cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.26.127 Par Nicolas Coolman (2015/08/26)
~ Démarré par Cash Converters (Administrator) (2015/08/27 20:29:12)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Cash Converters\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Cash Converters\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 40.0.2 (x86 fr) v40.0.2
MSIE: Internet Explorer v11.0.9600.17842

---\\ Informations sur les produits Windows (4) - 9s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK (Demand)
Windows Activation Technologies : OK

---\\ Logiciels de protection (1) - 1s
Windows Defender (Deactivate)

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4003.1 MB (41% free)
~ System Restore: Activé (Enable)
~ System drive C: has 755 GB free of 933 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: KABUTO
~ User Name: Cash Converters
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 755 GB free of 933 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368] ©
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] ©
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920] ©
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2426880] ©
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416] ©
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] ©
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] ©
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200] ©
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] ©
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] ©
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] ©
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] ©
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] ©
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] ©
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] ©
[MD5.31233271EDE50D1BBB220F78AFA60486] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [405504] ©
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624] ©
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] ©
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] ©
[MD5.1BD3022FD6E450B00DE560265638FD2A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] ©
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] ©
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520] ©
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] ©

---\\ Processus lancés (53) - 4s
[MD5.FB50E60564ED30DDC855F0CE435C8467] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 327.0.) -- C:\WINDOWS\system32\nvvsvc.exe [920864] [PID.956] ©
[MD5.F73AE30945F674DF57D2CBFD6397C85F] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1171744] [PID.1016] ©
[MD5.FB50E60564ED30DDC855F0CE435C8467] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 327.0.) -- C:\WINDOWS\system32\nvvsvc.exe [920864] [PID.80] ©
[MD5.69BF08F9B599117694600021AE1D6A59] - (.Qualcomm Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456] [PID.1568]
[MD5.5C6ADD0111E1C6601B5911F7ACF85BB8] - (.Broadcom Corp. - Broadcom Card Reader Service.) -- C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640] [PID.1592] ©
[MD5.D93FC9EF129C214D6E91DFE3DF98C38C] - (.Acer Incorporated - CCD Monitor Service.) -- C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2449552] [PID.1716] ©
[MD5.D2BCDD6BBFCD068090C109854FCEE079] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [350544] [PID.1840] ©
[MD5.0F32048BF3EA2A85FE3AC48E8E7B7C85] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1353720] [PID.1936] ©
[MD5.171CCFEB86294AFAA3609DB3899A841E] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656] [PID.1960] ©
[MD5.1FF8478AFF80ABF11109C5CFF94262C1] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [8704] [PID.1996] ©
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1132] ©
[MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.1336] ©
[MD5.337FA50FFDED5E2BC94B36BF625AB681] - (.IObit - Product Updater.) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472] [PID.1544] ©
[MD5.A9AE582FE2240E7FB0E9C11E1CC762A0] - (.NTI Corporation - Backup Manager Module.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136] [PID.1684] ©
[MD5.4B1E6975B565883985FB43C3FD6C88C6] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432] [PID.1304] ©
[MD5.5D989663ECA1558D267C0B8E0EF0F77D] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.2104] ©
[MD5.CD421DDB5C6E5458CE52EDC36DE7DC5B] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76152] [PID.2188]
[MD5.F61333867216EDE1A09A7C55FEDCB6A8] - (.Dritek System INC. - RfBtnSvc Application.) -- C:\Windows\RfBtnSvc64.exe [96880] [PID.2208] ©
[MD5.D29C0DC460F6845833642F916818AAFC] - (.RaMMicHaeL - Unchecky Service.) -- C:\Program Files (x86)\Unchecky\bin\Unchecky_svc.exe [163576] [PID.2352] ©
[MD5.ECCABF393C3BFDCAAB2A215817A61AEA] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7902864] [PID.2508] ©
[MD5.5D989663ECA1558D267C0B8E0EF0F77D] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.2608] ©
[MD5.302337967FBA91C40745B96A42A39CC5] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [475984] [PID.2644] ©
[MD5.4DE85CCAD1993358F02B39462159B0A0] - (.RaMMicHaeL - Unchecky Background Process.) -- C:\Program Files (x86)\Unchecky\bin\Unchecky_bg.exe [401656] [PID.2672] ©
[MD5.AD39F6B4E8F3A06555BE16949F923BB1] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3008824] [PID.2732] ©
[MD5.0EFF23C3D910380746D4F56BA5C746C4] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1192784] [PID.2328] ©
[MD5.BB8609D796C1D93561DBFBB11A920168] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2450208] [PID.3664] ©
[MD5.2DC2C370F785AD5B2717A205238B03E2] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704] [PID.4208] ©
[MD5.CFDF0015D4DC1EE66B395054EB330B06] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [5314192] [PID.4376] ©
[MD5.B59448BA0A7FB008918DE34365F8C79C] - (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736] [PID.4464]
[MD5.834A309C2FDF52FC09353F348CFE1235] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184] [PID.4480] ©
[MD5.C73D24BCBE6667F9BE03BFCAC0E92C4B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1212048] [PID.4512] ©
[MD5.2916AA6AA068423AA47DD6CD39438C48] - (...) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe [12928] [PID.4608]
[MD5.0C3154D0620F974AD5C4E8D87626C8CF] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [183216] [PID.4700] ©
[MD5.E4AA3D28753EF9DB333FE40079993B09] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [411056] [PID.4752] ©
[MD5.CF40080765D6F66FA93318C0DB6C7D1F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [453552] [PID.4844] ©
[MD5.A118C52E94780AEBFA52D05A3313CCF6] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5595848] [PID.4924] ©
[MD5.8C3C61A8365498EDD6140003BCDDDDD8] - (.NTI Corporation - Acer Backup Manager.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [624192] [PID.4948] ©
[MD5.FF7CB5344094510654C240486B4B1B3F] - (.Dritek System Inc. - RF Button Helper.) -- C:\Program Files (x86)\RadioController\RfBtnHelper.exe [111216] [PID.5048] ©
[MD5.C583DB2FBAEBB1020D17C51AB3495112] - (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Dolby PCEE4\pcee4.exe [508256] [PID.5084]
[MD5.C832579FBB3B17A5856ADE4082782D25] - (.Dritek System Inc. - MMDx64Fx Application.) -- C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe [229200] [PID.4472] ©
[MD5.49619CF805FE0BCBD7AAC8AF9458CA6C] - (.Intel Corporation - igfxext Module.) -- C:\WINDOWS\system32\igfxext.exe [266152] [PID.4796] ©
[MD5.E659E38D2D51DF5817C91D7386920C7E] - (.CyberLink - MediaEspresso DeviceDetector.) -- C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [995856] [PID.5096] ©
[MD5.D78C53AC8418D9E5811D837103E594CE] - (.IObit - .) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [182048] [PID.2260] ©
[MD5.B3759605684496BD5D53196412FEDF7E] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [126264] [PID.5668] ©
[MD5.5C5552BF36C443746A9808EB632B3947] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658064] [PID.5896] ©
[MD5.10EB5BFF110B442BABEF074EA5845FC7] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe [387216] [PID.5972] ©
[MD5.1C1DF0FA3ED8892C42DF7C8962E328BA] - (.© All rights reserved - iuEmailOutlookAgent.) -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [25232] [PID.6076]
[MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.6124] ©
[MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.1428] ©
[MD5.46D071641C82D065D8F66C7740920A75] - (...) -- C:\Program Files\WindowsApps\A278AB0D.OrderChaos_2.6.0.19_x86__h6adky7gbf63m\OrderAndChaos.exe [13619712] [PID.3532]
[MD5.25E8FAE159E9D28B490A936FD41C53D6] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824] [PID.1100] ©
[MD5.56D71C1395A02E1D056D7196C84B1A6A] - (.BitTorrent Inc. - µTorrent.) -- C:\Users\Cash Converters\AppData\Roaming\uTorrent\uTorrent.exe [1688656] [PID.7096]
[MD5.E7EDF5F9D988069C62495EF24F419B32] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Cash Converters\AppData\Roaming\Skype\My Skype Received Files\ZHPDiag3.exe [1908224] [PID.6880] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (4) - 0s
G2 - GCE: Preference [User Data\Default] [gmlllbghnfkpflemihljekbapjopfjik] Bookmark Manager
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 0s
P2 - EXT FILE: (...) -- C:\Users\Cash Converters\AppData\Roaming\Mozilla\Firefox\Profiles\mc1idfsq.default-1440699523389\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll ©
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (22) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (15558)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Qualcomm Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll

---\\ Applications lancées au démarrage du système (15) - 0s
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ©
O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe ©
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ©
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ©
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe ©
O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe ©
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©
O4 - HKLM\..\Wow6432Node\Run: [LManager] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [RadioController] . (.Dritek System Inc. - RF Button Helper.) -- C:\Program Files (x86)\RadioController\RfBtnHelper.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Dolby Home Theater v4] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Dolby PCEE4\pcee4.exe
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
O4 - HKUS\S-1-5-21-830954361-3471417973-2113554580-1002\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1

---\\ Protocole additionnel (20) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©

---\\ Liste des services NT non Microsoft et non désactivés (22) - 1s
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) . (.Broadcom Corp. - Broadcom Card Reader Service.) - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe ©
O23 - Service: CCDMonitorService (CCDMonitorService) . (.Acer Incorporated - CCD Monitor Service.) - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe ©
O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe ©
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe ©
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe ©
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe ©
O23 - Service: McAfee Anti-Malware Core (mfecore) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe ©
O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NTI Corporation - Backup Manager Module.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe ©
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe ©
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 327.0.) - C:\WINDOWS\system32\nvvsvc.exe ©
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe (.not file.)
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC. - RfBtnSvc Application.) - C:\Windows\RfBtnSvc64.exe ©
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: Unchecky (Unchecky) . (.RaMMicHaeL - Unchecky Service.) - C:\Program Files (x86)\Unchecky\bin\Unchecky_svc.exe ©
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Tâches planifiées en automatique (31) - 4s
[MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.1E1324A5D695E8A8268D7D253282C761] [APT] [ALU] (.(C) All rights reserved.) -- C:\Program Files (x86)\Acer\Live Updater\updater.exe [3356816]
[MD5.BD0BA490E0300E859DB99DA3AB024371] [APT] [ALUAgent] (.(C) All rights reserved.) -- C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [39568]
[MD5.749C9E51E6D5A5AC23D2B4B8B63CAFE9] [APT] [avastBCLRestartS-1-5-21-830954361-3471417973-2113554580-1002] (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] ©
[MD5.E659E38D2D51DF5817C91D7386920C7E] [APT] [DeviceDetector] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [995856] ©
[MD5.22C0E1E018D5A297CDD620D27C215E65] [APT] [Driver Booster Scan] (.IObit.) -- C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [67392] ©
[MD5.9DD118F929A8108738BA976A60B8270B] [APT] [Driver Booster SkipUAC (Cash Converters)] (.IObit.) -- C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [4139328] ©
[MD5.5B7B8B4B20CE89719FF58D82A72198A4] [APT] [Driver Booster Update] (.IObit.) -- C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [1392960] ©
[MD5.9FACF68EE6BDED00108002C61517D08A] [APT] [Game_Booster_AutoUpdate] (.IObit.) -- C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [1039192] ©
[MD5.00000000000000000000000000000000] [APT] [iuBrowserIEAgent] (...) -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe (.not file.) [0]
[MD5.1C1DF0FA3ED8892C42DF7C8962E328BA] [APT] [iuEmailOutlookAgent] (.© All rights reserved.) -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [25232]
[MD5.CFDF0015D4DC1EE66B395054EB330B06] [APT] [Power Management] (.Acer Incorporated.) -- C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [5314192] ©
[MD5.AD39F6B4E8F3A06555BE16949F923BB1] [APT] [Synaptics TouchPad Enhancements] (.Synaptics Incorporated.) -- \Program Files\Synaptics\SynTP\SynTPEnh.exe [3008824] ©
[MD5.FAB7CC12103481A4934AA136F8508F58] [APT] [Uninstaller_SkipUac_Cash_Converters] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [8814368] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job [264] ©
O39 - APT: Uninstaller_SkipUac_Cash_Converters - (.IObit.) -- C:\WINDOWS\Tasks\Uninstaller_SkipUac_Cash_Converters.job [308] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890] ©
O39 - APT: ALU - (.(C) All rights reserved.) -- C:\WINDOWS\System32\Tasks\ALU [3626]
O39 - APT: ALUAgent - (.(C) All rights reserved.) -- C:\WINDOWS\System32\Tasks\ALUAgent [4402]
O39 - APT: avastBCLRestartS-1-5-21-830954361-3471417973-2113554580-1002 - (.Mozilla Corporation.) -- C:\WINDOWS\System32\Tasks\avastBCLRestartS-1-5-21-830954361-3471417973-2113554580-1002 [3270] ©
O39 - APT: DeviceDetector - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\DeviceDetector [3200] ©
O39 - APT: Driver Booster Scan - (.IObit.) -- C:\WINDOWS\System32\Tasks\Driver Booster Scan [3234] ©
O39 - APT: Driver Booster SkipUAC (Cash Converters) - (.IObit.) -- C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Cash Converters) [2874] ©
O39 - APT: Driver Booster Update - (.IObit.) -- C:\WINDOWS\System32\Tasks\Driver Booster Update [3178] ©
O39 - APT: Game_Booster_AutoUpdate - (.IObit.) -- C:\WINDOWS\System32\Tasks\Game_Booster_AutoUpdate [3180] ©
O39 - APT: iuBrowserIEAgent - (...) -- C:\WINDOWS\System32\Tasks\iuBrowserIEAgent [3320]
O39 - APT: iuEmailOutlookAgent - (.© All rights reserved.) -- C:\WINDOWS\System32\Tasks\iuEmailOutlookAgent [3326]
O39 - APT: Power Management - (.Acer Incorporated.) -- C:\WINDOWS\System32\Tasks\Power Management [2914] ©
O39 - APT: Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements [2982] ©
O39 - APT: Uninstaller_SkipUac_Cash_Converters - (.IObit.) -- C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Cash_Converters [2428] ©

---\\ Logiciels installés (90) - 11s
O42 - Logiciel: WinRAR 5.21 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: Acer Recovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} ©
O42 - Logiciel: Acer Device Fast-lane - (.Acer Incorporated.) [HKLM][64Bits] -- {3F62D2FD-13C1-49A2-8B5D-47623D9460D7} ©
O42 - Logiciel: ESET Smart Security - (.ESET, spol s r. o..) [HKLM][64Bits] -- {7C4B5814-9E71-4481-9769-00B8C11D0656}
O42 - Logiciel: Acer Instant Update Service - (.Acer Incorporated.) [HKLM][64Bits] -- {8215A318-CC27-435E-B3EA-2E3443C8998C} ©
O42 - Logiciel: Acer Power Management - (.Acer Incorporated.) [HKLM][64Bits] -- {91F52DE4-B789-42B0-9311-A349F10E5479} ©
O42 - Logiciel: NVIDIA Pilote graphique 327.02 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA GeForce Experience 2.4.5.57 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} ©
O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {F0A7DF2F-0BE0-470F-B137-D7A19F977189} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} ©
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Cheat Engine 6.4 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engine 6.4_is1 ©
O42 - Logiciel: Driver Booster 2.1 - (.IObit.) [HKLM][64Bits] -- Driver Booster_is1 ©
O42 - Logiciel: Farming Simulator 15 - (.GIANTS Software.) [HKLM][64Bits] -- FarmingSimulator2015INT_is1 ©
O42 - Logiciel: ffdshow [rev 3154] [2009-12-09] - (...) [HKLM][64Bits] -- ffdshow_is1
O42 - Logiciel: Game Booster 3 - (.IObit.) [HKLM][64Bits] -- Game Booster_is1 ©
O42 - Logiciel: Le Seigneur des Anneaux: La Communauté de L'Anneau - (.Nom de votre société.) [HKLM][64Bits] -- InstallShield_{49C98C60-BAC3-4C92-AF4F-E890FD312D60}
O42 - Logiciel: Acer Backup Manager - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{9DDDF20E-9FD1-4434-A43E-E7889DBC9420} ©
O42 - Logiciel: NTI Media Maker 9 - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44} ©
O42 - Logiciel: CyberLink MediaEspresso 6.5 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384} ©
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1 ©
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall ©
O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager
O42 - Logiciel: Visual Studio 2005 Tools pour Office Second Edition Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2005 Tools for Office Runtime ©
O42 - Logiciel: Mozilla Firefox 40.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 40.0.2 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc
O42 - Logiciel: Spotify - (.Spotify AB.) [HKLM][64Bits] -- Spotify ©
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam ©
O42 - Logiciel: Tribes: Ascend - (.Hi-Rez Studios.) [HKLM][64Bits] -- Steam App 17080 ©
O42 - Logiciel: Dungeonland - (.Critical Studio.) [HKLM][64Bits] -- Steam App 218130
O42 - Logiciel: Warframe - (.Digital Extremes.) [HKLM][64Bits] -- Steam App 230410 ©
O42 - Logiciel: Haunted Memories - (.MadMan Theory Games.) [HKLM][64Bits] -- Steam App 241640
O42 - Logiciel: DC Universe Online - (.Daybreak Games.) [HKLM][64Bits] -- Steam App 24200
O42 - Logiciel: Toribash - (.Nabi Studios.) [HKLM][64Bits] -- Steam App 248570
O42 - Logiciel: Aura Kingdom - (.X-Legend.) [HKLM][64Bits] -- Steam App 268420
O42 - Logiciel: Trove - (.Trion Worlds.) [HKLM][64Bits] -- Steam App 304050 ©
O42 - Logiciel: Jigoku Kisetsukan: Sense of the Seasons - (...) [HKLM][64Bits] -- Steam App 368950
O42 - Logiciel: Unchecky v0.3.9 - (.RaMMicHaeL.) [HKLM][64Bits] -- Unchecky ©
O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Visual Studio Tools for the Office system 3.0 Runtime ©
O42 - Logiciel: Canaux de jeu - (.WildTangent, Inc..) [HKLM][64Bits] -- WildTangentGameProvider-acer-main ©
O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-0ac91d90-b124-4c96-90b4-4a257d52ea3e © =>.WildTangent
O42 - Logiciel: Tales of Lagoona - (.WildTangent.) [HKLM][64Bits] -- WTA-165b7802-92c1-4013-b429-033e23d1c4bd © =>.WildTangent
O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-536c3cd9-e788-4572-9bcc-53738ab0b866 © =>.WildTangent
O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-654a988a-6b46-4328-ab4c-b413036bd3af © =>.WildTangent
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-75a22df3-ad17-4372-917b-058fbedcbe27 © =>.WildTangent
O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-80e43624-02ae-41da-989e-a9b0252ac0ec © =>.WildTangent
O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-8f0718b6-d825-49db-8423-4205716f9219 © =>.WildTangent
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-93744cc6-3604-435a-b67d-6c157dad8c9e © =>.WildTangent
O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WTA-95e7f135-7d6a-4c18-bf20-8b010cdead7d © =>.WildTangent
O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WTA-a40a40a1-229b-4193-abea-5203c9dc4ee2 © =>.WildTangent
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WTA-baa08809-558e-41e5-90c3-1a35f2600ef5 © =>.WildTangent
O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-e456d86d-e253-4847-9a50-f0013bc6e8c3 © =>.WildTangent
O42 - Logiciel: Delicious: Emily's True Love Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-f51fb4ea-e1ee-48b1-bd38-79dab2993610 © =>.WildTangent
O42 - Logiciel: Island Tribe - (.WildTangent.) [HKLM][64Bits] -- WTA-fdae97a5-3a4a-4f7e-98fb-6f95da44ef08 © =>.WildTangent
O42 - Logiciel: Office Addin 2003 - (.Acer.) [HKLM][64Bits] -- {1FCC073B-CC01-4443-AD20-E559F66E6E83} ©
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} ©
O42 - Logiciel: Qualcomm Atheros WLAN and Bluetooth Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} ©
O42 - Logiciel: clear.fi SDK- Movie 2 - (.CyberLink Corp..) [HKLM][64Bits] -- {35DA427D-BB23-49B8-9AFD-CFFCFE3B708D} ©
O42 - Logiciel: Unigine Heaven Benchmark v2.1 - (.Unigine Corp..) [HKLM][64Bits] -- {38468127-9E6F-4FC9-B5F7-42D4AD437D96}
O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC} ©
O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- {3D9CB654-99AD-4301-89C6-0D12A790767C} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: Office Addin - (.Acer.) [HKLM][64Bits] -- {6D2BBE1D-E600-4695-BA37-0B0E605542CC} ©
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer © =>.WildTangent
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FB53850-246A-3507-8ADE-0060093FFEA6} ©
O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258 ©
O42 - Logiciel: Backup Manager v4 - (.NTI Corporation.) [HKLM][64Bits] -- {9DDDF20E-9FD1-4434-A43E-E7889DBC9420} ©
O42 - Logiciel: AcerCloud - (.Acer Incorporated.) [HKLM][64Bits] -- {A5AD0B17-F34D-49BE-A157-C8B3D52ACD13} ©
O42 - Logiciel: Dolby Home Theater v4 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B26438B4-BF51-49C3-9567-7F14A5E40CB9}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B455E95A-B804-439F-B533-336B1635AE97} ©
O42 - Logiciel: clear.fi Photo - (.Acer Incorporated.) [HKLM][64Bits] -- {B5AD89F2-03D3-4206-8487-018298007DD0} ©
O42 - Logiciel: AcerCloud Docs - (.Acer Incorporated.) [HKLM][64Bits] -- {CA4FE8B0-298C-4E5D-A486-F33B126D6A0A} ©
O42 - Logiciel: NTI Media Maker 9 - (.NTI Corporation.) [HKLM][64Bits] -- {D3D5C4E8-040F-4C6F-8105-41D43CF94F44} ©
O42 - Logiciel: CyberLink MediaEspresso 6.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {E3739848-5329-48E3-8D28-5BBD6E8BE384} ©
O42 - Logiciel: clear.fi Media - (.Acer Incorporated.) [HKLM][64Bits] -- {E9AF1707-3F3A-49E2-8345-4F2D629D0876} ©
O42 - Logiciel: clear.fi SDK - Video 2 - (.CyberLink Corp..) [HKLM][64Bits] -- {EBA33CAD-E071-48d5-A168-FBA4EEB42E93} ©
O42 - Logiciel: Live Updater - (.Acer Incorporated.) [HKLM][64Bits] -- {EE26E302-876A-48D9-9058-3129E5B99999} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} ©
O42 - Logiciel: Dofus - (.Ankama.) [HKCU][64Bits] -- 2744A393-554C-4E35-A24F-DEF0392B4484-2
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai
O42 - Logiciel: DC Universe Online Live - (.Sony Online Entertainment.) [HKCU][64Bits] -- SOE-DC Universe Online Live
O42 - Logiciel: EverQuest - (.Sony Online Entertainment.) [HKCU][64Bits] -- SOE-EverQuest
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (157) - 11s
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\ATHEROS
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\Browsers+Apps+1.1-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Canon
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Dritek
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat
HKLM\SOFTWARE\Wow6432Node\EgisTec IPS
HKLM\SOFTWARE\Wow6432Node\EgisTec MyWinLockerSuite
HKLM\SOFTWARE\Wow6432Node\ESET
HKLM\SOFTWARE\Wow6432Node\FFOnline
HKLM\SOFTWARE\Wow6432Node\FNOnlineFB
HKLM\SOFTWARE\Wow6432Node\GamersFirst
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Gravity
HKLM\SOFTWARE\Wow6432Node\Hi-Rez Studios
HKLM\SOFTWARE\Wow6432Node\HiRez Studios
HKLM\SOFTWARE\Wow6432Node\IcarusStudios
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Speed Checker-nv =>PUP.Optional.InternetSpeedChecker
HKLM\SOFTWARE\Wow6432Node\IObit
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Macrovision
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NewTech Infosystems
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OEM
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Panzar Studio
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WiFi Driver Installation
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WLAN and Bluetooth Client Installation Program
HKLM\SOFTWARE\Wow6432Node\Razer
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Reg
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\Surreal
HKLM\SOFTWARE\Wow6432Node\Turbine
HKLM\SOFTWARE\Wow6432Node\Unchecky
HKLM\SOFTWARE\Wow6432Node\us army
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\Even Balance
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Aeria Games
HKCU\SOFTWARE\AhnLab
HKCU\SOFTWARE\Akamai
HKCU\SOFTWARE\Ankama
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Boneloaf
HKCU\SOFTWARE\Burda
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CinemaPlus-3.2cV08.06-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Cliffhanger
HKCU\SOFTWARE\ClkApp
HKCU\SOFTWARE\Cmune
HKCU\SOFTWARE\Critical Studio
HKCU\SOFTWARE\Cryptic
HKCU\SOFTWARE\DefaultCompany
HKCU\SOFTWARE\Digital Extremes
HKCU\SOFTWARE\Dritek
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Epic Games
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\EXE Games
HKCU\SOFTWARE\Freejam
HKCU\SOFTWARE\FREELIVES
HKCU\SOFTWARE\Gaijin
HKCU\SOFTWARE\GameInsight
HKCU\SOFTWARE\Geoplace
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Gravitysensation
HKCU\SOFTWARE\IGA
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\INCAInternet
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JumpStart
HKCU\SOFTWARE\JustCause2
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Lightmare Studios
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MAIET Entertainment
HKCU\SOFTWARE\McAfee
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MTG
HKCU\SOFTWARE\Noble Empire
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OEM
HKCU\SOFTWARE\OpenAutomate
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Panzar Studio
HKCU\SOFTWARE\Payload
HKCU\SOFTWARE\PinballArcade
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Proton Studio Inc
HKCU\SOFTWARE\QMaXGames
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Rubicon
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\The Creative Assembly
HKCU\SOFTWARE\The Fun Pimps
HKCU\SOFTWARE\thriXXX
HKCU\SOFTWARE\Tom Francis
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unchecky
HKCU\SOFTWARE\Unigine
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Unity Technologies
HKCU\SOFTWARE\US Army
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WildTangent
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Wyrmbyte LLC
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (277) - 12s
O43 - CFD: 2014/12/05 18:38:14 - [] D -- C:\Program Files (x86)\3D-Coat-V4
O43 - CFD: 2013/03/05 22:35:41 - [] D -- C:\Program Files (x86)\Acer
O43 - CFD: 2015/01/17 19:21:11 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2015/06/24 21:14:05 - [] D -- C:\Program Files (x86)\Cheat Engine 6.4
O43 - CFD: 2015/08/27 19:44:10 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2012/12/14 04:10:15 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/08/21 19:04:37 - [] D -- C:\Program Files (x86)\Farming Simulator 2015
O43 - CFD: 2014/12/03 18:48:01 - [] D -- C:\Program Files (x86)\ffdshow
O43 - CFD: 2015/05/05 14:15:52 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/08/26 10:51:41 - [] D -- C:\Program Files (x86)\Hi-Rez Studios
O43 - CFD: 2015/08/26 06:03:08 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2014/09/16 19:41:22 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/06/15 15:48:50 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/06/15 14:40:35 - [] D -- C:\Program Files (x86)\IObit
O43 - CFD: 2015/06/15 14:36:14 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2013/03/05 22:00:18 - [] D -- C:\Program Files (x86)\Launch Manager
O43 - CFD: 2013/03/05 22:28:55 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2014/09/21 12:26:00 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/08/24 18:05:22 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2014/12/21 16:54:18 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2014/09/16 19:50:57 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2013/03/05 22:30:34 - [] D -- C:\Program Files (x86)\NTI
O43 - CFD: 2015/04/13 19:50:10 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2014/12/14 22:32:42 - [] D -- C:\Program Files (x86)\Overwolf
O43 - CFD: 2014/09/15 21:43:34 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 2013/03/05 22:06:28 - [] D -- C:\Program Files (x86)\RadioController
O43 - CFD: 2013/03/05 22:09:05 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2014/09/16 19:50:57 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/08/27 19:44:11 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2013/03/05 22:18:10 - [] D -- C:\Program Files (x86)\Spotify
O43 - CFD: 2015/07/31 14:28:42 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2
O43 - CFD: 2015/08/27 16:38:32 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2015/08/14 20:47:38 - [] D -- C:\Program Files (x86)\Surreal
O43 - CFD: 2013/03/05 22:31:39 - [] D -- C:\Program Files (x86)\Symantec
O43 - CFD: 2013/03/05 22:09:30 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2015/06/15 15:18:58 - [] D -- C:\Program Files (x86)\Unchecky
O43 - CFD: 2015/04/13 21:59:31 - [] D -- C:\Program Files (x86)\Unigine
O43 - CFD: 2012/12/14 04:02:50 - [] D -- C:\Program Files (x86)\WildGames
O43 - CFD: 2014/10/23 17:03:46 - [] D -- C:\Program Files (x86)\WildTangent Games
O43 - CFD: 2015/04/06 16:03:03 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/01/27 00:23:18 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/01/27 00:23:17 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/01/27 00:23:18 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/01/27 00:23:17 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/01/27 00:23:17 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2014/09/16 19:41:27 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/01/27 00:25:31 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/04/06 16:02:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/09/16 19:45:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
O43 - CFD: 2015/03/15 13:55:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/06/24 21:14:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4
O43 - CFD: 2014/09/16 19:45:45 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink MediaEspresso 6.5
O43 - CFD: 2014/09/16 19:45:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
O43 - CFD: 2015/01/01 20:41:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2
O43 - CFD: 2015/07/31 14:44:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
O43 - CFD: 2015/08/21 19:04:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2015
O43 - CFD: 2014/12/03 18:48:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow
O43 - CFD: 2014/12/03 18:48:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster 3
O43 - CFD: 2015/01/20 22:41:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/08/26 06:03:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
O43 - CFD: 2014/09/16 19:45:45 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/01/20 22:22:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
O43 - CFD: 2014/11/07 08:46:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/08/14 20:48:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\La Communauté de L'Anneau
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/09/21 12:26:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/01/20 22:41:02 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Next Car Game
O43 - CFD: 2014/09/16 19:45:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 9
O43 - CFD: 2015/04/13 19:50:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/08/27 19:44:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2014/09/16 19:45:45 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2014/09/16 19:45:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2015/01/27 00:25:31 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2014/03/18 11:41:33 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/27 23:40:33 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
O43 - CFD: 2015/06/15 15:18:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky
O43 - CFD: 2015/06/15 16:55:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2014/11/04 15:12:14 - [] D -- C:\ProgramData\.mono
O43 - CFD: 2014/11/23 21:21:41 - [] D -- C:\ProgramData\17BEC2322AE48D6B781018997C2F0C20
O43 - CFD: 2013/03/05 22:34:31 - [] D -- C:\ProgramData\Acer
O43 - CFD: 2014/09/21 21:52:45 - [] D -- C:\ProgramData\Aeria Games
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/09/16 07:18:10 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 2015/04/02 20:21:35 - [] D -- C:\ProgramData\Autodesk
O43 - CFD: 2015/07/31 14:28:45 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2012/12/14 04:08:07 - [] D -- C:\ProgramData\BackupManager
O43 - CFD: 2014/09/17 21:39:38 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2015/06/05 15:16:39 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 2014/09/14 22:05:44 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/03/05 22:33:38 - [] D -- C:\ProgramData\CLSK
O43 - CFD: 2014/09/21 12:25:36 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2013/03/05 22:33:38 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2013/03/05 22:27:05 - [] D -- C:\ProgramData\EgisTec
O43 - CFD: 2015/07/31 14:44:22 - [] D -- C:\ProgramData\ESET
O43 - CFD: 2013/03/05 22:30:19 - [] D -- C:\ProgramData\FLEXnet
O43 - CFD: 2014/11/23 21:19:48 - [] D -- C:\ProgramData\gamemaker_studio
O43 - CFD: 2015/08/26 06:16:49 - [] D -- C:\ProgramData\Hi-Rez Studios
O43 - CFD: 2013/03/05 22:33:15 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 2013/03/05 22:02:11 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/01/20 22:23:26 - [] D -- C:\ProgramData\IObit
O43 - CFD: 2014/11/06 21:29:26 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 2014/09/15 22:31:58 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2014/09/14 22:05:44 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/05/18 02:07:20 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2014/09/14 22:05:44 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2014/09/14 22:54:41 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2014/09/15 21:43:34 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2014/09/15 19:17:31 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2013/03/05 22:31:11 - [] D -- C:\ProgramData\NTI Launcher
O43 - CFD: 2015/04/13 19:50:14 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/07/13 18:51:50 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2014/09/14 22:41:58 - [] D -- C:\ProgramData\OEM
O43 - CFD: 2014/11/06 20:58:28 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/05/23 17:06:20 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2014/09/16 19:41:33 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2015/08/25 11:39:31 - [] D -- C:\ProgramData\ProductData
O43 - CFD: 2014/09/15 18:05:09 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 2014/12/03 18:44:10 - [] D -- C:\ProgramData\Razer
O43 - CFD: 2015/01/27 00:23:17 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2014/12/16 18:46:06 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 2015/08/27 19:44:13 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/07/31 14:23:24 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/02/01 13:18:08 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/03/05 22:31:39 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 2013/03/05 22:33:15 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/03/23 00:54:57 - [] D -- C:\ProgramData\thriXXX
O43 - CFD: 2015/01/18 11:00:12 - [] D -- C:\ProgramData\TrackMania
O43 - CFD: 2015/08/27 19:43:09 - [] D -- C:\ProgramData\Unchecky
O43 - CFD: 2015/08/20 20:41:34 - [] D -- C:\ProgramData\Wild Tangent
O43 - CFD: 2014/09/18 16:49:19 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2015/01/20 22:22:05 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
O43 - CFD: 2013/03/05 22:10:45 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 2014/10/18 11:31:48 - [0] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment
O43 - CFD: 2015/08/14 20:43:24 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/01/20 22:22:00 - [] D -- C:\Program Files (x86)\Common Files\IObit
O43 - CFD: 2015/05/01 23:40:29 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2013/03/05 22:30:18 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 2014/09/20 19:59:58 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2013/03/05 22:01:53 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2014/09/15 18:09:11 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/08/27 19:44:10 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/08/23 08:27:01 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/01/27 00:23:17 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/08/21 13:01:08 - [] D -- C:\Users\Cash Converters\AppData\Roaming\.ascentia
O43 - CFD: 2014/12/03 18:46:01 - [] D -- C:\Users\Cash Converters\AppData\Roaming\.huntedcowcache
O43 - CFD: 2014/11/04 15:12:14 - [] D -- C:\Users\Cash Converters\AppData\Roaming\.mono
O43 - CFD: 2015/06/11 13:30:06 - [] D -- C:\Users\Cash Converters\AppData\Roaming\7195120D-1433834062-E211-BF0A-208984647B38
O43 - CFD: 2014/09/14 22:34:18 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Adobe
O43 - CFD: 2014/09/21 21:44:28 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Aeria Games & Entertainment
O43 - CFD: 2015/07/06 18:37:20 - [] D -- C:\Users\Cash Converters\AppData\Roaming\AnkamaCertificates
O43 - CFD: 2015/07/06 18:36:18 - [] D -- C:\Users\Cash Converters\AppData\Roaming\app
O43 - CFD: 2015/01/20 22:22:23 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Apple Computer
O43 - CFD: 2014/09/16 07:18:03 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Atheros
O43 - CFD: 2015/04/02 20:21:35 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Autodesk
O43 - CFD: 2015/07/24 00:18:18 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Awesomium
O43 - CFD: 2014/10/13 21:11:49 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Battle.net
O43 - CFD: 2014/09/27 13:44:14 - [0] D -- C:\Users\Cash Converters\AppData\Roaming\BRT
O43 - CFD: 2015/07/31 22:48:21 - [] D -- C:\Users\Cash Converters\AppData\Roaming\com.freakinware.mitosis
O43 - CFD: 2015/05/26 18:13:12 - [] D -- C:\Users\Cash Converters\AppData\Roaming\com.playsaurus.heroclicker
O43 - CFD: 2015/01/23 21:03:41 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Combat Monsters
O43 - CFD: 2015/07/12 00:53:11 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Dofus
O43 - CFD: 2015/07/07 22:28:15 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Dofus-2
O43 - CFD: 2015/07/12 21:33:13 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Dofus-3
O43 - CFD: 2015/07/31 14:47:58 - [] D -- C:\Users\Cash Converters\AppData\Roaming\ESET
O43 - CFD: 2014/10/01 08:15:45 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Fatshark
O43 - CFD: 2015/04/13 02:56:12 - [] D -- C:\Users\Cash Converters\AppData\Roaming\FiestaOnline
O43 - CFD: 2015/05/24 16:48:00 - [0] D -- C:\Users\Cash Converters\AppData\Roaming\Goofball
O43 - CFD: 2014/09/16 20:07:30 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Identities
O43 - CFD: 2015/01/20 22:22:31 - [] D -- C:\Users\Cash Converters\AppData\Roaming\IObit
O43 - CFD: 2014/09/16 07:59:20 - [] D -- C:\Users\Cash Converters\AppData\Roaming\LibreOffice
O43 - CFD: 2014/09/14 22:41:00 - [] D -- C:\Users\Cash Converters\AppData\Roaming\lm
O43 - CFD: 2014/12/20 16:01:41 - [] D -- C:\Users\Cash Converters\AppData\Roaming\LolClient
O43 - CFD: 2014/09/14 22:34:26 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Macromedia
O43 - CFD: 2015/06/09 09:12:54 - [] SD -- C:\Users\Cash Converters\AppData\Roaming\Microsoft
O43 - CFD: 2015/03/15 00:26:51 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Mozilla
O43 - CFD: 2014/12/24 16:07:06 - [] D -- C:\Users\Cash Converters\AppData\Roaming\MusE
O43 - CFD: 2014/12/17 19:00:03 - [] D -- C:\Users\Cash Converters\AppData\Roaming\nBrowser
O43 - CFD: 2015/05/03 20:35:40 - [] D -- C:\Users\Cash Converters\AppData\Roaming\NVIDIA
O43 - CFD: 2015/01/20 22:23:27 - [] D -- C:\Users\Cash Converters\AppData\Roaming\ProductData
O43 - CFD: 2015/07/06 18:36:18 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Reg
O43 - CFD: 2014/12/16 18:43:45 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Riot Games
O43 - CFD: 2015/04/13 22:05:10 - [] D -- C:\Users\Cash Converters\AppData\Roaming\roi
O43 - CFD: 2014/10/07 21:20:42 - [] D -- C:\Users\Cash Converters\AppData\Roaming\RotMG.Production
O43 - CFD: 2015/02/07 23:16:33 - [] RHD -- C:\Users\Cash Converters\AppData\Roaming\SecuROM
O43 - CFD: 2015/08/27 20:27:48 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Skype
O43 - CFD: 2014/10/11 15:56:37 - [] D -- C:\Users\Cash Converters\AppData\Roaming\SpaceEngineers
O43 - CFD: 2014/09/14 22:35:40 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Synaptics
O43 - CFD: 2015/02/22 14:12:53 - [] D -- C:\Users\Cash Converters\AppData\Roaming\TalesRunner
O43 - CFD: 2015/08/06 22:25:15 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Tap_Dungeon
O43 - CFD: 2015/06/07 22:55:54 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Tera_Awesomium
O43 - CFD: 2014/12/17 19:50:55 - [] D -- C:\Users\Cash Converters\AppData\Roaming\The Creative Assembly
O43 - CFD: 2015/03/23 01:52:41 - [] D -- C:\Users\Cash Converters\AppData\Roaming\thriXXX
O43 - CFD: 2015/07/15 22:32:13 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Trove
O43 - CFD: 2014/09/18 17:07:59 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Unity
O43 - CFD: 2015/08/27 20:28:54 - [] D -- C:\Users\Cash Converters\AppData\Roaming\uTorrent
O43 - CFD: 2014/09/17 21:37:54 - [] D -- C:\Users\Cash Converters\AppData\Roaming\WildTangent
O43 - CFD: 2014/12/04 22:39:22 - [] D -- C:\Users\Cash Converters\AppData\Roaming\WinRAR
O43 - CFD: 2015/06/15 11:26:00 - [] D -- C:\Users\Cash Converters\AppData\Roaming\WizardWars
O43 - CFD: 2015/08/27 20:29:32 - [] D -- C:\Users\Cash Converters\AppData\Roaming\ZHP
O43 - CFD: 2015/05/23 17:06:37 - [] D -- C:\Users\Cash Converters\AppData\Local\404Sight
O43 - CFD: 2014/09/15 19:25:38 - [0] D -- C:\Users\Cash Converters\AppData\Local\Adobe
O43 - CFD: 2014/12/15 18:45:45 - [] D -- C:\Users\Cash Converters\AppData\Local\Aeria Games
O43 - CFD: 2015/01/20 20:07:02 - [] D -- C:\Users\Cash Converters\AppData\Local\AGKApps
O43 - CFD: 2014/12/14 21:55:49 - [] D -- C:\Users\Cash Converters\AppData\Local\Akamai
O43 - CFD: 2015/07/06 14:07:21 - [] D -- C:\Users\Cash Converters\AppData\Local\Ankama
O43 - CFD: 2014/09/16 19:37:35 - [0] SHD -- C:\Users\Cash Converters\AppData\Local\Application Data
O43 - CFD: 2015/06/29 08:38:08 - [] D -- C:\Users\Cash Converters\AppData\Local\ApplicationHistory
O43 - CFD: 2014/09/15 19:59:31 - [] D -- C:\Users\Cash Converters\AppData\Local\Apps
O43 - CFD: 2014/10/18 10:31:16 - [] D -- C:\Users\Cash Converters\AppData\Local\ascend
O43 - CFD: 2014/09/16 07:18:10 - [] D -- C:\Users\Cash Converters\AppData\Local\BMExplorer
O43 - CFD: 2014/10/23 13:53:28 - [] D -- C:\Users\Cash Converters\AppData\Local\CDWLauncher
O43 - CFD: 2015/07/23 14:42:42 - [] D -- C:\Users\Cash Converters\AppData\Local\CEF
O43 - CFD: 2014/10/17 17:41:15 - [] D -- C:\Users\Cash Converters\AppData\Local\Chromium
O43 - CFD: 2014/12/03 18:11:34 - [] D -- C:\Users\Cash Converters\AppData\Local\clear.fi
O43 - CFD: 2015/08/26 21:24:59 - [] D -- C:\Users\Cash Converters\AppData\Local\Diagnostics
O43 - CFD: 2015/01/31 17:48:52 - [0] D -- C:\Users\Cash Converters\AppData\Local\Doctor Entertainment AB
O43 - CFD: 2014/11/23 21:08:48 - [] D -- C:\Users\Cash Converters\AppData\Local\DOOM_clone_6
O43 - CFD: 2014/10/04 14:07:07 - [] D -- C:\Users\Cash Converters\AppData\Local\Drakerz
O43 - CFD: 2015/03/15 17:29:26 - [] D -- C:\Users\Cash Converters\AppData\Local\Dungeons & Dragons Online
O43 - CFD: 2014/09/26 22:54:59 - [] D -- C:\Users\Cash Converters\AppData\Local\EdgeOfReality
O43 - CFD: 2014/09/14 22:41:26 - [] D -- C:\Users\Cash Converters\AppData\Local\EgisTec IPS
O43 - CFD: 2015/08/18 21:41:07 - [0] SHD -- C:\Users\Cash Converters\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/08/18 21:41:07 - [0] SHD -- C:\Users\Cash Converters\AppData\Local\EmieSiteList
O43 - CFD: 2015/08/18 21:41:07 - [0] SHD -- C:\Users\Cash Converters\AppData\Local\EmieUserList
O43 - CFD: 2015/07/31 14:47:58 - [] D -- C:\Users\Cash Converters\AppData\Local\ESET
O43 - CFD: 2014/11/23 21:33:09 - [] D -- C:\Users\Cash Converters\AppData\Local\FinishedGame
O43 - CFD: 2014/12/07 20:16:34 - [] D -- C:\Users\Cash Converters\AppData\Local\Funcom
O43 - CFD: 2014/11/23 21:01:54 - [] D -- C:\Users\Cash Converters\AppData\Local\GameMaker_Player
O43 - CFD: 2014/11/23 21:21:40 - [] D -- C:\Users\Cash Converters\AppData\Local\gamemaker_studio
O43 - CFD: 2014/09/20 17:10:13 - [] D -- C:\Users\Cash Converters\AppData\Local\Google
O43 - CFD: 2014/09/16 19:37:35 - [0] SHD -- C:\Users\Cash Converters\AppData\Local\Historique
O43 - CFD: 2014/12/03 19:59:50 - [] D -- C:\Users\Cash Converters\AppData\Local\Infernum_Productions
O43 - CFD: 2015/07/28 00:02:06 - [] D -- C:\Users\Cash Converters\AppData\Local\Ironclad Games
O43 - CFD: 2015/08/20 20:25:07 - [] D -- C:\Users\Cash Converters\AppData\Local\Jigoku_Kisetsukan
O43 - CFD: 2014/09/15 19:28:01 - [] D -- C:\Users\Cash Converters\AppData\Local\Macromedia
O43 - CFD: 2015/06/03 17:12:25 - [] D -- C:\Users\Cash Converters\AppData\Local\Microsoft
O43 - CFD: 2014/09/14 22:55:53 - [] D -- C:\Users\Cash Converters\AppData\Local\Mozilla
O43 - CFD: 2014/12/24 16:07:04 - [] D -- C:\Users\Cash Converters\AppData\Local\MusE
O43 - CFD: 2015/04/13 19:51:19 - [] D -- C:\Users\Cash Converters\AppData\Local\NVIDIA
O43 - CFD: 2015/04/13 20:56:30 - [] D -- C:\Users\Cash Converters\AppData\Local\NVIDIA Corporation
O43 - CFD: 2015/06/02 21:22:05 - [] D -- C:\Users\Cash Converters\AppData\Local\openvr
O43 - CFD: 2015/08/26 23:09:10 - [] D -- C:\Users\Cash Converters\AppData\Local\Packages
O43 - CFD: 2014/10/04 14:06:40 - [] D -- C:\Users\Cash Converters\AppData\Local\Peoleo
O43 - CFD: 2014/09/14 23:32:37 - [] D -- C:\Users\Cash Converters\AppData\Local\Programs
O43 - CFD: 2014/10/04 23:55:47 - [] D -- C:\Users\Cash Converters\AppData\Local\PunkBuster
O43 - CFD: 2014/12/03 20:13:41 - [] D -- C:\Users\Cash Converters\AppData\Local\QQSM
O43 - CFD: 2014/10/20 13:35:16 - [] D -- C:\Users\Cash Converters\AppData\Local\SCE
O43 - CFD: 2014/11/23 21:03:04 - [] D -- C:\Users\Cash Converters\AppData\Local\Shaders_Experiment
O43 - CFD: 2014/12/05 15:56:29 - [] D -- C:\Users\Cash Converters\AppData\Local\SKIDROW
O43 - CFD: 2014/12/03 18:19:36 - [] D -- C:\Users\Cash Converters\AppData\Local\Skype
O43 - CFD: 2015/02/21 11:32:38 - [] D -- C:\Users\Cash Converters\AppData\Local\Steam
O43 - CFD: 2015/08/27 20:29:00 - [] D -- C:\Users\Cash Converters\AppData\Local\Temp
O43 - CFD: 2014/09/16 19:37:35 - [0] SHD -- C:\Users\Cash Converters\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/05/10 16:26:40 - [] D -- C:\Users\Cash Converters\AppData\Local\TERA
O43 - CFD: 2015/07/13 21:54:56 - [0] D -- C:\Users\Cash Converters\AppData\Local\Trove
O43 - CFD: 2015/03/15 16:08:43 - [] D -- C:\Users\Cash Converters\AppData\Local\Turbine
O43 - CFD: 2015/07/13 19:06:22 - [0] D -- C:\Users\Cash Converters\AppData\Local\Unity
O43 - CFD: 2014/11/01 19:07:18 - [] D -- C:\Users\Cash Converters\AppData\Local\UWebKit15
O43 - CFD: 2015/06/23 00:07:26 - [] D -- C:\Users\Cash Converters\AppData\Local\VirtualStore
O43 - CFD: 2015/08/26 13:40:32 - [] D -- C:\Users\Cash Converters\AppData\Local\Warframe
O43 - CFD: 2014/12/09 22:10:25 - [] D -- C:\Users\Cash Converters\AppData\Local\YesMessenger
O43 - CFD: 2015/06/18 11:01:11 - [] RD -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/27 23:33:45 - [0] D -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
O43 - CFD: 2015/08/14 20:48:02 - [0] D -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\La Communauté de L'Anneau
O43 - CFD: 2014/12/07 14:07:55 - [0] D -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Square Dash 1.1
O43 - CFD: 2015/06/18 11:01:11 - [] RD -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/05/31 00:28:52 - [0] D -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\thriXXX
O43 - CFD: 2015/04/13 21:59:45 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unigine
O43 - CFD: 2015/06/15 16:55:52 - [] D -- C:\Users\Cash Converters\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 14s
O45 - LFCP:[MD5.6536D99C2AB802E916D0891102F2E759] 2015/06/15 12:06:50 A -- C:\WINDOWS\Prefetch\UPGMSD_FR_629.EXE-1D8E1724.pf =>PUP.Optional.CrossRider

---\\ Liste des pilotes du système (75) - 10s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] ©
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] ©
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] ©
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] ©
O58 - SDL:2013/03/05 22:06:25 A . (.Dritek System Inc. - PS/2 KB to HID Device Driver.) -- C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [26736] ©
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] ©
O58 - SDL:2015/06/15 16:33:16 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\aswTap.sys [44640] ©
O58 - SDL:2013/06/18 16:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256] ©
O58 - SDL:2015/08/26 21:46:38 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwbx.sys [4267008] ©
O58 - SDL:2014/09/21 12:25:50 A . (.AVG Technologies - .) -- C:\WINDOWS\System32\drivers\avgtpx64.sys [50976] ©
O58 - SDL:2012/08/13 11:59:42 A . (.Broadcom Corporation - Broadcom xD Picture Card Bus Driver.) -- C:\WINDOWS\System32\drivers\b57xdbd.sys [72280] ©
O58 - SDL:2012/08/13 11:59:42 A . (.Broadcom Corporation - Broadcom xD Picture Card Miniport Driver.) -- C:\WINDOWS\System32\drivers\b57xdmp.sys [21080] ©
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2015/04/06 17:53:42 A . (.Broadcom Corporation - Broadcom Memory Stick Driver.) -- C:\WINDOWS\System32\drivers\bScsiMSa.sys [59088] ©
O58 - SDL:2015/04/06 17:53:26 A . (.Broadcom Corporation - Broadcom SD 3.0 Driver.) -- C:\WINDOWS\System32\drivers\bScsiSDa.sys [82128] ©
O58 - SDL:2013/01/28 14:23:18 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\WINDOWS\System32\drivers\btath_a2dp.sys [346192] ©
O58 - SDL:2013/01/28 14:23:18 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\WINDOWS\System32\drivers\btath_avdt.sys [115280] ©
O58 - SDL:2013/01/28 14:23:20 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\WINDOWS\System32\drivers\btath_bus.sys [34384] ©
O58 - SDL:2013/01/28 14:23:20 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_flt.sys [89168] ©
O58 - SDL:2013/01/28 14:23:22 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\WINDOWS\System32\drivers\btath_hcrp.sys [179432] ©
O58 - SDL:2013/01/28 14:23:24 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_lwflt.sys [77464] ©
O58 - SDL:2013/01/28 14:23:24 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\WINDOWS\System32\drivers\btath_rcp.sys [136424] ©
O58 - SDL:2015/08/26 21:49:04 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [600776] ©
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [255240] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - Devmon monitor.) -- C:\WINDOWS\System32\drivers\edevmon.sys [251632] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [178520] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [231520] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\EpfwLWF.sys [53360] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [72400] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] ©
O58 - SDL:2014/12/01 16:51:16 AH . (.LogMeIn Inc. - LogMeIn Hamachi Virtual Miniport Driver.) -- C:\WINDOWS\System32\drivers\Hamdrv.sys [45112]
O58 - SDL:2012/07/03 00:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] ©
O58 - SDL:2013/09/23 13:49:22 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\WINDOWS\System32\drivers\HipShieldK.sys [197704] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] ©
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] ©
O58 - SDL:2012/08/16 14:33:42 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] ©
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2015/06/01 21:00:18 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5384176] ©
O58 - SDL:2012/06/19 16:40:51 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] ©
O58 - SDL:2015/01/09 21:22:22 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\WINDOWS\System32\drivers\k57nd60a.sys [458960] ©
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] ©
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2014/07/24 14:33:10 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\WINDOWS\System32\drivers\mfeclnrk.sys [11336] ©
O58 - SDL:2014/07/24 14:31:56 A . (.McAfee, Inc. - Event Driver.) -- C:\WINDOWS\System32\drivers\mfencbdc.sys [444720] ©
O58 - SDL:2014/07/24 14:32:30 A . (.McAfee, Inc. - Detection driver.) -- C:\WINDOWS\System32\drivers\mfencrk.sys [96592] ©
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2010/04/20 04:35:14 A . (.NTI Corporation - NTI CD-ROM Filter Driver.) -- C:\WINDOWS\System32\drivers\NTIDrvr.sys [18432] ©
O58 - SDL:2013/09/05 02:36:46 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11273504] ©
O58 - SDL:2013/09/05 02:37:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvpciflt.sys [30496] ©
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] ©
O58 - SDL:2015/05/19 05:29:01 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [46768] ©
O58 - SDL:2012/06/12 12:10:44 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4060560] ©
O58 - SDL:2015/05/13 21:08:16 A . (.SuperClick - SC Driver x64.) -- C:\WINDOWS\System32\drivers\scfd_1_10_0_16.sys [58240] =>PUP.Optional.SuperClick
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2012/11/29 19:05:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [31032] ©
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2012/11/29 19:05:40 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [464184] ©
O58 - SDL:2015/01/31 16:25:52 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [129312] ©
O58 - SDL:2010/07/09 05:51:50 A . (.NTI Corporation - NTI CD-ROM Filter Driver.) -- C:\WINDOWS\System32\drivers\UBHelper.sys [17408] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2014/10/26 16:44:41 A . (...) -- C:\WINDOWS\System32\hxsken64.sys [29008]
O58 - SDL:2014/10/26 16:44:41 A . (...) -- C:\WINDOWS\System32\hxsy64.sys [86352]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (33) - 55s
O61 - LFC: 2015/08/25 10:48:06 A . (.SEGA Hardlight.) -- C:\Users\Cash Converters\AppData\Local\Packages\SegaNetworksInc.56538047DFC80_as33fap47kd3c\AC\Microsoft\CLR_v4.0_32\NativeImages\Template\f16c848f6f1fda611e2dddbeb707239d\Template.ni.exe [288768]
O61 - LFC: 2015/08/25 10:51:52 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\SegaNetworksInc.56538047DFC80_as33fap47kd3c\AC\Microsoft\CLR_v4.0_32\NativeImages\Temp\1e98-0\Assembly-CSharp-firstpass.dll [353057280]
O61 - LFC: 2015/08/25 10:52:00 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\SegaNetworksInc.56538047DFC80_as33fap47kd3c\AC\Microsoft\CLR_v4.0_32\NativeImages\Temp\1834-0\Assembly-CSharp-firstpass.dll [373252096]
O61 - LFC: 2015/08/25 10:52:03 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\SegaNetworksInc.56538047DFC80_as33fap47kd3c\AC\Microsoft\CLR_v4.0_32\NativeImages\Assembly-UnityScript\f4ba2540fe32d584a5991acd010c26b2\Assembly-UnityScript.ni.dll [139776]
O61 - LFC: 2015/08/25 10:52:02 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\SegaNetworksInc.56538047DFC80_as33fap47kd3c\AC\Microsoft\CLR_v4.0_32\NativeImages\Assembly-Unbdd97120#\37af0d32507c2979d5dd301b82ddccef\Assembly-UnityScript-firstpass.ni.dll [48128]
O61 - LFC: 2015/08/25 10:47:56 A . (.Copyright © 2012.) -- C:\Users\Cash Converters\AppData\Local\Packages\HalfbrickStudiosPtyLtd.JetpackJoyride_w77bc8x1h5kya\AC\Microsoft\CLR_v4.0_32\NativeImages\HttpClientCSharp\2b7d7004d9d0e4a2bd0ef0c19a95904e\HttpClientCSharp.ni.dll [37376]
O61 - LFC: 2015/08/21 16:51:53 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\GAMELOFTSA.Asphalt8Airborne_0pp20fcewvvtj\LocalState\gv3\Batched.bin [32002]
O61 - LFC: 2015/08/23 09:57:01 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\GAMELOFTSA.Asphalt8Airborne_0pp20fcewvvtj\LocalState\gv3\Priority.bin [72831]
O61 - LFC: 2015/08/23 09:56:44 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\GAMELOFTSA.Asphalt8Airborne_0pp20fcewvvtj\LocalState\gv3\Sessions.bin [112]
O61 - LFC: 2015/08/23 09:56:50 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\GAMELOFTSA.Asphalt8Airborne_0pp20fcewvvtj\LocalState\gv3\Stream.bin [155667]
O61 - LFC: 2015/08/23 09:56:50 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\GAMELOFTSA.Asphalt8Airborne_0pp20fcewvvtj\LocalState\gv3\Timer.bin [153]
O61 - LFC: 2015/08/23 09:56:45 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\GAMELOFTSA.Asphalt8Airborne_0pp20fcewvvtj\LocalState\gv3\Token.bin [112]
O61 - LFC: 2015/08/27 18:42:01 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\patch_list.bin [0]
O61 - LFC: 2015/08/27 19:32:10 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Batched.bin [0]
O61 - LFC: 2015/08/26 23:11:24 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Device.bin [192]
O61 - LFC: 2015/08/27 18:45:40 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Priority.bin [0]
O61 - LFC: 2015/08/27 18:45:18 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Sessions.bin [111]
O61 - LFC: 2015/08/27 19:20:40 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Stream.bin [0]
O61 - LFC: 2015/08/27 19:32:37 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Timer.bin [153]
O61 - LFC: 2015/08/27 19:20:20 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\LocalState\gv3\Token.bin [111]
O61 - LFC: 2015/08/27 12:39:43 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\OrderAndChaos\b6f48053d9181863d90296a8516b0c81\OrderAndChaos.ni.dll [52736]
O61 - LFC: 2015/08/27 12:39:38 A . (..) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\Notificatioc5a47191#\9edbc4bdff64400c9e0418bc9ea16858\NotificationsExtensions.ni.dll [412672]
O61 - LFC: 2015/08/27 12:39:44 A . (.Copyright © 2014.) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\InGameBrowserLibrary\c110d6576a6dd5baf310dfe3f6302e3c\InGameBrowserLibrary.ni.dll [164352]
O61 - LFC: 2015/08/27 12:39:42 A . (.Copyright © 2012.) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\IGPWindows8\7c4f4b062799cd274cd5c0323a9a3024\IGPWindows8.ni.dll [257536]
O61 - LFC: 2015/08/27 12:39:41 A . (.Copyright © 2012.) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\IGPBridgeLibrary\d317cd9ce22000712ae8a5e3b24f8264\IGPBridgeLibrary.ni.dll [166400]
O61 - LFC: 2015/08/27 12:39:43 A . (.Gameloft.) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\GA\2c46f1df87b34d3fd80fc0d4e5fec4a2\GA.ni.dll [121856]
O61 - LFC: 2015/08/27 12:39:48 A . (.Copyright © 2013.) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\FacebookRun67b5d43e#\c682489171146b41cc4bae81209b0dc6\FacebookRuntimeComponent.ni.dll [330752]
O61 - LFC: 2015/08/27 12:39:53 A . (.The Outercurve Foundation.) -- C:\Users\Cash Converters\AppData\Local\Packages\A278AB0D.OrderChaos_h6adky7gbf63m\AC\Microsoft\CLR_v4.0_32\NativeImages\Facebook\c5cc7105e6f3473a4a720f74968c0107\Facebook.ni.dll [465920]
O61 - LFC: 2015/08/26 10:30:06 A . (..) -- C:\Users\Cash Converters\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5178520]
O61 - LFC: 2015/08/27 11:19:37 A . (..) -- C:\Users\Cash Converters\AppData\Local\NVIDIA\NvBackend\Packages\00007d18\DAO.19900280.exe [6150256]
O61 - LFC: 2015/08/27 11:19:35 A . (..) -- C:\Users\Cash Converters\AppData\Local\NVIDIA\NvBackend\Packages\00007d0c\CoProc update.19899697.exe [519312]
O61 - LFC: 2015/08/23 02:56:23 A . (..) -- C:\Users\Cash Converters\AppData\Local\NVIDIA\NvBackend\Packages\0000793b\vops-warframe.19704423.exe [10495864]
O61 - LFC: 2015/08/26 10:50:14 A . (..) -- C:\Users\Cash Converters\AppData\Local\NVIDIA\NvBackend\Packages\00006fd7\vops-smite.19307525.exe [3039344]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (1) - 3s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (34) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1084416] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [227328] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3702272] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] ©

---\\ Liste des exceptions du parefeu Windows (39) - 11s
O87 - FAEL: "{0DF2B137-602E-4ADB-AB90-8E2862F71813}" [In-None-P17-TRUE] .(.Acer Cloud Technology - AcerCloud Client.) -- C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
O87 - FAEL: "{4E22EAD2-C1FB-4D2D-AF0F-30A32F609B80}" [In-None-P6-TRUE] .(.Acer Cloud Technology - AcerCloud Client.) -- C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
O87 - FAEL: "{25B4CD0E-E1F7-4A8C-8B20-53C0C4BF1B44}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
O87 - FAEL: "{B520347B-912D-4FCE-B6C7-576A5000A9B0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
O87 - FAEL: "{663A8667-29C8-415A-9812-B1FA88B4C717}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
O87 - FAEL: "{F93FDD1E-70CE-4582-A0F5-1261AC700BFB}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{293454DA-3881-42CE-A13D-1A1CE9C83783}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{41036EAE-9B2D-4B47-8487-A8AB2D461A4B}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{9D87ED15-2881-42FE-BCA8-B1D48BB537ED}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "TCP Query User{D03F636B-34C2-45DE-AA52-D694901F74DB}C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe
O87 - FAEL: "UDP Query User{08C2D8C8-2570-4301-8AB3-E99FB8A8767A}C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe
O87 - FAEL: "TCP Query User{EBD2DAAA-EB3A-4954-9BCA-B1526FC424D6}E:\skype\phone\skype.exe" [In-None-P6-TRUE] .(...) -- E:\skype\phone\skype.exe (.not file.)
O87 - FAEL: "UDP Query User{E9748794-452F-4A86-A116-D838F96A9CAB}E:\skype\phone\skype.exe" [In-None-P17-TRUE] .(...) -- E:\skype\phone\skype.exe (.not file.)
O87 - FAEL: "{BC43DBEC-3AE2-4602-BFC4-D81102AF72DA}" [In-None-P17-TRUE] .(...) -- E:\skype\phone\skype.exe (.not file.)
O87 - FAEL: "{01AA1B08-8A8B-4569-9E5D-79C70F1EBDDF}" [In-None-P6-TRUE] .(...) -- E:\skype\phone\skype.exe (.not file.)
O87 - FAEL: "{8FCE0248-4559-4988-AC2B-B319353DB445}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cash Converters\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{003801F9-C14C-4A2C-BBC8-F4AA08E523F1}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cash Converters\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "TCP Query User{118EDAA8-5D9C-4F98-8536-3E2F5A981753}C:\users\cash converters\downloads\utorrent pro v3.4.2 build 36615 stable + crack\setup\utorrent stable(3.4.2 build 36615).exe" [In-None-P6-TRUE] .(...) -- C:\users\cash converters\downloads\utorrent pro v3.4.2 build 36615 stable + crack\setup\utorrent stable(3.4.2 build 36615).exe (.not file.)
O87 - FAEL: "UDP Query User{A94F67EF-99F2-40DE-9020-9099EA20976A}C:\users\cash converters\downloads\utorrent pro v3.4.2 build 36615 stable + crack\setup\utorrent stable(3.4.2 build 36615).exe" [In-None-P17-TRUE] .(...) -- C:\users\cash converters\downloads\utorrent pro v3.4.2 build 36615 stable + crack\setup\utorrent stable(3.4.2 build 36615).exe (.not file.)
O87 - FAEL: "TCP Query User{F27D573E-C6BB-4DCF-A51F-5FD260F9114E}C:\program files (x86)\3d-coat-v4\3d-coatdx64c.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\3d-coat-v4\3d-coatdx64c.exe
O87 - FAEL: "UDP Query User{5C92BBB9-257B-4BAC-A8C2-82E3D674B750}C:\program files (x86)\3d-coat-v4\3d-coatdx64c.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\3d-coat-v4\3d-coatdx64c.exe
O87 - FAEL: "{CD0E0D79-DF78-4FBB-B3F3-E9EDCBE3F32C}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\3d-coat-v4\3d-coatdx64c.exe
O87 - FAEL: "{43281997-6E58-49BD-8E33-2BC51F6AE54D}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\3d-coat-v4\3d-coatdx64c.exe
O87 - FAEL: "TCP Query User{4B945109-8399-4557-8FCD-93997A74E4D7}C:\program files (x86)\steam\steamapps\common\champions online\champions online\live\gameclient.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\champions online\champions online\live\gameclient.exe
O87 - FAEL: "UDP Query User{77A306A8-48A2-4391-A506-113F5637D4D0}C:\program files (x86)\steam\steamapps\common\champions online\champions online\live\gameclient.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\champions online\champions online\live\gameclient.exe
O87 - FAEL: "{97687848-28D6-4C1E-B494-3D2F3306DCC4}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\champions online\champions online\live\gameclient.exe
O87 - FAEL: "{074C3F43-1020-4274-86DC-E7EC68B36314}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\champions online\champions online\live\gameclient.exe
O87 - FAEL: "{8F7C00EC-C304-4966-A357-E30189B1BEBD}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{A2D7E95D-2DDB-475C-AD8D-4C3EFFD97BE5}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{65CB48D0-0709-4A4A-B197-676A4984492C}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{C17A11A8-7D09-499F-82C7-BDBB50C9BAD3}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{6BD1825C-CE1E-4D1A-BA97-663EC187EB34}" [In-None-P6-TRUE] .(.X-LEGEND ENTERTAINMENT - Aura Kingdom.) -- C:\Program Files (x86)\Steam\SteamApps\common\Aura Kingdom\Launcher.exe
O87 - FAEL: "{F6B6015F-541B-4EC6-9B9B-C77CD1DFD37F}" [In-None-P17-TRUE] .(.X-LEGEND ENTERTAINMENT - Aura Kingdom.) -- C:\Program Files (x86)\Steam\SteamApps\common\Aura Kingdom\Launcher.exe
O87 - FAEL: "{5E425893-4D91-499B-9DBC-1CB713247C63}" [In-None-P6-TRUE] .(.X-LEGEND Entertaimment - Aura Kingdom Online.) -- C:\Program Files (x86)\Steam\SteamApps\common\Aura Kingdom\game.bin
O87 - FAEL: "{D976E9E6-15DD-4526-A79A-80F26C67B379}" [In-None-P17-TRUE] .(.X-LEGEND Entertaimment - Aura Kingdom Online.) -- C:\Program Files (x86)\Steam\SteamApps\common\Aura Kingdom\game.bin
O87 - FAEL: "TCP Query User{603C5A69-D105-469A-9B01-A1FD42136562}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe" [In-None-P6-TRUE] .(.Sony Online Entertainment - DC Universe Online Windows Client.) -- C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe
O87 - FAEL: "UDP Query User{784669F8-9E02-4249-9B3A-41F36CD33F7C}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe" [In-None-P17-TRUE] .(.Sony Online Entertainment - DC Universe Online Windows Client.) -- C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe
O87 - FAEL: "{72736109-4461-44D5-A5AF-7467D659BA35}" [In-None-P6-TRUE] .(.Sony Online Entertainment - Sony Online Entertainment LaunchPad.) -- C:\Program Files (x86)\Steam\SteamApps\common\DC Universe Online\LaunchPad.exe
O87 - FAEL: "{E54A8002-45C3-4D99-A503-D1BAA14653A9}" [In-None-P17-TRUE] .(.Sony Online Entertainment - Sony Online Entertainment LaunchPad.) -- C:\Program Files (x86)\Steam\SteamApps\common\DC Universe Online\LaunchPad.exe

---\\ Enumère les codes produits des logiciels (1) - 1s
O90 - PUC: "5C9F59CB830AEE547A93698B6A7DF9D7" . (.Boxore Client.) -- C:\WINDOWS\Installer\{BC95F9C5-A038-45EE-A739-96B8A6D79F7D}\Boxore.ico =>PUP.Optional.Boxore

---\\ Recherche des packages WindowsInstaller (1) - 3s
[MD5.] [WIS][2014/12/03 18:15:58] (.Boxore OU - Windows Installer XML Toolset (3.8.1128.0).) -- C:\WINDOWS\Installer\23cbc.msi [5152768] =>PUP.Optional.Boxore

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (28) - 22s

SS - Demand [2015/08/12 10:53:52] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2013/01/28 14:47:24] [ 227456] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations.) - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
SR - Auto [2012/08/20 17:36:22] [ 176640] Broadcom Card Reader Service (BrcmCardReader) . (.Broadcom Corp..) - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe ©
SR - Auto [2012/10/25 22:39:50] [ 2449552] CCDMonitorService (CCDMonitorService) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe ©
SS - Demand [2015/06/01 21:00:40] [ 290224] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe ©
SS - Demand [2012/11/17 00:07:20] [ 469648] Device Fast-lane Service (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe ©
SR - Auto [2012/12/10 10:39:09] [ 350544] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe ©
SR - Auto [2015/07/08 15:22:32] [ 1353720] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe ©
SR - Demand [2012/10/23 12:26:26] [ 658064] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe ©
SS - Demand [2013/03/05 22:30:18] [ 655624] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe ©
SR - Auto [2015/06/24 13:37:26] [ 1152656] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
SR - Auto [2015/08/21 17:11:00] [ 8704] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe ©
SR - Auto [2012/04/20 15:16:12] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SR - Auto [2012/07/18 02:10:16] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [2015/07/31 14:32:58] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe ©
SR - Auto [2012/07/18 02:10:30] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Auto [2012/05/11 16:31:46] [ 200728] McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe ©
SS - Auto [2014/07/24 15:09:54] [ 1041192] McAfee Anti-Malware Core (mfecore) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe ©
SR - Auto [2012/11/03 02:36:52] [ 259136] NTI IScheduleSvc (NTI IScheduleSvc) . (.NTI Corporation.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe ©
SR - Auto [2015/06/24 13:37:26] [ 1868432] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
SR - Auto [2015/06/24 13:37:25] [23007376] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe ©
SR - Auto [2013/08/30 00:43:18] [ 920864] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe ©
SR - Auto [2013/03/05 22:06:25] [ 96880] Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe ©
SS - Auto [2015/07/09 13:14:04] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SS - Demand [2015/08/19 22:39:00] [ 838336] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe ©
SR - Auto [2015/08/05 13:16:19] [ 163576] Unchecky (Unchecky) . (.RaMMicHaeL.) - C:\Program Files (x86)\Unchecky\bin\Unchecky_svc.exe ©
SR - Auto [2012/07/18 02:10:33] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Scan Additionnel (10) - 0s
HKLM\SOFTWARE\Wow6432Node\Browsers+Apps+1.1-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut
HKLM\SOFTWARE\Wow6432Node\Internet Speed Checker-nv =>PUP.Optional.InternetSpeedChecker
HKCU\SOFTWARE\CinemaPlus-3.2cV08.06-nv-ie =>PUP.Optional.CrossRider
C:\WINDOWS\Prefetch\UPGMSD_FR_629.EXE-1D8E1724.pf =>PUP.Optional.CrossRider
C:\WINDOWS\System32\drivers\scfd_1_10_0_16.sys =>PUP.Optional.SuperClick
C:\WINDOWS\Installer\{BC95F9C5-A038-45EE-A739-96B8A6D79F7D}\Boxore.ico =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\5C9F59CB830AEE547A93698B6A7DF9D7 =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Features\5C9F59CB830AEE547A93698B6A7DF9D7 =>PUP.Optional.Boxore
C:\WINDOWS\Installer\23cbc.msi =>PUP.Optional.Boxore

---\\ Récapitulatif des éléments trouvées sur votre station (5) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.Infonaut
http://www.nicolascoolman.fr/pup-internetspeedchecker/ =>PUP.Optional.InternetSpeedChecker
http://www.nicolascoolman.fr/pup-superClick/ =>PUP.Optional.SuperClick
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore

~ End of the scan, 21051 items in 190 seconds (1047)(0)()

Publicité


Signaler le contenu de ce document

Publicité