cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.6.30.77 by Nicolas Coolman (2015\06\30)
~ Run by Stéphanie (Administrator) (2015/08/05 19:01:33)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Scanner
~ Report : C:\Users\Stéphanie\Desktop\ZHPDiag.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v11.0.9600.17905

---\\ Informations sur les produits Windows (9) - 6s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : YBFD6
Windows License : OK
~ Windows Remaining Initializations Number : 1000
Windows Automatic Updates : OK (Demand)
Windows Activation Technologies : OK

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 6174420
~ System Restore: Activé (Enable)
~ System drive C: has 82 GB free of 190 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: STEPHY
~ User Name: Stéphanie
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 82 GB free of 190 GB (System)
~ Drive D: has 109 GB free of 264 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368]
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784]
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920]
[MD5.98C6A46E9E2822BF83196C2EAE43DBD4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2427392]
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488]
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144]
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800]
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848]
[MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624]
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520]
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080]

---\\ Processus lancés (58) - 4s
[MD5.0CFE3C7336FE24CF6C0B8167821BAEEC] - (.Wacom Technology, Corp. - Tablet Service.) -- C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [672024] [PID.1080]
[MD5.DC2BA6926FA0CDCE273CC9897F05584A] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [107320] [PID.1276]
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1344]
[MD5.4956380A54B1C9E6BFDF3D80DACB9698] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1412]
[MD5.612CB66D93ED0F2F21BB109840C7D813] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128] [PID.1788]
[MD5.6A122B4F0E5293CACFA8A5F2CBA9B356] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120] [PID.1840]
[MD5.AAE374280DDC307061A43ED9FAD1AD57] - (.Copyright © 2012 - Asus WebStorage Windows Service.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192] [PID.1920]
[MD5.A917E4F753B90A5181ECBFA56D5C154A] - (.Qualcomm Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227456] [PID.1968]
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1992]
[MD5.4FFD99381C2E71B99637E04ECD9E12A5] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\system32\DptfParticipantProcessorService.exe [31632] [PID.1860]
[MD5.58FBC21C694DDC9F24000E87BDDEB4AD] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe [33168] [PID.2080]
[MD5.FD1B28D2D5763BF4ED607002B78E5D85] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\system32\DptfPolicyLpmService.exe [39824] [PID.2100]
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.2120]
[MD5.78ABBE558F57144047F10A0F50FE4B2F] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720] [PID.2188]
[MD5.ADC5A921A818633D7CA599446AE1A9BF] - (.ASUSTek Computer Inc. - ASUS Wakeup Service.) -- C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [45488] [PID.2312]
[MD5.86B8B1F5C1189D68B07666784BE882FE] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584] [PID.2388]
[MD5.CCC3FE1DDCCF99633539B3D7681EF7D7] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768] [PID.3616]
[MD5.E61BB95A7CB49696D25A0C4EBD108156] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [643880] [PID.4204]
[MD5.9656F8E29F6C3161A3E99BCD3A472FF9] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856] [PID.2280]
[MD5.2C24DC448DBE8DB9BE1441B824C57E79] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277824] [PID.4268]
[MD5.E1A119AD21F5AFE22EB516C549306D3D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [365376] [PID.2720]
[MD5.CBC670E88771E690B8FFA8C95BB447FE] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [303928] [PID.5952]
[MD5.3A8D1E216D2F16551B37234E6E7341CB] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe [590208] [PID.1548]
[MD5.C2CBE7C1A0F8415DD9608DD80A0131EC] - (.ASUSTek Computer INC. - ASUS Patch For Touch Panel.) -- C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe [158336] [PID.5520]
[MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] [PID.6016]
[MD5.C570FD825751F7805CE226F68C4605DE] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54488] [PID.5236]
[MD5.B07086D59443DAC6A668D691B27B968C] - (.ASUSTeK Computer Inc. - ASUS Color Engine.) -- C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [176240] [PID.5592]
[MD5.97432AB9F1B3B3E63E778C1E69E71E91] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1124032] [PID.6444]
[MD5.D3C0F651E99B467C65390DD023BB7889] - (.Wacom Technology, Corp. - Tablet user module for professional driver.) -- C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe [1939736] [PID.7080]
[MD5.A557305B43BBB2EEF886983C80E7DD21] - (.ASUSTeK Computer Inc. - VivoBook.) -- C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe [512280] [PID.5148]
[MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.6324]
[MD5.19E0B5B6202CE85796EA6C0EBB7334DF] - (.Wacom Technology - Wacom Load Agent.) -- C:\Program Files\Tablet\Wacom\WacomHost.exe [39808] [PID.6580]
[MD5.0B50F07E63EE15383CDFDC26D7A3D3E3] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184] [PID.3268]
[MD5.20E98044453EA5F9C8538AF9CC1C2D51] - (.Wacom Technology, Corp. - Touch User Mode Driver.) -- C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe [5253912] [PID.7680]
[MD5.23075147F62C896784C66D706F38360E] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328504] [PID.4584]
[MD5.A96C897BCAE4EF2E5F81859DD4DC1C10] - (.Wacom Technology, Corp. - Tablet Service for professional driver.) -- C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [12194584] [PID.7784]
[MD5.DC694B4D6F870095E56B0A9CEB3EC5EE] - (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [131712] [PID.5296]
[MD5.C0B5F6B4A35D87217FA99A3CE0592257] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\DptfPolicyLpmServiceHelper.exe [27024] [PID.4192]
[MD5.5FA320E7887FC5C142111B4682D4F528] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13267016] [PID.5704]
[MD5.A7FBF8B278E5346983C21D29093428D8] - (...) -- C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe [12928] [PID.4136]
[MD5.DC1E9A0B09A6068BA2E48E04F0F7F406] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1276488] [PID.4936]
[MD5.CFF4C979AA720C73EC93918D9730B9E9] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [391128] [PID.4460]
[MD5.9077DFDD0C7BBC8194F5271F4BFCA017] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [844760] [PID.4160]
[MD5.4B9D449ED9880477DEFBA85D512E05F9] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [771032] [PID.4740]
[MD5.2498449B5CA65A640125164EE0019B14] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [769496] [PID.3264]
[MD5.076B3EE149E01ADBAC2DC529554A3FD9] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [169768] [PID.4472]
[MD5.532E8929C8D71E0C4DE405D8995907CF] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [2895552] [PID.4996]
[MD5.D6FE9E0F705794A86F87A01B222290EF] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776] [PID.5212]
[MD5.D470EB94988531FE20A2A78766BB6858] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe [896632] [PID.7944]
[MD5.E7D0C79E41D30D576B460875C05517FF] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1861312] [PID.952]
[MD5.7AE700179C4839F657D245319E234A06] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [838336] [PID.1128]
[MD5.709971269A4FCDFB966F7481578314B1] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [171832] [PID.6412]
[MD5.DEACF6715D8060EC1C72F1F6D7FFC4D6] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22840] [PID.2300]
[MD5.498622161649098034DA1893F00E9762] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20792] [PID.4872]
[MD5.CABF3E24636B3AFDC9028DFA67D7FBD7] - (.AsusTek - ASUS Smart Gesture Helper.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe [170296] [PID.3396]
[MD5.E7D0C79E41D30D576B460875C05517FF] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1861312] [PID.5844]
[MD5.761986319F4F6EDB33B3F046D254C781] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2998552] [PID.8004]
[MD5.4E356A232C6050E9EB2D423DAE86E1F0] - (.AsusTek - ASUS Smart Gesture Center.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe [272184] [PID.2680]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (23) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://apis.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://clients1.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://fbcdn-static-b-a.akamaihd.net/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://fbstatic-a.akamaihd.net/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://fr-fr.facebook.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://id.google.be/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://ssl.gstatic.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.be/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.gstatic.com/"
G2 - GCE: Extension [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice
G2 - GCE: Extension [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Extension [User Data\Default] [jgfngnadclpgpjhkegcgajjjbbekimbo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Extension [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (9) - 1s
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\Stéphanie\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
P2 - FPN: [HKCU] [ubisoft.com/uplaypc] - (...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42] - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
P2 - FPN: [HKLM] [@intel-webapi.intel.com/Intel WebAPI updater] - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
P2 - FPN: [HKLM] [@wacom.com/wtPlugin,version=2.1.0.7] - (.Wacom.) -- C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
P2 - FPN: [HKLM] [wacom.com/WacomTabletPlugin] - (.Wacom.) -- C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (18) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (2) - 0s
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: (no name) [64Bits] - {FFCB3198-32F3-4E8B-9539-4324694ED664} . (.Eyeo GmbH - Adblock Plus BHO for Internet Explorer.) -- C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (11) - 1s
O4 - HKLM\..\Run: [ASUSPRP] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe
O4 - HKLM\..\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSPRP] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
O4 - HKUS\S-1-5-21-1621741593-1727879485-1222367699-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe

---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.76.224.172 89.2.0.1 89.2.0.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.65.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 212.76.224.172 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 10.65.0.1

---\\ Liste des services NT non Microsoft et non désactivés (O23) (19) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.Copyright © 2012 - Asus WebStorage Windows Service.) - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @oem3.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME (DptfParticipantProcessorService) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\WINDOWS\system32\DptfParticipantProcessorService.exe
O23 - Service: @oem3.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Inte (DptfPolicyLpmService) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\WINDOWS\system32\DptfPolicyLpmService.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: ASUS Wake Service (WakeupService) . (.ASUSTek Computer Inc. - ASUS Wakeup Service.) - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: Wacom Professional Service (WTabletServicePro) . (.Wacom Technology, Corp. - Tablet Service.) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
O23 - Service: ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

---\\ Tâches planifiées en automatique (O39) (20) - 1s
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1621741593-1727879485-1222367699-1001Core.job [1056]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1621741593-1727879485-1222367699-1001UA.job [1108]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3886]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS Live Update1 [3474]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS Live Update2 [3464]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS P4G [3054]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS Patch for Touch Panel [3258]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON [2986]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS Splendid ColorU [3002]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS Touchpad Launcher (x64) [3540]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS USB Charger Plus [3026]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\ASUS VivoBook [2902]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [4182]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2780]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [3554]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1621741593-1727879485-1222367699-1001Core [3682]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1621741593-1727879485-1222367699-1001UA [4062]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1410536474 [3850]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Update Checker [3382]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{D8B54095-EA0C-458E-BF3D-79E223368A79} [3944]

---\\ Logiciels installés (O42) (107) - 11s
O42 - Logiciel: Windows Driver Package - ASUS (ATP) Mouse (01/10/2013 1.0.0.170) - (.ASUS.) [HKLM][64Bits] -- 4A9DE1E9EBC800B7F01739D4DE7363EF6751BDF5
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions
O42 - Logiciel: HP Photosmart Essential 3.5 - (.HP.) [HKLM][64Bits] -- HP Photosmart Essential
O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools
O42 - Logiciel: OCR Software by I.R.I.S. 13.0 - (.HP.) [HKLM][64Bits] -- HPOCR
O42 - Logiciel: Tablette Wacom - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom Tablet Driver
O42 - Logiciel: WebTablet FB Plugin 64 bit - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Internet Explorer and Netscape
O42 - Logiciel: ASUS VivoBook - (.ASUS.) [HKLM][64Bits] -- {04FDBE69-F9FD-42A2-9008-E5CE7F60C6BE}
O42 - Logiciel: ASUS Screen Saver - (.ASUS.) [HKLM][64Bits] -- {0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Adblock Plus pour IE (32-bits et 64-bits) - (.Eyeo GmbH.) [HKLM][64Bits] -- {92E167CC-3D19-47EB-AE7F-A135427C3220}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {93F2A022-6C37-48B8-B241-FFABD9F60C30}
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {C4123106-B685-48E6-B9BD-E4F911841EB4}
O42 - Logiciel: HP Scanjet 2400 - (.HP.) [HKLM][64Bits] -- {D3A65B0A-403B-4C20-A488-BFED2BC5D2EF}
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D7B824DE-DA32-4772-9E5E-39C5158136A7}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor
O42 - Logiciel: ASUS WebStorage Sync Agent - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- ASUS WebStorage
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net
O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C
O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone
O42 - Logiciel: MyBitCast 2.0 - (.ASUS.) [HKLM][64Bits] -- MyBitCast
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin
O42 - Logiciel: Cossacks II: Napoleonic Wars - (.GSC Game World.) [HKLM][64Bits] -- Steam App 115200
O42 - Logiciel: American Conquest - (.GSC Game World.) [HKLM][64Bits] -- Steam App 115210
O42 - Logiciel: American Conquest - Fight Back - (.GSC Game World.) [HKLM][64Bits] -- Steam App 115220
O42 - Logiciel: Assassin's Creed Revelations - (.Ubisoft Montreal.) [HKLM][64Bits] -- Steam App 201870
O42 - Logiciel: Port Royale 3 - (.Gaming Minds.) [HKLM][64Bits] -- Steam App 205610
O42 - Logiciel: Assassin's Creed® III - (.Ubisoft Montreal.) [HKLM][64Bits] -- Steam App 208480
O42 - Logiciel: Worms Reloaded - (.Team17 Software Ltd..) [HKLM][64Bits] -- Steam App 22600
O42 - Logiciel: RollerCoaster Tycoon: Deluxe - (.Chris Sawyer Productions.) [HKLM][64Bits] -- Steam App 285310
O42 - Logiciel: Wildlife Park 3 - (.b-Alive.) [HKLM][64Bits] -- Steam App 287200
O42 - Logiciel: Total War Battles: KINGDOM - (.Creative Assembly.) [HKLM][64Bits] -- Steam App 300080
O42 - Logiciel: Medieval II: Total War - (.The Creative Assembly.) [HKLM][64Bits] -- Steam App 4700
O42 - Logiciel: Cossacks: Back to War - (.GSC Game World.) [HKLM][64Bits] -- Steam App 4850
O42 - Logiciel: Cossacks: Art of War - (.GSC Game World.) [HKLM][64Bits] -- Steam App 4870
O42 - Logiciel: Cossacks: European Wars - (.GSC Game World.) [HKLM][64Bits] -- Steam App 4880
O42 - Logiciel: Cossacks II: Battle for Europe - (.GSC Game World.) [HKLM][64Bits] -- Steam App 4890
O42 - Logiciel: Patrician IV: Rise of a Dynasty - (.Gaming Minds Studios.) [HKLM][64Bits] -- Steam App 57730
O42 - Logiciel: Sid Meier's Civilization: Beyond Earth - (.Firaxis Games.) [HKLM][64Bits] -- Steam App 65980
O42 - Logiciel: Sid Meier's Civilization V - (.2K Games, Inc..) [HKLM][64Bits] -- Steam App 8930
O42 - Logiciel: Toy Soldiers - (.Signal Studios.) [HKLM][64Bits] -- Steam App 98300
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: WebTablet FB Plugin 32 bit - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Internet Explorer and Netscape
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WTA-0eda17f7-fdf1-44cd-87c0-caf591ca3a2e =>.WildTangent
O42 - Logiciel: Peggle - (.WildTangent.) [HKLM][64Bits] -- WTA-4ac01422-47f4-450d-be29-dd2c93505f68 =>.WildTangent
O42 - Logiciel: Azteca - (.WildTangent.) [HKLM][64Bits] -- WTA-874d1d57-0527-4e80-adaa-bce83e1a070b =>.WildTangent
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-cf23f5a3-be59-42a3-91d4-7147cb84c427 =>.WildTangent
O42 - Logiciel: Tales of Lagoona - (.WildTangent.) [HKLM][64Bits] -- WTA-d927468d-46de-4206-b527-35d00680ffb7 =>.WildTangent
O42 - Logiciel: Cut the Rope - (.WildTangent.) [HKLM][64Bits] -- WTA-f9eaaca9-82be-44ea-8a23-da50b5803b42 =>.WildTangent
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {3792811C-832F-4392-B44A-24092901EDDC}
O42 - Logiciel: ASUS S Series Product Demo - (.ASUS.) [HKLM][64Bits] -- {387AA3E2-B9FE-4DA1-A097-A0D2213E8794}
O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {41BF4A3B-D60A-4E92-883F-C88C8C157261}
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B}
O42 - Logiciel: Les Sims™ 3 Accès VIP - (.Electronic Arts.) [HKLM][64Bits] -- {45057FCE-5784-48BE-8176-D9D00AF56C3C}
O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C}
O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D}
O42 - Logiciel: GoPanda2 - (.PANDANET Inc..) [HKLM][64Bits] -- {5BA97D0D-3A91-448E-976C-0BF6F7AA0B3F}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {7059BDA7-E1DB-442C-B7A1-6144596720A4}
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus =>.WildTangent
O42 - Logiciel: Les Sims™ 3 Inspiration Loft Kit - (.Electronic Arts.) [HKLM][64Bits] -- {71828142-5A24-4BD0-97E7-976DA08CE6CF}
O42 - Logiciel: ASUS InstantOn - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Les Sims Medieval - (.Electronic Arts.) [HKLM][64Bits] -- {83BEEFB4-8C28-4F4F-8A9D-E0D1ADCE335B}
O42 - Logiciel: Raccolta foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {86A1CEAD-EF47-47BB-AE79-DA8C09E15382}
O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM][64Bits] -- {888F1505-C2B3-4FDE-835D-36353EBD4754}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {AFA1153A-F547-409B-B837-3A0D6C5A3FEC}
O42 - Logiciel: Les Sims™ 3 Super-pouvoirs - (.Electronic Arts.) [HKLM][64Bits] -- {B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}
O42 - Logiciel: Les Sims™ 3 Destination Aventure - (.Electronic Arts.) [HKLM][64Bits] -- {BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}
O42 - Logiciel: Les Sims™ 3 - (.Electronic Arts.) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}
O42 - Logiciel: OpenOffice 4.1.0 - (.Apache Software Foundation.) [HKLM][64Bits] -- {C87EF11D-36E9-479D-9898-7541EA1E8A6A}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {F2508213-9989-4E85-A078-72BE483917EF}
O42 - Logiciel: Les Sims™ 3 University - (.Electronic Arts.) [HKLM][64Bits] -- {F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (117) - 11s
HKLM\SOFTWARE\Wow6432Node\Activision
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\Atheros Communications Inc.
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\CLSYSTEM
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\ECAREME
HKLM\SOFTWARE\Wow6432Node\electronic arts
HKLM\SOFTWARE\Wow6432Node\fish technology group
HKLM\SOFTWARE\Wow6432Node\Genesys Logic
HKLM\SOFTWARE\Wow6432Node\gog.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\HP
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Ntpad
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Rainbow Technologies
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Reg
HKLM\SOFTWARE\Wow6432Node\SEGA
HKLM\SOFTWARE\Wow6432Node\Sims
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\Team17 Software Ltd.
HKLM\SOFTWARE\Wow6432Node\THQ
HKLM\SOFTWARE\Wow6432Node\ubisoft
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\Wacom
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\AdblockPlus
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CoolROM
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\Emulators
HKCU\SOFTWARE\Firaxis
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\GoldenGate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GSC Game World
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kalypso media
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linkey =>PUP.LinkeySearch
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Protect Software GmbH
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SEGA
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SSPrint
HKCU\SOFTWARE\SYSTEMAX Software Development
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\The Creative Assembly
HKCU\SOFTWARE\TheCreativeAssembly
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\zylom
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/ (238) - 13s
O43 - CFD: 2014/05/02 - 11:18:44 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2014/12/11 - 20:51:56 - [] D -- C:\Program Files (x86)\AmIcoSingLun
O43 - CFD: 2014/06/18 - 17:33:16 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2015/03/20 - 18:14:23 - [0] D -- C:\Program Files (x86)\Assets Manager =>PUP.SystemK
O43 - CFD: 2015/05/17 - 13:03:09 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 2015/06/28 - 21:15:06 - [] D -- C:\Program Files (x86)\Battle.net
O43 - CFD: 2015/08/03 - 16:04:08 - [] D -- C:\Program Files (x86)\BlueStacks
O43 - CFD: 2015/02/06 - 21:45:10 - [] D -- C:\Program Files (x86)\Bluetooth Suite
O43 - CFD: 2014/06/18 - 16:24:16 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 2015/08/03 - 15:59:10 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/01/26 - 17:49:28 - [] D -- C:\Program Files (x86)\Electronic Arts
O43 - CFD: 2015/06/28 - 15:11:19 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2014/11/28 - 18:13:32 - [] D -- C:\Program Files (x86)\HP
O43 - CFD: 2015/01/26 - 17:49:20 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/02/06 - 21:10:12 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/07/31 - 14:23:39 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/06/29 - 14:48:20 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2014/06/08 - 15:43:39 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
O43 - CFD: 2013/04/26 - 01:13:52 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2013/04/26 - 01:16:41 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 2013/04/26 - 01:17:30 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2015/01/25 - 14:49:50 - [] D -- C:\Program Files (x86)\Microsoft WSE
O43 - CFD: 2013/08/22 - 17:36:30 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/06/12 - 13:34:41 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/02/06 - 20:46:41 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2014/09/12 - 18:07:36 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 2015/08/05 - 19:00:34 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/01/25 - 18:32:23 - [] D -- C:\Program Files (x86)\Origin
O43 - CFD: 2015/07/07 - 16:53:49 - [] D -- C:\Program Files (x86)\PhotoFiltre 7
O43 - CFD: 2014/01/06 - 01:56:56 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 2014/01/06 - 02:06:07 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2015/02/06 - 20:46:41 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/08/03 - 15:59:10 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/08/05 - 10:49:08 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2015/07/09 - 01:05:28 - [] D -- C:\Program Files (x86)\TabletPlugins
O43 - CFD: 2014/01/06 - 02:06:29 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2014/06/08 - 14:52:51 - [] D -- C:\Program Files (x86)\Ubisoft
O43 - CFD: 2014/08/08 - 01:22:06 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2013/04/26 - 01:20:44 - [] D -- C:\Program Files (x86)\WildGames
O43 - CFD: 2013/04/26 - 01:20:02 - [] D -- C:\Program Files (x86)\WildTangent Games
O43 - CFD: 2015/03/11 - 11:19:53 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/03/23 - 23:06:19 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/02/06 - 21:10:16 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 - 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/02/06 - 21:10:16 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 - 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/08/03 - 15:54:14 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2015/06/12 - 13:34:21 - [] D -- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/03/11 - 11:19:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/02/08 - 17:27:21 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/05/17 - 13:03:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 2015/02/15 - 20:07:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2015/02/06 - 21:13:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 2015/07/31 - 23:13:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 2015/02/06 - 21:13:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/02/06 - 21:13:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2015/02/06 - 21:13:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/06/29 - 14:49:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2013/08/22 - 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDA-glGo
O43 - CFD: 2015/07/07 - 16:46:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 2013/08/22 - 17:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2014/11/21 - 00:27:29 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/09 - 01:05:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablette Wacom
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/04/19 - 10:14:55 - [] D -- C:\ProgramData\.mono
O43 - CFD: 2014/11/16 - 13:57:54 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2014/11/01 - 02:28:47 - [0] D -- C:\ProgramData\89c775be-12de-4e15-846c-6b3e6a8c39a2
O43 - CFD: 2014/05/02 - 11:18:45 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/01/06 - 02:12:44 - [] D -- C:\ProgramData\AmUStor
O43 - CFD: 2015/06/29 - 14:47:20 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2014/06/18 - 17:33:34 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/01/06 - 02:24:25 - [] D -- C:\ProgramData\AsTouchPanel
O43 - CFD: 2013/04/26 - 01:16:21 - [] D -- C:\ProgramData\ASUS WebStorage
O43 - CFD: 2013/04/26 - 01:15:20 - [] D -- C:\ProgramData\ASUSLogos
O43 - CFD: 2014/04/19 - 20:00:48 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 2015/02/15 - 20:00:20 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2014/08/17 - 12:29:30 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 2014/08/17 - 12:31:57 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2015/07/31 - 23:14:04 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2015/08/03 - 16:07:32 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2015/02/06 - 21:27:06 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/06/29 - 14:48:57 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 2015/01/26 - 18:04:34 - [] D -- C:\ProgramData\EA Core
O43 - CFD: 2015/01/25 - 15:38:17 - [] D -- C:\ProgramData\Electronic Arts
O43 - CFD: 2014/08/21 - 18:25:45 - [] D -- C:\ProgramData\GameHouse
O43 - CFD: 2014/11/28 - 18:14:53 - [] D -- C:\ProgramData\HP
O43 - CFD: 2014/11/28 - 18:14:13 - [] D -- C:\ProgramData\HP Product Assistant
O43 - CFD: 2014/01/06 - 02:02:47 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/03/20 - 17:39:00 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2014/06/19 - 13:07:16 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/02/06 - 21:27:06 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/06/12 - 12:15:10 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/04/26 - 01:16:41 - [] D -- C:\ProgramData\Microsoft SkyDrive
O43 - CFD: 2015/02/06 - 21:27:06 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2014/05/01 - 12:46:32 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/01/25 - 18:46:10 - [] D -- C:\ProgramData\Origin
O43 - CFD: 2014/01/06 - 02:17:25 - [] D -- C:\ProgramData\P4G
O43 - CFD: 2015/08/01 - 14:41:18 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/02/06 - 21:10:24 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2014/01/06 - 01:56:46 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 2015/02/06 - 21:13:47 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2014/05/04 - 23:08:45 - [] D -- C:\ProgramData\SafeNet Sentinel
O43 - CFD: 2014/06/05 - 17:30:29 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 2015/08/03 - 15:59:12 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/07/09 - 15:48:15 - [] D -- C:\ProgramData\SYSTEMAX Software Development
O43 - CFD: 2014/10/08 - 14:14:23 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/08/01 - 18:48:01 - [] D -- C:\ProgramData\Ubisoft
O43 - CFD: 2014/04/19 - 19:57:50 - [] D -- C:\ProgramData\USBChargerPlus
O43 - CFD: 2014/05/27 - 00:31:25 - [] D -- C:\ProgramData\Wildlife Park 3
O43 - CFD: 2013/04/26 - 01:20:07 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2014/10/08 - 14:01:59 - [] D -- C:\ProgramData\Zylom
O43 - CFD: 2014/05/02 - 11:18:49 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/06/29 - 14:47:20 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2014/01/06 - 02:10:01 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 2014/08/17 - 12:49:58 - [] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment
O43 - CFD: 2014/11/28 - 18:09:49 - [] D -- C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 2014/11/28 - 18:11:19 - [] D -- C:\Program Files (x86)\Common Files\HP
O43 - CFD: 2014/05/27 - 13:25:54 - [] D -- C:\Program Files (x86)\Common Files\IBM
O43 - CFD: 2014/01/06 - 02:06:04 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/02/06 - 20:58:15 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2014/06/19 - 13:07:08 - [] D -- C:\Program Files (x86)\Common Files\mcafee
O43 - CFD: 2015/02/06 - 21:10:10 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2014/01/06 - 02:01:23 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2014/01/06 - 02:10:54 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 2013/08/22 - 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/07/31 - 09:42:20 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/02/06 - 21:10:10 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2013/04/26 - 01:16:31 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2015/04/19 - 10:14:55 - [] D -- C:\Users\Stéphanie\AppData\Roaming\.mono
O43 - CFD: 2014/04/19 - 20:32:41 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Adobe
O43 - CFD: 2014/06/19 - 22:14:19 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Apple Computer
O43 - CFD: 2014/04/19 - 20:00:25 - [] D -- C:\Users\Stéphanie\AppData\Roaming\ASUS WebStorage
O43 - CFD: 2014/04/19 - 20:00:20 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Atheros
O43 - CFD: 2015/02/15 - 20:07:58 - [] D -- C:\Users\Stéphanie\AppData\Roaming\AVAST Software
O43 - CFD: 2014/08/17 - 12:47:43 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Battle.net
O43 - CFD: 2015/05/14 - 23:00:18 - [] D -- C:\Users\Stéphanie\AppData\Roaming\dvdcss
O43 - CFD: 2015/02/15 - 20:02:15 - [] D -- C:\Users\Stéphanie\AppData\Roaming\DVDVideoSoft
O43 - CFD: 2015/06/06 - 22:43:03 - [] D -- C:\Users\Stéphanie\AppData\Roaming\FiraxisLive
O43 - CFD: 2014/06/25 - 19:45:10 - [] HD -- C:\Users\Stéphanie\AppData\Roaming\GoldenGate
O43 - CFD: 2015/03/20 - 18:33:31 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Google
O43 - CFD: 2014/11/28 - 18:58:16 - [] D -- C:\Users\Stéphanie\AppData\Roaming\HP
O43 - CFD: 2015/02/06 - 21:31:10 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Identities
O43 - CFD: 2014/12/09 - 14:58:56 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Kalypso Media
O43 - CFD: 2014/04/19 - 20:00:44 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Macromedia
O43 - CFD: 2015/07/31 - 23:13:49 - [] SD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft
O43 - CFD: 2014/05/01 - 13:50:40 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Mozilla
O43 - CFD: 2014/09/12 - 18:10:08 - [] D -- C:\Users\Stéphanie\AppData\Roaming\OpenOffice
O43 - CFD: 2014/09/12 - 17:43:01 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Opera Software
O43 - CFD: 2015/01/25 - 18:32:37 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Origin
O43 - CFD: 2015/07/07 - 16:57:18 - [] D -- C:\Users\Stéphanie\AppData\Roaming\PhotoFiltre 7
O43 - CFD: 2014/08/19 - 01:03:18 - [] D -- C:\Users\Stéphanie\AppData\Roaming\ProtectDISC
O43 - CFD: 2015/03/20 - 18:14:22 - [] D -- C:\Users\Stéphanie\AppData\Roaming\rmi
O43 - CFD: 2014/05/04 - 22:36:57 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Shortcut
O43 - CFD: 2015/08/03 - 15:57:10 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Skype
O43 - CFD: 2014/07/28 - 13:10:12 - [] D -- C:\Users\Stéphanie\AppData\Roaming\sparta111
O43 - CFD: 2014/06/14 - 19:03:21 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Spore
O43 - CFD: 2014/08/21 - 18:17:56 - [] D -- C:\Users\Stéphanie\AppData\Roaming\StormFall =>Adware.StormFall
O43 - CFD: 2015/07/09 - 15:48:15 - [] D -- C:\Users\Stéphanie\AppData\Roaming\SYSTEMAX Software Development
O43 - CFD: 2015/06/29 - 15:02:05 - [] D -- C:\Users\Stéphanie\AppData\Roaming\ThinkSky
O43 - CFD: 2014/06/08 - 15:39:18 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Unity
O43 - CFD: 2015/08/04 - 22:05:10 - [] D -- C:\Users\Stéphanie\AppData\Roaming\uTorrent
O43 - CFD: 2015/08/04 - 21:36:15 - [] D -- C:\Users\Stéphanie\AppData\Roaming\vlc
O43 - CFD: 2014/08/21 - 18:24:58 - [] D -- C:\Users\Stéphanie\AppData\Roaming\WinRAR
O43 - CFD: 2015/07/09 - 01:13:36 - [] D -- C:\Users\Stéphanie\AppData\Roaming\WTablet
O43 - CFD: 2015/08/05 - 19:01:52 - [] D -- C:\Users\Stéphanie\AppData\Roaming\ZHP
O43 - CFD: 2014/10/31 - 23:11:42 - [] D -- C:\Users\Stéphanie\AppData\Local\Adobe
O43 - CFD: 2014/06/18 - 17:33:18 - [] D -- C:\Users\Stéphanie\AppData\Local\Apple
O43 - CFD: 2014/06/18 - 17:34:38 - [] D -- C:\Users\Stéphanie\AppData\Local\Apple Computer
O43 - CFD: 2015/02/06 - 21:06:17 - [0] SHD -- C:\Users\Stéphanie\AppData\Local\Application Data
O43 - CFD: 2014/04/19 - 19:58:21 - [] D -- C:\Users\Stéphanie\AppData\Local\ASUS
O43 - CFD: 2015/08/04 - 21:41:23 - [] D -- C:\Users\Stéphanie\AppData\Local\Battle.net
O43 - CFD: 2014/08/17 - 13:35:01 - [] D -- C:\Users\Stéphanie\AppData\Local\Blizzard
O43 - CFD: 2014/08/17 - 12:44:46 - [] D -- C:\Users\Stéphanie\AppData\Local\Blizzard Entertainment
O43 - CFD: 2015/07/31 - 23:13:14 - [] D -- C:\Users\Stéphanie\AppData\Local\Bluestacks
O43 - CFD: 2014/04/19 - 20:00:48 - [] D -- C:\Users\Stéphanie\AppData\Local\BMExplorer
O43 - CFD: 2015/07/31 - 01:38:19 - [] D -- C:\Users\Stéphanie\AppData\Local\CEF
O43 - CFD: 2014/09/12 - 01:05:31 - [] D -- C:\Users\Stéphanie\AppData\Local\Comodo
O43 - CFD: 2015/02/09 - 14:37:40 - [0] D -- C:\Users\Stéphanie\AppData\Local\CrashDumps
O43 - CFD: 2015/07/29 - 22:32:53 - [0] D -- C:\Users\Stéphanie\AppData\Local\Diagnostics
O43 - CFD: 2015/06/15 - 17:46:43 - [0] SHD -- C:\Users\Stéphanie\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/15 - 17:46:43 - [0] SHD -- C:\Users\Stéphanie\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/15 - 17:46:43 - [0] SHD -- C:\Users\Stéphanie\AppData\Local\EmieUserList
O43 - CFD: 2014/11/01 - 02:01:04 - [] D -- C:\Users\Stéphanie\AppData\Local\Facebook
O43 - CFD: 2014/09/12 - 17:00:32 - [0] D -- C:\Users\Stéphanie\AppData\Local\GGEmpire
O43 - CFD: 2015/06/12 - 13:33:24 - [] D -- C:\Users\Stéphanie\AppData\Local\Google
O43 - CFD: 2014/10/31 - 22:10:28 - [] D -- C:\Users\Stéphanie\AppData\Local\GoPanda2
O43 - CFD: 2015/06/06 - 11:02:49 - [] D -- C:\Users\Stéphanie\AppData\Local\GWX
O43 - CFD: 2015/02/06 - 21:06:17 - [0] SHD -- C:\Users\Stéphanie\AppData\Local\Historique
O43 - CFD: 2014/11/28 - 18:57:29 - [] D -- C:\Users\Stéphanie\AppData\Local\HP
O43 - CFD: 2015/06/10 - 23:07:19 - [] D -- C:\Users\Stéphanie\AppData\Local\Intel_Corporation
O43 - CFD: 2014/05/02 - 15:12:52 - [] D -- C:\Users\Stéphanie\AppData\Local\Macromedia
O43 - CFD: 2015/06/12 - 12:15:09 - [] D -- C:\Users\Stéphanie\AppData\Local\Microsoft
O43 - CFD: 2014/05/01 - 13:50:41 - [] D -- C:\Users\Stéphanie\AppData\Local\Mozilla
O43 - CFD: 2015/06/06 - 22:43:01 - [] D -- C:\Users\Stéphanie\AppData\Local\My Games
O43 - CFD: 2014/09/12 - 17:43:01 - [] D -- C:\Users\Stéphanie\AppData\Local\Opera Software
O43 - CFD: 2015/01/25 - 18:32:37 - [] D -- C:\Users\Stéphanie\AppData\Local\Origin
O43 - CFD: 2015/06/06 - 17:42:32 - [] D -- C:\Users\Stéphanie\AppData\Local\Packages
O43 - CFD: 2014/06/25 - 19:44:25 - [] D -- C:\Users\Stéphanie\AppData\Local\Programs
O43 - CFD: 2015/06/02 - 17:17:12 - [] D -- C:\Users\Stéphanie\AppData\Local\Skype
O43 - CFD: 2014/06/25 - 20:04:42 - [0] D -- C:\Users\Stéphanie\AppData\Local\Soldiers
O43 - CFD: 2014/09/12 - 17:17:25 - [0] D -- C:\Users\Stéphanie\AppData\Local\Sparta
O43 - CFD: 2015/03/25 - 11:10:11 - [] D -- C:\Users\Stéphanie\AppData\Local\Steam
O43 - CFD: 2014/08/21 - 18:17:51 - [0] D -- C:\Users\Stéphanie\AppData\Local\StormFall =>Adware.StormFall
O43 - CFD: 2015/08/05 - 19:02:08 - [] D -- C:\Users\Stéphanie\AppData\Local\Temp
O43 - CFD: 2015/02/06 - 21:06:17 - [0] SHD -- C:\Users\Stéphanie\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/08/01 - 19:05:24 - [] D -- C:\Users\Stéphanie\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 2014/06/08 - 15:21:52 - [] D -- C:\Users\Stéphanie\AppData\Local\Unity
O43 - CFD: 2015/08/01 - 13:45:59 - [] D -- C:\Users\Stéphanie\AppData\Local\VirtualStore
O43 - CFD: 2015/08/04 - 17:48:49 - [] D -- C:\Users\Stéphanie\AppData\Local\Windows Live
O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/31 - 22:51:46 - [] RD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/05/31 - 20:19:32 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome
O43 - CFD: 2014/04/25 - 21:33:55 - [0] D -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/05/31 - 20:19:25 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/02/06 - 21:07:26 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GoPanda2
O43 - CFD: 2013/08/22 - 17:36:32 - [] D -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/02/06 - 21:13:46 - [] SD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
O43 - CFD: 2015/07/07 - 16:53:49 - [0] D -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 2015/07/31 - 22:51:46 - [] RD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/02/06 - 21:07:26 - [] RD -- C:\Users\Stéphanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

---\\ Liste des pilotes du système (SDL) (O58) (74) - 11s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176]
O58 - SDL:2012/09/18 14:51:54 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\WINDOWS\System32\drivers\AiCharger.sys [17152]
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200]
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952]
O58 - SDL:2012/10/04 02:26:58 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\WINDOWS\System32\drivers\AmUStor.sys [95232]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016]
O58 - SDL:2012/05/31 05:47:44 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [21152]
O58 - SDL:2013/04/16 19:25:46 A . (.ASUS Corporation - Asus TP Filter Driver.) -- C:\WINDOWS\System32\drivers\AsusTP.sys [65784]
O58 - SDL:2015/07/30 14:48:58 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [28656]
O58 - SDL:2015/07/30 14:48:59 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [90968]
O58 - SDL:2015/07/30 14:48:56 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [93528]
O58 - SDL:2015/07/30 14:49:01 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [65224]
O58 - SDL:2015/07/30 14:45:37 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1048856]
O58 - SDL:2015/07/30 14:49:07 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [447944]
O58 - SDL:2015/07/30 14:49:14 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [150672]
O58 - SDL:2015/07/30 14:49:11 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [274808]
O58 - SDL:2013/06/18 16:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256]
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2013/01/25 01:46:20 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\WINDOWS\System32\drivers\btath_a2dp.sys [346192]
O58 - SDL:2013/01/25 01:46:20 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\WINDOWS\System32\drivers\btath_avdt.sys [115280]
O58 - SDL:2013/01/25 01:46:20 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_flt.sys [89168]
O58 - SDL:2013/01/25 01:46:20 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\WINDOWS\System32\drivers\btath_hcrp.sys [179432]
O58 - SDL:2013/01/25 01:46:22 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_lwflt.sys [77464]
O58 - SDL:2013/01/25 01:46:24 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\WINDOWS\System32\drivers\btath_rcp.sys [136424]
O58 - SDL:2014/04/28 07:33:30 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240]
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevDram.sys [107920]
O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevFan.sys [43408]
O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevGen.sys [65424]
O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevPch.sys [97680]
O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevProc.sys [229776]
O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfManager.sys [363920]
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024]
O58 - SDL:2012/10/03 17:14:56 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2012/07/02 17:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784]
O58 - SDL:2014/10/25 22:52:20 A . (.Windows (R) Win 7 DDK provider - Filter Driver for HID-KMDF Interface.) -- C:\WINDOWS\System32\drivers\hidkmdf.sys [14136]
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:2012/12/07 08:45:34 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [652344]
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248]
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2013/10/01 14:02:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4177920]
O58 - SDL:2012/09/24 04:37:16 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528]
O58 - SDL:2013/08/23 00:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [39320]
O58 - SDL:2013/08/23 00:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [26008]
O58 - SDL:2012/08/02 05:22:48 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [14992]
O58 - SDL:2013/06/18 16:44:59 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [129224]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840]
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840]
O58 - SDL:2015/07/30 14:44:39 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\WINDOWS\System32\drivers\ngvss.sys [115152]
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368]
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288]
O58 - SDL:2013/01/22 15:43:32 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3305928]
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040]
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800]
O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080]
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072]
O58 - SDL:2014/08/16 00:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504]
O58 - SDL:2014/10/25 22:52:20 A . (.Wacom Technology - Wacom HID Router.) -- C:\WINDOWS\System32\drivers\wachidrouter.sys [100664]
O58 - SDL:2014/10/25 22:52:20 A . (.Wacom Technology - Wacom Router Filter Driver.) -- C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [15160]
O58 - SDL:2013/01/21 04:56:12 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\athw8x.sys [3747840]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (11) - 27s
O61 - LFC: 2015/08/05 10:46:33 A . (..) -- C:\Users\Stéphanie\AppData\Roaming\sp_data.sys [62]
O61 - LFC: 2015/08/04 21:38:14 A . (.BitTorrent Inc..) -- C:\Users\Stéphanie\AppData\Roaming\uTorrent\uTorrent.exe [1693024]
O61 - LFC: 2015/08/04 21:38:14 A . (.BitTorrent Inc..) -- C:\Users\Stéphanie\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe [1693024]
O61 - LFC: 2015/08/03 12:04:17 A . (..) -- C:\Users\Stéphanie\AppData\Local\Microsoft\Windows\Sqm\Manifest\Sqm10248.bin [269992]
O61 - LFC: 2015/08/01 19:02:45 A . (.Ubisoft.) -- C:\Users\Stéphanie\AppData\Local\Microsoft\Windows\INetCache\IE\WD7Q3KHP\UplayInstaller.exe [61673968]
O61 - LFC: 2015/08/04 21:37:04 A . (..) -- C:\Users\Stéphanie\AppData\Local\Microsoft\Windows\INetCache\IE\SNUOER84\urlblockindex[1].bin [16]
O61 - LFC: 2015/07/29 22:19:42 A . (..) -- C:\Users\Stéphanie\AppData\Local\Google\Update\Install\{59117B02-9810-4B4C-9A4D-7CBC92E29B24}\44.0.2403.125_43.0.2357.132_chrome_updater.exe [7521360]
O61 - LFC: 2015/07/29 22:19:42 A . (..) -- C:\Users\Stéphanie\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\44.0.2403.125\44.0.2403.125_43.0.2357.132_chrome_updater.exe [7521360]
O61 - LFC: 2015/07/29 22:14:19 AT . (..) -- C:\Users\Stéphanie\AppData\Local\Google\Update\1.3.28.1\GoogleUpdateComRegisterShell64.exe [130888]
O61 - LFC: 2015/08/05 19:01:35 A . (..) -- C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/08/05 17:22:45 A . (..) -- C:\Users\Stéphanie\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [98966]

---\\ Associations Shell Spawning (O67) (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (4) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI (8) - 6s
O69 - SBI: prefs.js [Stéphanie - 4396wkhj.default-1410976119812] user_pref("extensions.SunriseBrowse.asul", "1412759677884"); =>PUP.SunriseBrowse
O69 - SBI: prefs.js [Stéphanie - 4396wkhj.default-1410976119812] user_pref("extensions.SunriseBrowse.aul", "1412759660850"); =>PUP.SunriseBrowse
O69 - SBI: prefs.js [Stéphanie - 4396wkhj.default-1410976119812] user_pref("extensions.SunriseBrowse.irl", true); =>PUP.SunriseBrowse
O69 - SBI: prefs.js [Stéphanie - 4396wkhj.default-1410976119812] user_pref("extensions.SunriseBrowse.is", "isgiwhBE"); =>PUP.SunriseBrowse
O69 - SBI: prefs.js [Stéphanie - 4396wkhj.default-1410976119812] user_pref("extensions.SunriseBrowse.ug", "39c81faa-c1e6-4565-955c-8d3dc85fc318"); =>PUP.SunriseBrowse
O69 - SBI: prefs.js [Stéphanie - 4396wkhj.default-1410976119812] user_pref("extensions.ZRzFFu0sR0ZNNz7a.url", "http://driverguidemy.ru/sync2/?q=hfZ9oet7gMCMCyVUojrHpjCMg708BNmGWj8cmihGheDUojw9rja[...] =>PUP.DriverGuide
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/

---\\ Scan Additionnel (O88) (4) - 0s
HKCU\SOFTWARE\Linkey =>PUP.LinkeySearch
C:\Program Files (x86)\Assets Manager =>PUP.SystemK
C:\Users\Stéphanie\AppData\Roaming\StormFall =>Adware.StormFall
C:\Users\Stéphanie\AppData\Local\StormFall =>Adware.StormFall

---\\ Récapitulatif des détections trouvées sur votre station (5) - 0s
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.LinkeySearch
http://www.nicolascoolman.fr/pup-systemk/ =>PUP.SystemK
http://www.nicolascoolman.fr/blog =>Adware.StormFall
http://www.nicolascoolman.fr/pup-sunrisebrowse/ =>PUP.SunriseBrowse
http://www.nicolascoolman.fr/blog =>PUP.DriverGuide

~ End of the scan, 20517 items in 100 seconds (837)(0)()

Publicité


Signaler le contenu de ce document

Publicité