O43 - CFD: 2015/01/31 20:14:39 - [] D -- C:\Users\Carré\AppData\Roaming\Identities
O43 - CFD: 2015/01/31 20:20:02 - [] D -- C:\Users\Carré\AppData\Roaming\InstallShield
O43 - CFD: 2015/01/31 20:42:51 - [] D -- C:\Users\Carré\AppData\Roaming\Macromedia
O43 - CFD: 2006/11/02 14:37:34 - [0] D -- C:\Users\Carré\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/07/21 17:46:10 - [] SD -- C:\Users\Carré\AppData\Roaming\Microsoft
O43 - CFD: 2015/02/06 19:34:33 - [] D -- C:\Users\Carré\AppData\Roaming\Mozilla
O43 - CFD: 2015/02/07 20:47:08 - [] D -- C:\Users\Carré\AppData\Roaming\OpenOffice.org
O43 - CFD: 2015/07/23 17:02:35 - [] D -- C:\Users\Carré\AppData\Roaming\Optimizer Pro =>PUP.Optional.OptimizerPro
O43 - CFD: 2015/04/12 21:18:43 - [0] D -- C:\Users\Carré\AppData\Roaming\PeerNetworking
O43 - CFD: 2015/07/20 23:28:38 - [0] D -- C:\Users\Carré\AppData\Roaming\Solvusoft
O43 - CFD: 2015/07/23 17:04:17 - [] D -- C:\Users\Carré\AppData\Roaming\Super Optimizer =>PUP.Optional.SuperOptimizer
O43 - CFD: 2015/06/03 21:23:03 - [] D -- C:\Users\Carré\AppData\Roaming\Template
O43 - CFD: 2015/01/31 20:15:49 - [0] D -- C:\Users\Carré\AppData\Roaming\Validity
O43 - CFD: 2015/07/24 18:23:19 - [] D -- C:\Users\Carré\AppData\Roaming\vlc
O43 - CFD: 2015/06/14 15:04:35 - [0] D -- C:\Users\Carré\AppData\Roaming\Windows Live Writer
O43 - CFD: 2015/07/25 11:08:27 - [] D -- C:\Users\Carré\AppData\Roaming\ZHP
O43 - CFD: 2015/07/23 17:19:04 - [] D -- C:\Users\Carré\AppData\Local\20F3CF64-1437670088-DE11-A70E-00A0D1CFE345
O43 - CFD: 2015/07/23 17:02:10 - [] D -- C:\Users\Carré\AppData\Local\2413
O43 - CFD: 2015/04/07 19:45:11 - [] D -- C:\Users\Carré\AppData\Local\Acer Arcade Deluxe
O43 - CFD: 2015/06/05 20:34:47 - [] D -- C:\Users\Carré\AppData\Local\Adobe
O43 - CFD: 2015/01/31 20:12:12 - [0] SHD -- C:\Users\Carré\AppData\Local\Application Data
O43 - CFD: 2015/07/23 16:49:38 - [0] D -- C:\Users\Carré\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
O43 - CFD: 2015/07/23 16:58:58 - [] D -- C:\Users\Carré\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 2015/04/07 19:45:21 - [] D -- C:\Users\Carré\AppData\Local\CyberLink
O43 - CFD: 2015/07/24 00:42:03 - [] D -- C:\Users\Carré\AppData\Local\Downloaded Installations
O43 - CFD: 2015/07/25 10:41:57 - [] D -- C:\Users\Carré\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/07/23 16:56:26 - [] D -- C:\Users\Carré\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/07/23 23:40:57 - [] D -- C:\Users\Carré\AppData\Local\Google
O43 - CFD: 2015/01/31 20:12:12 - [0] SHD -- C:\Users\Carré\AppData\Local\Historique
O43 - CFD: 2015/06/05 20:34:50 - [] D -- C:\Users\Carré\AppData\Local\Macromedia
O43 - CFD: 2015/07/21 16:56:46 - [] D -- C:\Users\Carré\AppData\Local\Microsoft
O43 - CFD: 2015/02/19 23:16:27 - [] D -- C:\Users\Carré\AppData\Local\Microsoft Games
O43 - CFD: 2015/07/21 00:22:44 - [] D -- C:\Users\Carré\AppData\Local\Microsoft Help
O43 - CFD: 2015/03/18 21:25:29 - [] D -- C:\Users\Carré\AppData\Local\MigWiz
O43 - CFD: 2015/02/06 19:34:07 - [] D -- C:\Users\Carré\AppData\Local\Mozilla
O43 - CFD: 2015/07/20 22:19:05 - [] D -- C:\Users\Carré\AppData\Local\NVIDIA
O43 - CFD: 2015/05/30 20:29:46 - [] D -- C:\Users\Carré\AppData\Local\Panasonic
O43 - CFD: 2015/04/07 19:50:46 - [] D -- C:\Users\Carré\AppData\Local\PlayMovie
O43 - CFD: 2015/04/07 21:50:02 - [] D -- C:\Users\Carré\AppData\Local\PowerCinema
O43 - CFD: 2015/07/23 16:55:04 - [] D -- C:\Users\Carré\AppData\Local\RapidMediaConverter =>PUP.Optional.RapidMediaConverter
O43 - CFD: 2015/04/07 19:45:23 - [] D -- C:\Users\Carré\AppData\Local\SoftDMA
O43 - CFD: 2015/07/23 17:05:43 - [] D -- C:\Users\Carré\AppData\Local\Software
O43 - CFD: 2015/07/25 11:09:15 - [] D -- C:\Users\Carré\AppData\Local\Temp
O43 - CFD: 2015/01/31 20:12:12 - [0] SHD -- C:\Users\Carré\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/02/08 22:39:15 - [] D -- C:\Users\Carré\AppData\Local\VirtualStore
O43 - CFD: 2015/07/23 17:27:09 - [] D -- C:\Users\Carré\AppData\Local\WebBar =>PUP.Optional.WebBar
O43 - CFD: 2015/06/14 15:04:36 - [] D -- C:\Users\Carré\AppData\Local\Windows Live Writer
O43 - CFD: 2008/01/21 04:42:46 - [] RD -- C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/23 23:01:43 - [] RD -- C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2009/01/13 07:26:56 - [] D -- C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector
O43 - CFD: 2015/01/31 20:15:29 - [] D -- C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Desktop
O43 - CFD: 2008/01/21 04:42:46 - [] RD -- C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/23 23:16:11 - [] RD -- C:\Users\Carré\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (2) - 1s
O53 - SMSR:HKLM\...\startupreg\BkupTray [Key] . (.Copyright (c)2005-2007, NewTech Infosystems, Inc. All - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe

---\\ Liste des pilotes du système (SDL) (O58) (85) - 15s
O58 - SDL:2008/01/21 04:23:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968]
O58 - SDL:2008/01/21 04:23:25 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600]
O58 - SDL:2008/01/21 04:23:26 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432]
O58 - SDL:2008/01/21 04:23:27 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560]
O58 - SDL:2008/02/29 09:13:38 A . (.Agere Systems - SoftModem Device Driver.) -- C:\Windows\System32\drivers\AGRSM.sys [1202560]
O58 - SDL:2015/01/31 20:15:56 A . (.Alfa Corporation - Windows 2000 Mini-Filter Monitor Network Ed.) -- C:\Windows\System32\drivers\AlfaFF.sys [43184]
O58 - SDL:2008/01/21 04:23:00 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464]
O58 - SDL:2008/01/21 04:23:23 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416]
O58 - SDL:2008/01/21 04:23:24 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928]
O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808]
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2007/03/29 21:46:22 A . (.Broadcom Corporation. - Bluetooth Audio Device.) -- C:\Windows\System32\drivers\btwaudio.sys [79664]
O58 - SDL:2007/02/27 08:20:28 A . (.Broadcom Corporation. - Broadcom Bluetooth AVDT Service.) -- C:\Windows\System32\drivers\btwavdt.sys [81200]
O58 - SDL:2007/02/27 08:20:24 A . (.Broadcom Corporation. - Bluetooth Remote Control HID Minidriver.) -- C:\Windows\System32\drivers\btwrchid.sys [16432]
O58 - SDL:2008/01/21 04:23:00 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000]
O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272]
O58 - SDL:2006/11/02 15:29:36 A . (.Dritek System Inc. - Dritek PS2 Keyboard Filter Driver.) -- C:\Windows\System32\drivers\DKbFltr.sys [21264]
O58 - SDL:2008/01/21 04:23:24 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784]
O58 - SDL:2008/01/21 04:23:22 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584]
O58 - SDL:2008/01/21 04:23:26 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504]
O58 - SDL:2008/07/20 18:44:44 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStor.sys [324120]
O58 - SDL:2008/01/21 04:23:23 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064]
O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576]
O58 - SDL:2007/01/26 08:32:18 A . (...) -- C:\Windows\System32\drivers\int15.sys [69632]
O58 - SDL:2008/06/02 10:20:12 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15_64.sys [17952]
O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944]
O58 - SDL:2007/12/18 18:12:12 A . (.ITE Tech. Inc. - ITE Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\itecir.sys [54784]
O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944]
O58 - SDL:2008/05/19 18:23:00 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E60x86.sys [47104]
O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312]
O58 - SDL:2008/01/21 04:23:25 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656]
O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312]
O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288]
O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616]
O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384]
O58 - SDL:2008/04/28 00:29:26 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETw5v32.sys [3658752]
O58 - SDL:2011/11/01 01:44:14 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwNv32.sys [7346176]
O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160]
O58 - SDL:2008/01/30 11:52:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [14848]
O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608]
O58 - SDL:2008/09/24 23:39:48 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda32v.sys [45600]
O58 - SDL:2008/12/05 12:24:00 A . (.NVIDIA Corporation - NVIDIA Compatible Windows Vista Kernel Mode.) -- C:\Windows\System32\drivers\nvlddmkm.sys [7538560]
O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968]
O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112]
O58 - SDL:2008/07/29 18:53:10 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Filter Dr.) -- C:\Windows\System32\drivers\psdfilter.sys [18992]
O58 - SDL:2008/07/29 18:53:10 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Named Pip.) -- C:\Windows\System32\drivers\PSDNServ.sys [16944]
O58 - SDL:2008/07/29 18:53:12 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Virtual D.) -- C:\Windows\System32\drivers\PSDVdisk.sys [60464]
O58 - SDL:2008/01/21 04:23:24 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360]
O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088]
O58 - SDL:2008/05/07 13:22:50 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2134424]
O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2008/01/21 04:23:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808]
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944]
O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848]
O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920]
O58 - SDL:2008/04/04 11:26:56 A . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [196784]
O58 - SDL:2008/10/27 13:15:48 A . (.EnTech Taiwan - TVicPort Driver for Windows NT/2000/XP.) -- C:\Windows\System32\drivers\TVicPort.sys [14544]
O58 - SDL:2008/01/30 11:51:50 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [13824]
O58 - SDL:2008/01/21 04:23:20 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648]
O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408]
O58 - SDL:2008/01/21 04:23:23 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816]
O58 - SDL:2008/05/26 06:44:14 A . (.Validity Sensors, Inc. - Validity Fingerprint Scanner USB Driver.) -- C:\Windows\System32\drivers\vfs101x.sys [40752]
O58 - SDL:2008/01/21 04:23:00 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024]
O58 - SDL:2008/01/21 04:23:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616]
O58 - SDL:2008/05/26 12:54:28 A . (.CyberLink - WIN32.) -- C:\Windows\System32\drivers\WSVD.sys [81704]
O58 - SDL:2008/10/27 13:15:48 A . (.Zeal SoftStudio - zntport.) -- C:\Windows\System32\drivers\zntport.sys [6080]
O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (7) - 61s
O61 - LFC: 2015/07/24 18:36:08 A . (.Miray Software AG.) -- C:\Users\Carré\Downloads\hdclone-free-edition_5-1-5_fr_56930.exe [21722856]
O61 - LFC: 2015/07/24 00:36:17 A . (.NewTech Infosystems, Inc..) -- C:\Users\Carré\Downloads\NTI_Backup_Now_5.5.0.116_Advanced_Edition_Update.exe [298015200]
O61 - LFC: 2015/07/22 22:44:43 A . (..) -- C:\Users\Carré\Downloads\6305_Vista_Win7_PG537\6305_Vista_PG537\layout.bin [473]
O61 - LFC: 2015/07/17 19:58:08 A . (..) -- C:\Users\Carré\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys [1]
O61 - LFC: 2015/07/25 10:31:31 A . (..) -- C:\Users\Carré\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [72403]
O61 - LFC: 2015/07/20 12:01:34 A . (..) -- C:\Users\Carré\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5121613]
O61 - LFC: 2015/07/24 15:25:17 A . (..) -- C:\Users\Carré\AppData\Local\NVIDIA\NvBackend\Packages\00007af6\DAO.19793760.exe [5917592]

---\\ Associations Shell Spawning (O67) (1) - 1s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 4s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 38s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {C4C1B842-B9FB-419E-BE61-926B8DC426F5} [DefaultScope] - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (31) - 3s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [601600]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (9) - 6s
O87 - FAEL: "{372DF4B3-843F-4759-A96D-F4FE7E58D795}" [In-None-P6-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{164360B1-239A-4F06-8E29-C781303F350B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{69260472-CFAF-422F-B1DD-6CFBDF892DF2}" [In-None-P6-TRUE] .(.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O87 - FAEL: "{F406E2F6-2C0D-445C-BCFD-FE9807096399}" [In-None-P17-TRUE] .(.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O87 - FAEL: "{DA157BAC-CEBA-4A58-801A-B93BE8530D12}" [In-None-P6-TRUE] .(.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O87 - FAEL: "{E2D80A1F-E27C-4D69-9F6B-22F26AA11B96}" [In-None-P17-TRUE] .(.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O87 - FAEL: "{8FCF3986-9F9A-438F-81B4-7EA0E5B4924B}" [In-None-P17-TRUE] .(.Acer Corp. - Acer Arcade Deluxe PlayMovie.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PlayMovie.exe
O87 - FAEL: "{DF8D2444-BB29-4319-81D6-DE375FCC0B4E}" [In-None-P17-TRUE] .(.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O87 - FAEL: "{74FB0B0A-AB07-465B-B81B-78C53FEA69C5}" [In-None-P17-TRUE] .(.Acer Incoporated - Acer Video Quality Enhancement.) -- C:\Program Files\Acer\Acer VCM\VC.exe

---\\ Scan Additionnel (O88) (21) - 0s
C:\Windows\Tasks\EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E}.job =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\EPSON XP-510 Series Update {6D07D57E-BDC2-4593-B6C3-7E0156AC0D7E} =>PUP.Optional.CrossRider
C:\Program Files\20F3CF64-1437662814-DE11-A70E-00A0D1CFE345 =>PUP.Optional.CrossRider
C:\Program Files\20F3CF64-1437663040-DE11-A70E-00A0D1CFE345 =>PUP.Optional.CrossRider
C:\Program Files\Convesoft =>PUP.Optional.Convesoft
C:\Program Files\DriverTurbo =>PUP.Optional.DriverTurbo
C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files\gmsd_fr_002020038 =>PUP.Optional.CrossRider
C:\Program Files\On Stage =>PUP.Optional.OnStage
C:\Program Files\Optimizer Pro 3.99 =>PUP.Optional.OptimizerPro
C:\Program Files\shopperz22072015 =>PUP.Optional.Shopperz
C:\Program Files\WordShark_1.10.0.19 =>PUP.Optional.WordShark
C:\ProgramData\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
C:\ProgramData\InstallSightSDK =>PUP.Optional.WebBar
C:\Users\Carré\AppData\Roaming\Optimizer Pro =>PUP.Optional.OptimizerPro
C:\Users\Carré\AppData\Roaming\Super Optimizer =>PUP.Optional.SuperOptimizer
C:\Users\Carré\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
C:\Users\Carré\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Users\Carré\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\Carré\AppData\Local\RapidMediaConverter =>PUP.Optional.RapidMediaConverter
C:\Users\Carré\AppData\Local\WebBar =>PUP.Optional.WebBar

---\\ Récapitulatif des éléments trouvées sur votre station (13) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.Convesoft
http://www.nicolascoolman.fr/blog =>PUP.Optional.DriverTurbo
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/blog =>PUP.Optional.OnStage
http://www.nicolascoolman.fr/pup-optimizerpro/ =>PUP.Optional.OptimizerPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.Shopperz
http://www.nicolascoolman.fr/pup-wordshark/ =>PUP.Optional.WordShark
http://www.nicolascoolman.fr/blog =>PUP.Optional.BreakingNewsAlert
http://www.nicolascoolman.fr/blog =>PUP.Optional.WebBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.SuperOptimizer
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/blog =>PUP.Optional.RapidMediaConverter

~ End of the scan, 33261 items in 691 seconds (809)(0)()

Publicité


Signaler le contenu de ce document

Publicité