cjoint

Publicité


Publicité

Commentaire : Premiere fois que j'execute ce genre de manip. Je ne sais pas quoi faire ensuite, licone netoyer m'enmene sur le site de nicolas coolman, et je ne suis pas tres fort in onformatique. Merci de m'aider svp ^^

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.9.24.145 Par Nicolas Coolman (2015/09/24)
~ Démarré par cano (Administrator) (2015/09/27 13:38:16)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\cano\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\cano\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10240)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v45.0.2454.99
MSIE: Internet Explorer v11.0.10240.16431

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (3) - 4s
Avast Free Antivirus v10.3.2223
Malwarebytes Anti-Malware version 2.0.3.1025
Windows Defender W10 (Deactivate)

---\\ Logiciels d'optimisation (1) - 4s
CCleaner v4.06

---\\ Surveillance de Logiciels (2) - 4s
Adobe Flash Player 19 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4192.816 MB (28% free)
~ System Restore: Activé (Enable)
~ System drive C: has 295 GB free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: CANO-PC
~ User Name: cano
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 1s
~ Drive C: has 295 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 1s
[MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304] ©
[MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392] ©
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312] ©
[MD5.FE32B8423711B4B4378C0BA3C3560ED4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2741760] ©
[MD5.84B1FE2E4615A89293F1FD4DE52EE26E] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [578560] ©
[MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592] ©
[MD5.C287D0E32771E3222A444DC527A29477] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [680256] ©
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] ©
[MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888] ©
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512] ©
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] ©
[MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] ©
[MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] ©
[MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] ©
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] ©
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] ©
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] ©
[MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408] ©
[MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] ©
[MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768] ©
[MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] ©
[MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] ©
[MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576] ©
[MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] ©

---\\ Processus lancés (47) - 5s
[MD5.D689693D53364774001860941EDBA80F] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) -- C:\WINDOWS\system32\nvvsvc.exe [932040] [PID.1244] ©
[MD5.D2230317777033CD0456990BFC4994E5] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [411936] [PID.1268] ©
[MD5.A97E144E84A665B22AE6E6A93E4DD465] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1816] ©
[MD5.8A71B31B132E9DA2201BCBF26BCA36A5] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [8704] [PID.2444] ©
[MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2476] ©
[MD5.4015287649DBA0336CB27A2757C7E5E6] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808] [PID.2564] ©
[MD5.2A7A71452CE6106E1F50BE759C369E66] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [770832] [PID.2572] ©
[MD5.D6BF6FD055BD719F3D62E51B90857159] - (.LogMeIn, Inc. - LMIGuardianSvc.) -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552] [PID.2588] ©
[MD5.2ADED86ED9B92885378467CFEE9ABE8F] - (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2545512] [PID.2960] ©
[MD5.D6310F79E51D1F997E964E81DD368AEA] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608] [PID.3012] ©
[MD5.AEC2796DF28AB7494A0C688E40D7B38C] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064] [PID.3032] ©
[MD5.AEC2796DF28AB7494A0C688E40D7B38C] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064] [PID.1728] ©
[MD5.AEC2796DF28AB7494A0C688E40D7B38C] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064] [PID.2484] ©
[MD5.9FD1D36A81C0B13DA1EAA0C8ABB4DC65] - (.BlueStack Systems, Inc. - BlueStacks Service.) -- C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192] [PID.5224] ©
[MD5.FCAAA6D7D3222FBB8C82A02D85DCAD8B] - (.BlueStack Systems - BlueStacks Network Helper Process.) -- C:\Program Files (x86)\BlueStacks\HD-Network.exe [378640] [PID.5800] ©
[MD5.23FDB96EF1B84F023E474D75FC3D07C0] - (.BlueStack Systems - BlueStacks Block Device Helper Process.) -- C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe [261392] [PID.4420] ©
[MD5.CA70ADA68BD5FF3ADA5E08F46D259746] - (.BlueStack Systems - BlueStacks Shared Folder Helper Process.) -- C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe [367376] [PID.7552] ©
[MD5.D689693D53364774001860941EDBA80F] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) -- C:\WINDOWS\system32\nvvsvc.exe [932040] [PID.7972] ©
[MD5.A560CC68F1348F8E45C09C0FF123291A] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1200328] [PID.5216] ©
[MD5.85F00018491AF70D475ABF05F8B122AA] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2446024] [PID.100] ©
[MD5.C56AEF21A76A6E2BB36A384B2C96389F] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104] [PID.7916] ©
[MD5.65E8545F1297CD83534C354A7BED1848] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696] [PID.2500] ©
[MD5.2A3FB4C98F139038E23330D2439DB8A4] - (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\cano\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [PID.3872] ©
[MD5.E602DFD7B38FFA0C4E39CA6CFBCC44F8] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\cano\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030648] [PID.6284] ©
[MD5.7566FBF60A1D8A66D7DF66D94F312636] - (...) -- C:\Program Files (x86)\baidu\baidu.exe [61440] [PID.4208]
[MD5.B9AF30E8BFF1C81BD2F91F91687CEFE3] - (...) -- C:\Users\cano\Downloads\cacaoweb (3).exe [535856] [PID.7904] =>PUP.Optional.CacaoWeb
[MD5.FF4F87DCDAA5080281E0E70BB116086B] - (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2239376] [PID.9112] ©
[MD5.22D8ED7D0FAE737B2884E88E7327D802] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe [819984] [PID.3928] ©
[MD5.71738E5D624F00EFE56F7C35DB36267C] - (.Adobe Systems Incorporated - Adobe IPC Broker.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe [769904] [PID.8416] ©
[MD5.799450710D1B09FAF0D220B4DA3BF431] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776] [PID.5312] ©
[MD5.14D6542607ACD4B2D1DDB1A36E0D8813] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744] [PID.5608] ©
[MD5.02B8BC2531917B205D509E6D8661DAFF] - (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5579624] [PID.8064] ©
[MD5.4C2812958D3D4342FC21E47CC361D5C2] - (.Copyright © 2013 Adobe Systems, Inc. All rights reser - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe [4696432] [PID.7636]
[MD5.AE9BC27D095C2F26E082C4B3D25921FE] - (.Adobe Systems Incorporated - Adobe CEF Helper.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe [395120] [PID.5864] ©
[MD5.5E85E14E91DC7EC217119178210F130B] - (.Oracle Corporation - Java(TM) Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [530816] [PID.5412] ©
[MD5.5F27F62EABCD11518112EA99DE02BEF7] - (.Copyright (C) 2011 - PVP.net Patcher Kernel.) -- C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe [1294336] [PID.2704]
[MD5.9D8AF0FBB737D1416A80F81CF9C5BC70] - (.Copyright (C) 2014 - Riot Client Patcher.) -- C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.255\deploy\LoLLauncher.exe [2221048] [PID.5304]
[MD5.80521D01B2D27B9D91532BB1D8ED7799] - (.Copyright (C) 2014 - LoL Patcher.) -- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.39\deploy\LoLPatcher.exe [4049400] [PID.4244]
[MD5.5B93A9C1BB894EFA4D6429EEADA5007C] - (...) -- C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.160\deploy\LolClient.exe [74752] [PID.6668]
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.3516] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.4972] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.1640] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.744] ©
[MD5.1668262CDE56A0442EA221B8C3B7AE06] - (.CBS Software - SpeedConnect Internet Accelerator.) -- C:\Program Files (x86)\CBS Software\SpeedConnect Internet Accelerator\SpeedConnectStartUp.exe [618192] [PID.7604] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.1108] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.6464] ©
[MD5.260B29F5BCC07C91CBA92910484BE023] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\cano\Downloads\ZHPDiag3.exe [1938944] [PID.6272] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (4) - 0s
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 1s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll ©
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks Inc..) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll ©
P2 - FPN: [HKLM] [@qq.com/npAndroidAssistant] - (.Tencent, Inc..) -- C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll =>PUP.Optional.TencentAddressBar
P2 - FPN: [HKLM] [@qq.com/QQPCMgr] - (.Tencent.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\npQMExtensionsMozilla.dll =>PUP.Optional.TencentAddressBar

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (22) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (2) - 1s
O2 - BHO: 583e31c01eeb0132f0d1712b8d7ccf2e0064755 [64Bits] - {11111111-1111-1111-1111-110611471155} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll ©

---\\ Applications lancées au démarrage du système (33) - 0s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ©
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ©
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ©
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\cano\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe ©
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\cano\AppData\Roaming\Spotify\SpotifyWebHelper.exe ©
O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\cano\AppData\Roaming\Spotify\Spotify.exe ©
O4 - HKCU\..\Run: [apphide] . (...) -- C:\Program Files (x86)\baidu\baidu.exe
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\OneDrive.exe ©
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©
O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\cano\Downloads\cacaoweb (3).exe =>PUP.Optional.CacaoWeb
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe ©
O4 - HKCU\..\Run: [SpeedConnectStartUp] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ©
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe ©
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe ©
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ©
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_235] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [ QQPCTray] C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTRAY.EXE (.not file.) =>PUP.Optional.TencentAddressBar
O4 - HKLM\..\Wow6432Node\Run: [RSDTRAY] C:\Program Files (x86)\Rising\RSD\popwndexe.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [LogMeIn Hamachi Ui] . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe ©
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\cano\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\cano\AppData\Roaming\Spotify\SpotifyWebHelper.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\cano\AppData\Roaming\Spotify\Spotify.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [apphide] . (...) -- C:\Program Files (x86)\baidu\baidu.exe
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\OneDrive.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [cacaoweb] . (...) -- C:\Users\cano\Downloads\cacaoweb (3).exe =>PUP.Optional.CacaoWeb
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe ©
O4 - HKUS\S-1-5-21-3587538232-702864412-1772444903-1000\..\Run: [SpeedConnectStartUp] (Orphean)

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (22) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll ©
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©

---\\ Liste des services NT non Microsoft et non désactivés (14) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc. - BlueStacks Service.) - C:\Program Files (x86)\BlueStacks\HD-Service.exe ©
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe ©
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe ©
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe ©
O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe ©
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe ©
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) - C:\WINDOWS\system32\nvvsvc.exe ©
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©

---\\ Tâches planifiées en automatique (21) - 4s
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] ©
[MD5.C6D147C12C424373B016C0AB0A6C61EB] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.B3B87E58466CE9B6662819820010106C] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1373872] ©
[MD5.22621F4BC16C5C47E76E40F251F0CC79] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3905304] ©
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-3587538232-702864412-1772444903-1000Core] (.Facebook Inc..) -- C:\Users\cano\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.00000000000000000000000000000000] [APT] [RsDelayLauncher_{8A34248E-7D35-4832-8378-7659E0B0A380}] (...) -- C:\PROGRAM FILES (X86)\RISING\RAV\rsdelaylauncher.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [WIN-statsAdmin] (...) -- C:\Users\cano\AppData\Local\Microsoft\WinU\~iuwfdqv.exe (.not file.) [0]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3587538232-702864412-1772444903-1000Core - (.Facebook Inc..) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3587538232-702864412-1772444903-1000Core.job [902] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1088] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1092] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3996] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3976] ©
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [4280] ©
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2880] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3587538232-702864412-1772444903-1000Core - (.Facebook Inc..) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3587538232-702864412-1772444903-1000Core [3640] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3918] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4150] ©
O39 - APT: WIN-statsAdmin - (...) -- C:\WINDOWS\System32\Tasks\WIN-statsAdmin [3460]

---\\ Logiciels installés (57) - 15s
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner ©
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers ©
O42 - Logiciel: NVIDIA SMU Driver - (...) [HKLM][64Bits] -- NVIDIA SMU Driver
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761. - (.Microsoft Corporation.) [HKLM][64Bits] -- {986E003C-E56D-5A47-110E-D3C81F0E8535} ©
O42 - Logiciel: NVIDIA Pilote 3D Vision 340.52 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision ©
O42 - Logiciel: NVIDIA Pilote graphique 340.52 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA GeForce Experience 2.1.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 340.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB ©
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver ©
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {CE20A68F-BFBC-11E3-AA73-F04DA23A5C58} ©
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR ©
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player ©
O42 - Logiciel: Audacity 2.0.5 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 ©
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast ©
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks App Player ©
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ©
O42 - Logiciel: Digital Copy - (...) [HKLM][64Bits] -- Digital Copy
O42 - Logiciel: FL Studio 11 - (.Image-Line.) [HKLM][64Bits] -- FL Studio 11 ©
O42 - Logiciel: FormatFactory 3.2.1.0 - (.Free Time.) [HKLM][64Bits] -- FormatFactory ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.1 ©
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- LogMeIn Hamachi ©
O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.3.1025 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo ©
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 ©
O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM][64Bits] -- PokerStars.fr ©
O42 - Logiciel: SpeedConnect Internet Accelerator v.8.0 - (.CBS Software.) [HKLM][64Bits] -- SpeedConnect Internet Accelerator v.8.0_is1 ©
O42 - Logiciel: Spotydl 0.9.36.0 - (.spotydl.com.) [HKLM][64Bits] -- Spotydl_is1
O42 - Logiciel: WinRAR 5.00 (32 bits) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0A3925EA-5B0E-401B-A189-7419149747B2} ©
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} ©
O42 - Logiciel: Java 7 Update 71 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217071FF} ©
O42 - Logiciel: Smite - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017} ©
O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC} ©
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {3E75652D-99B1-417E-B163-BEF33CAD3F16} ©
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- {517E7DBD-7A5B-4B7F-B137-82AB4DAD68FC} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ©
O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} ©
O42 - Logiciel: AION Free-to-Play - (.Gameforge.) [HKLM][64Bits] -- {82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1 ©
O42 - Logiciel: OpenOffice 4.0.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8} ©
O42 - Logiciel: Gameforge Live 2.0.8 - (.Gameforge.) [HKLM][64Bits] -- {9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1 ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} ©
O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {B8D84F70-0296-11E2-8DF5-F04DA23A5C58} ©
O42 - Logiciel: YGOPro DevPro - (.YGOPro DevPro.) [HKLM][64Bits] -- {CD74705B-B111-439B-8BA7-DF7A0B7D3F44}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {FE5ABB0E-EDEA-4023-B0FB-9DEA39A98D76} ©
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify ©
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer ©
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (156) - 15s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Applian Technologies
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\AVG
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Clownfish
HKLM\SOFTWARE\Wow6432Node\CurrentControlSet
HKLM\SOFTWARE\Wow6432Node\DigitalCopy
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\Dofus2
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\Gameforge
HKLM\SOFTWARE\Wow6432Node\Gameforge4d
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hi-Rez Studios
HKLM\SOFTWARE\Wow6432Node\HiRez Studios
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Image-Line
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KONAMI
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\LogMeIn Hamachi
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\Metin2_FR
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nostale_FR
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenOffice
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\PlayNC
HKLM\SOFTWARE\Wow6432Node\Propellerhead Software
HKLM\SOFTWARE\Wow6432Node\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\rising
HKLM\SOFTWARE\Wow6432Node\Runes of Magic
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftVoice
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\SRS Labs
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\TERA
HKLM\SOFTWARE\Wow6432Node\troll
HKLM\SOFTWARE\Wow6432Node\TuneUp
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\winservice86-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\WinU
HKLM\SOFTWARE\Wow6432Node\Zemi Interactive
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Aion
HKCU\SOFTWARE\Ankama
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\AVG
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Bugsplat
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\Caphyon
HKCU\SOFTWARE\CBS Software
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clownfish
HKCU\SOFTWARE\Deluxe Digital Studios
HKCU\SOFTWARE\devpro
HKCU\SOFTWARE\Digital Extremes
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\EMU
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\FLT
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\FWT_DLM
HKCU\SOFTWARE\Gameforge4d
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Image-Line
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\LogMeIn
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Madman
HKCU\SOFTWARE\MagicDisc
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MyComGames
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Parsec Productions
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Pixelife
HKCU\SOFTWARE\plaync
HKCU\SOFTWARE\Razer
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\RISING
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\SoftVoice
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\Spotify
HKCU\SOFTWARE\Streaming Audio Recorder
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Wargaming.net
HKCU\SOFTWARE\Winject
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\winservice86-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yanderu Software
HKCU\SOFTWARE\YGOPro DevPro
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (339) - 19s
O43 - CFD: 2014/08/06 13:37:56 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/07/30 16:01:42 - [] D -- C:\Program Files (x86)\AE CS6 Free Release
O43 - CFD: 2015/02/23 20:17:16 - [] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2014/03/19 15:05:28 - [] D -- C:\Program Files (x86)\Apowersoft
O43 - CFD: 2013/11/21 20:58:06 - [] D -- C:\Program Files (x86)\Audacity
O43 - CFD: 2015/02/23 20:17:16 - [] D -- C:\Program Files (x86)\b43eb15c-64ff-4b93-964f-07ae87395ac7 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/22 00:27:15 - [] D -- C:\Program Files (x86)\baidu
O43 - CFD: 2014/03/23 01:30:00 - [] D -- C:\Program Files (x86)\BlueStacks
O43 - CFD: 2015/09/27 13:11:51 - [] D -- C:\Program Files (x86)\CBS Software
O43 - CFD: 2015/08/18 19:24:09 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2014/06/07 16:54:32 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 2015/03/08 13:24:39 - [0] D -- C:\Program Files (x86)\DSPRobotics
O43 - CFD: 2013/11/04 20:11:04 - [] D -- C:\Program Files (x86)\FreeTime
O43 - CFD: 2015/06/14 00:22:37 - [] D -- C:\Program Files (x86)\GameforgeLive
O43 - CFD: 2014/02/11 21:16:31 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/07/30 15:20:02 - [] D -- C:\Program Files (x86)\Hi-Rez Studios
O43 - CFD: 2015/02/20 14:12:56 - [] D -- C:\Program Files (x86)\Image-Line
O43 - CFD: 2015/07/30 15:19:05 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/08/05 23:46:23 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/10/20 18:55:24 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/08/06 12:16:44 - [] D -- C:\Program Files (x86)\LogMeIn Hamachi
O43 - CFD: 2014/10/20 16:13:23 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2013/12/06 13:43:08 - [0] D -- C:\Program Files (x86)\McAfee Security Scan
O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2013/09/29 16:24:05 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/30 14:41:54 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2014/02/09 00:45:24 - [] D -- C:\Program Files (x86)\Notepad++
O43 - CFD: 2014/10/20 16:40:30 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2013/10/13 22:12:50 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 2014/05/17 21:09:53 - [] D -- C:\Program Files (x86)\Pando Networks
O43 - CFD: 2015/03/24 18:43:01 - [] D -- C:\Program Files (x86)\PokerStars.FR
O43 - CFD: 2015/07/30 14:41:54 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/08/18 19:24:10 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2014/02/07 21:22:35 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore
O43 - CFD: 2015/07/11 12:15:31 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 2014/12/08 20:25:41 - [0] D -- C:\Program Files (x86)\Sony Mobile
O43 - CFD: 2014/09/21 23:53:56 - [] D -- C:\Program Files (x86)\Spotydl
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2014/07/26 01:27:12 - [] D -- C:\Program Files (x86)\Valve
O43 - CFD: 2014/08/10 14:16:55 - [] D -- C:\Program Files (x86)\VstPlugins
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/07/30 14:35:13 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/07/30 14:35:13 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/10 13:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2013/12/03 18:43:29 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/07/30 14:40:00 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/02/15 20:39:43 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AION Free-to-Play PTS Client
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2013/11/02 22:22:29 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clownfish
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Copy
O43 - CFD: 2014/05/21 20:07:34 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dofus2
O43 - CFD: 2015/07/30 14:35:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
O43 - CFD: 2014/10/22 14:10:56 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/07/30 15:19:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/04/11 10:06:21 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
O43 - CFD: 2015/08/06 12:16:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
O43 - CFD: 2014/03/02 23:42:30 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/07/30 14:40:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/07/30 14:40:01 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1
O43 - CFD: 2015/07/30 14:40:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 2015/07/30 14:40:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.FR
O43 - CFD: 2015/08/18 19:24:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/07/30 14:35:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 2015/09/27 13:11:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedConnect Internet Accelerator
O43 - CFD: 2015/07/30 14:35:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotydl
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/07/10 18:28:36 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/30 14:40:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2014/08/06 13:39:10 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/11/25 18:02:32 - [] D -- C:\ProgramData\atjs
O43 - CFD: 2014/09/21 23:33:06 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2014/08/11 12:41:08 - [] D -- C:\ProgramData\AVG
O43 - CFD: 2015/06/12 15:28:35 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 2015/06/12 16:06:50 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2014/03/23 01:30:32 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2014/03/23 01:35:53 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2013/08/29 09:43:45 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2014/08/06 13:01:39 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 2013/09/14 12:42:46 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/10/22 11:26:55 - [] D -- C:\ProgramData\EA Core
O43 - CFD: 2014/10/22 13:50:48 - [] D -- C:\ProgramData\EA Logs
O43 - CFD: 2014/10/22 11:26:57 - [] D -- C:\ProgramData\Electronic Arts
O43 - CFD: 2013/08/29 09:43:45 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2014/08/29 23:20:36 - [] D -- C:\ProgramData\GFACE
O43 - CFD: 2015/07/30 15:19:26 - [] D -- C:\ProgramData\Hi-Rez Studios
O43 - CFD: 2014/12/01 21:21:10 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 2015/07/03 20:24:55 - [] D -- C:\ProgramData\LocalStorage
O43 - CFD: 2013/10/04 21:41:33 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 2014/10/20 16:13:20 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2013/12/06 12:43:05 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2013/08/29 09:43:45 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/08/03 15:40:43 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/30 14:59:26 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2013/08/29 09:43:45 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/09/14 17:38:02 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/07/30 14:35:20 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2014/10/20 18:56:12 - [0] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/02/15 01:25:13 - [] D -- C:\ProgramData\Origin
O43 - CFD: 2014/07/07 20:12:56 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2013/12/23 22:18:28 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 2015/07/10 18:28:36 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2014/07/17 22:27:34 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 2015/08/18 19:24:22 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 2014/05/19 11:35:38 - [] D -- C:\ProgramData\Sony
O43 - CFD: 2014/12/08 20:25:43 - [0] D -- C:\ProgramData\Sony Mobile
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/09/12 12:50:55 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/09/29 16:50:42 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 2014/08/10 14:17:50 - [] SHD -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
O43 - CFD: 2014/08/06 13:37:59 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014/04/23 17:55:03 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2014/10/22 14:11:02 - [0] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 2014/10/20 18:55:57 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/07/30 14:35:12 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2014/08/10 14:16:55 - [] D -- C:\Program Files (x86)\Common Files\Propellerhead Software
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/08/18 19:24:09 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/07/30 14:35:12 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2014/01/11 21:43:02 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/09/18 17:10:23 - [] D -- C:\Users\cano\AppData\Roaming\.minecraft
O43 - CFD: 2015/01/05 05:55:14 - [] D -- C:\Users\cano\AppData\Roaming\0woDTVE
O43 - CFD: 2015/02/19 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\1IbI9aI
O43 - CFD: 2015/01/19 05:55:08 - [] D -- C:\Users\cano\AppData\Roaming\2v8KPmI
O43 - CFD: 2015/02/21 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\3Dli4te
O43 - CFD: 2015/02/04 14:57:53 - [] D -- C:\Users\cano\AppData\Roaming\3lDtXVN
O43 - CFD: 2015/01/09 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\51XTJHv
O43 - CFD: 2015/01/21 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\6MGu5mJ
O43 - CFD: 2015/01/08 22:39:01 - [] D -- C:\Users\cano\AppData\Roaming\7VPDxwr
O43 - CFD: 2015/02/09 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\7YB2Y44
O43 - CFD: 2015/01/10 05:55:12 - [] D -- C:\Users\cano\AppData\Roaming\8jtLUgm
O43 - CFD: 2015/01/01 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\98HGTQa
O43 - CFD: 2015/01/04 15:04:15 - [] D -- C:\Users\cano\AppData\Roaming\a7Prvqd
O43 - CFD: 2015/07/12 13:37:21 - [] D -- C:\Users\cano\AppData\Roaming\Adobe
O43 - CFD: 2013/11/24 12:19:49 - [] D -- C:\Users\cano\AppData\Roaming\AnkamaCertificates
O43 - CFD: 2014/03/19 15:05:28 - [] D -- C:\Users\cano\AppData\Roaming\Apowersoft
O43 - CFD: 2013/11/24 12:17:46 - [] D -- C:\Users\cano\AppData\Roaming\app
O43 - CFD: 2015/07/08 20:54:20 - [] D -- C:\Users\cano\AppData\Roaming\Audacity
O43 - CFD: 2014/10/20 16:05:49 - [] D -- C:\Users\cano\AppData\Roaming\AVAST Software
O43 - CFD: 2014/08/06 13:02:46 - [] D -- C:\Users\cano\AppData\Roaming\AVG
O43 - CFD: 2015/06/12 15:31:40 - [] D -- C:\Users\cano\AppData\Roaming\Battle.net
O43 - CFD: 2015/02/08 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\bskSDfg
O43 - CFD: 2015/02/16 14:33:37 - [] D -- C:\Users\cano\AppData\Roaming\BuOYbCx
O43 - CFD: 2015/09/27 12:55:19 - [] D -- C:\Users\cano\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
O43 - CFD: 2015/02/17 14:10:24 - [] D -- C:\Users\cano\AppData\Roaming\CK9ltCv
O43 - CFD: 2015/01/13 20:04:49 - [] D -- C:\Users\cano\AppData\Roaming\cmN4l3C
O43 - CFD: 2015/01/15 18:38:42 - [] D -- C:\Users\cano\AppData\Roaming\cpX8ceR
O43 - CFD: 2014/10/20 15:59:18 - [] D -- C:\Users\cano\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2014/12/17 13:30:29 - [] D -- C:\Users\cano\AppData\Roaming\dYRHk7I
O43 - CFD: 2015/01/25 10:45:17 - [] D -- C:\Users\cano\AppData\Roaming\eB5LEN7
O43 - CFD: 2015/02/14 13:11:12 - [] D -- C:\Users\cano\AppData\Roaming\EIvdYIW
O43 - CFD: 2015/01/27 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\erzImTR
O43 - CFD: 2015/02/07 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\FepcKGT
O43 - CFD: 2015/03/01 23:02:51 - [] D -- C:\Users\cano\AppData\Roaming\FFFFFFFF-1424390696-FFFF-FFFF-FFFFFFFFFFFF
O43 - CFD: 2014/08/06 12:56:20 - [] D -- C:\Users\cano\AppData\Roaming\FlowStone
O43 - CFD: 2015/02/15 20:53:28 - [] D -- C:\Users\cano\AppData\Roaming\GGeAuwF
O43 - CFD: 2015/01/17 13:18:50 - [] D -- C:\Users\cano\AppData\Roaming\gi0aR9l
O43 - CFD: 2015/01/30 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\h3LIR6z
O43 - CFD: 2015/02/16 14:37:47 - [] D -- C:\Users\cano\AppData\Roaming\hG0skDE
O43 - CFD: 2015/02/18 21:16:32 - [] D -- C:\Users\cano\AppData\Roaming\hll9cak
O43 - CFD: 2015/02/26 08:29:28 - [] D -- C:\Users\cano\AppData\Roaming\hoSIy9h
O43 - CFD: 2015/01/26 05:55:12 - [] D -- C:\Users\cano\AppData\Roaming\I6L2IEC
O43 - CFD: 2013/08/29 09:44:05 - [] D -- C:\Users\cano\AppData\Roaming\Identities
O43 - CFD: 2014/08/06 12:57:26 - [] D -- C:\Users\cano\AppData\Roaming\Image-Line
O43 - CFD: 2015/01/18 16:49:58 - [] D -- C:\Users\cano\AppData\Roaming\iNKn3e2
O43 - CFD: 2015/01/22 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\INPTNEb
O43 - CFD: 2015/02/02 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\IRJbEoz
O43 - CFD: 2014/12/01 21:21:10 - [] D -- C:\Users\cano\AppData\Roaming\IsolatedStorage
O43 - CFD: 2015/07/12 21:21:09 - [] D -- C:\Users\cano\AppData\Roaming\java
O43 - CFD: 2015/02/17 14:07:22 - [] D -- C:\Users\cano\AppData\Roaming\JsVkusr
O43 - CFD: 2015/01/07 05:55:14 - [] D -- C:\Users\cano\AppData\Roaming\kjVwRDt
O43 - CFD: 2015/01/12 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\KU8UcrJ
O43 - CFD: 2015/01/28 05:55:12 - [] D -- C:\Users\cano\AppData\Roaming\kWYOWoP
O43 - CFD: 2015/02/23 20:06:33 - [] D -- C:\Users\cano\AppData\Roaming\LNjb5DX
O43 - CFD: 2014/05/18 17:05:46 - [] D -- C:\Users\cano\AppData\Roaming\LolClient
O43 - CFD: 2013/08/29 09:53:03 - [] D -- C:\Users\cano\AppData\Roaming\Macromedia
O43 - CFD: 2013/10/14 22:23:00 - [] D -- C:\Users\cano\AppData\Roaming\Malwarebytes
O43 - CFD: 2011/04/12 11:27:52 - [0] D -- C:\Users\cano\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/07/31 17:10:11 - [] SD -- C:\Users\cano\AppData\Roaming\Microsoft
O43 - CFD: 2015/02/15 05:55:06 - [] D -- C:\Users\cano\AppData\Roaming\Mk90qFi
O43 - CFD: 2015/02/22 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\MP6hCs6
O43 - CFD: 2015/01/08 22:42:28 - [] D -- C:\Users\cano\AppData\Roaming\mQ84ioF
O43 - CFD: 2015/02/02 01:49:16 - [] D -- C:\Users\cano\AppData\Roaming\Mq8j0fK
O43 - CFD: 2015/02/06 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\nAJxRJm
O43 - CFD: 2014/12/29 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\nAVzGcs
O43 - CFD: 2015/02/03 05:56:51 - [] D -- C:\Users\cano\AppData\Roaming\nlArHFm
O43 - CFD: 2014/02/09 00:45:24 - [] D -- C:\Users\cano\AppData\Roaming\Notepad++
O43 - CFD: 2013/12/24 00:45:46 - [] D -- C:\Users\cano\AppData\Roaming\NVIDIA
O43 - CFD: 2015/02/01 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\oaqbmCc
O43 - CFD: 2013/10/13 22:13:41 - [] D -- C:\Users\cano\AppData\Roaming\OpenOffice
O43 - CFD: 2015/01/02 13:43:45 - [] D -- C:\Users\cano\AppData\Roaming\pgHp6lW
O43 - CFD: 2014/12/25 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\PK4RhUM
O43 - CFD: 2015/04/08 04:55:10 - [] D -- C:\Users\cano\AppData\Roaming\PMPkEng
O43 - CFD: 2015/02/17 15:56:28 - [] D -- C:\Users\cano\AppData\Roaming\PNdaVFl
O43 - CFD: 2015/07/03 19:33:21 - [] D -- C:\Users\cano\AppData\Roaming\ppslog
O43 - CFD: 2014/03/21 17:40:54 - [0] D -- C:\Users\cano\AppData\Roaming\Publish Providers
O43 - CFD: 2015/02/10 13:11:03 - [] D -- C:\Users\cano\AppData\Roaming\pup45Dt
O43 - CFD: 2015/02/15 01:17:10 - [] D -- C:\Users\cano\AppData\Roaming\qDiGaWt
O43 - CFD: 2014/12/31 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\QmBpSyr
O43 - CFD: 2014/08/04 15:19:08 - [] D -- C:\Users\cano\AppData\Roaming\QuickScan
O43 - CFD: 2014/10/31 13:57:53 - [] D -- C:\Users\cano\AppData\Roaming\Reg
O43 - CFD: 2013/11/24 12:17:46 - [] D -- C:\Users\cano\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 2014/12/05 17:57:36 - [] D -- C:\Users\cano\AppData\Roaming\Regbeta
O43 - CFD: 2015/02/11 05:55:26 - [] D -- C:\Users\cano\AppData\Roaming\rFeiLox
O43 - CFD: 2015/02/24 15:19:50 - [] D -- C:\Users\cano\AppData\Roaming\rGcq2RL
O43 - CFD: 2013/10/18 12:48:51 - [] D -- C:\Users\cano\AppData\Roaming\SanDisk SecureAccess
O43 - CFD: 2015/02/05 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\sd60CJ9
O43 - CFD: 2013/12/03 19:32:23 - [] RHD -- C:\Users\cano\AppData\Roaming\SecuROM
O43 - CFD: 2015/02/25 05:55:08 - [] D -- C:\Users\cano\AppData\Roaming\SF5pjPb
O43 - CFD: 2015/09/27 11:18:18 - [] D -- C:\Users\cano\AppData\Roaming\Skype
O43 - CFD: 2015/07/11 12:13:39 - [] D -- C:\Users\cano\AppData\Roaming\Sony
O43 - CFD: 2015/09/27 11:17:58 - [] D -- C:\Users\cano\AppData\Roaming\Spotify
O43 - CFD: 2014/09/22 06:39:01 - [] D -- C:\Users\cano\AppData\Roaming\Spotydl
O43 - CFD: 2015/02/20 14:25:04 - [] D -- C:\Users\cano\AppData\Roaming\t6z8pF9
O43 - CFD: 2015/02/18 05:56:51 - [] D -- C:\Users\cano\AppData\Roaming\t7PfuXF
O43 - CFD: 2015/01/24 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\TEfsRiV
O43 - CFD: 2015/01/29 05:55:13 - [] D -- C:\Users\cano\AppData\Roaming\TFPXt26
O43 - CFD: 2015/09/27 13:12:06 - [] D -- C:\Users\cano\AppData\Roaming\Thinstall
O43 - CFD: 2015/02/27 05:55:05 - [] D -- C:\Users\cano\AppData\Roaming\TiTsYcu
O43 - CFD: 2015/01/04 15:05:49 - [] D -- C:\Users\cano\AppData\Roaming\tlxwNqY
O43 - CFD: 2015/02/09 23:00:39 - [] D -- C:\Users\cano\AppData\Roaming\tp4p7K6
O43 - CFD: 2015/02/12 14:43:00 - [] D -- C:\Users\cano\AppData\Roaming\trpfuCt
O43 - CFD: 2015/02/20 13:42:06 - [] D -- C:\Users\cano\AppData\Roaming\TUiLwME
O43 - CFD: 2014/04/13 01:03:31 - [] D -- C:\Users\cano\AppData\Roaming\Ubisoft
O43 - CFD: 2015/06/13 22:29:25 - [] D -- C:\Users\cano\AppData\Roaming\uTorrent
O43 - CFD: 2015/01/23 05:55:10 - [] D -- C:\Users\cano\AppData\Roaming\V6JHdmB
O43 - CFD: 2015/01/19 15:32:28 - [] D -- C:\Users\cano\AppData\Roaming\v7FaL9i
O43 - CFD: 2014/02/02 21:39:09 - [] D -- C:\Users\cano\AppData\Roaming\VirusMaker =>PUP.Optional.VirusMaker
O43 - CFD: 2015/01/15 18:42:40 - [] D -- C:\Users\cano\AppData\Roaming\viuvkIT
O43 - CFD: 2014/12/26 05:55:13 - [] D -- C:\Users\cano\AppData\Roaming\VoDB0fx
O43 - CFD: 2015/02/20 13:48:00 - [] D -- C:\Users\cano\AppData\Roaming\w8pPJY8
O43 - CFD: 2014/07/17 00:01:10 - [] D -- C:\Users\cano\AppData\Roaming\Wargaming.net
O43 - CFD: 2015/01/24 14:01:11 - [] D -- C:\Users\cano\AppData\Roaming\WgS05zW
O43 - CFD: 2014/12/30 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\Wh27RH0
O43 - CFD: 2013/12/03 18:43:41 - [] D -- C:\Users\cano\AppData\Roaming\WinRAR
O43 - CFD: 2015/02/25 18:57:58 - [] D -- C:\Users\cano\AppData\Roaming\wqio1c8
O43 - CFD: 2015/02/26 08:19:16 - [] D -- C:\Users\cano\AppData\Roaming\WSXd9Ql
O43 - CFD: 2015/01/20 05:55:09 - [] D -- C:\Users\cano\AppData\Roaming\wWbkMv1
O43 - CFD: 2014/04/13 01:03:46 - [] SHD -- C:\Users\cano\AppData\Roaming\wyUpdate AU
O43 - CFD: 2014/07/07 20:11:08 - [] D -- C:\Users\cano\AppData\Roaming\YGOPro DevPro
O43 - CFD: 2015/02/13 09:01:19 - [] D -- C:\Users\cano\AppData\Roaming\yLbANem
O43 - CFD: 2015/01/13 20:07:01 - [] D -- C:\Users\cano\AppData\Roaming\zBhJtlS
O43 - CFD: 2015/02/24 05:55:04 - [] D -- C:\Users\cano\AppData\Roaming\zBleRCE
O43 - CFD: 2015/01/02 13:47:20 - [] D -- C:\Users\cano\AppData\Roaming\zgrRO11
O43 - CFD: 2015/09/27 13:38:39 - [] D -- C:\Users\cano\AppData\Roaming\ZHP
O43 - CFD: 2015/01/31 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\ZQUPrDE
O43 - CFD: 2014/12/27 05:55:11 - [] D -- C:\Users\cano\AppData\Roaming\zqwYF1b
O43 - CFD: 2014/07/28 02:52:29 - [] D -- C:\Users\cano\AppData\Local\Activision
O43 - CFD: 2015/07/12 13:37:21 - [] D -- C:\Users\cano\AppData\Local\Adobe
O43 - CFD: 2015/02/15 20:45:10 - [] D -- C:\Users\cano\AppData\Local\Ankama
O43 - CFD: 2015/07/30 14:28:54 - [0] SHD -- C:\Users\cano\AppData\Local\Application Data
O43 - CFD: 2013/09/11 16:33:54 - [] D -- C:\Users\cano\AppData\Local\Apps
O43 - CFD: 2014/08/06 13:02:46 - [] D -- C:\Users\cano\AppData\Local\AVG
O43 - CFD: 2015/06/13 22:09:49 - [] D -- C:\Users\cano\AppData\Local\Battle.net
O43 - CFD: 2015/06/12 15:31:00 - [] D -- C:\Users\cano\AppData\Local\Blizzard Entertainment
O43 - CFD: 2014/03/23 01:29:13 - [] D -- C:\Users\cano\AppData\Local\Bluestacks
O43 - CFD: 2013/12/05 22:11:26 - [0] D -- C:\Users\cano\AppData\Local\cache
O43 - CFD: 2015/08/03 15:43:16 - [] D -- C:\Users\cano\AppData\Local\Comms
O43 - CFD: 2014/09/19 13:15:54 - [0] D -- C:\Users\cano\AppData\Local\Diagnostics
O43 - CFD: 2015/08/11 09:40:41 - [0] D -- C:\Users\cano\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/01/12 23:52:34 - [] SHD -- C:\Users\cano\AppData\Local\EmieBrowserModeList
O43 - CFD: 2014/05/24 15:39:46 - [] SHD -- C:\Users\cano\AppData\Local\EmieSiteList
O43 - CFD: 2014/05/24 15:39:46 - [] SHD -- C:\Users\cano\AppData\Local\EmieUserList
O43 - CFD: 2014/07/27 18:44:46 - [] D -- C:\Users\cano\AppData\Local\EMU
O43 - CFD: 2014/02/11 21:25:29 - [] D -- C:\Users\cano\AppData\Local\Facebook
O43 - CFD: 2013/12/05 22:05:04 - [] D -- C:\Users\cano\AppData\Local\FLT
O43 - CFD: 2013/11/05 21:51:06 - [] D -- C:\Users\cano\AppData\Local\Gameforge4d
O43 - CFD: 2015/09/14 17:57:58 - [] D -- C:\Users\cano\AppData\Local\Google
O43 - CFD: 2015/06/01 13:01:30 - [] D -- C:\Users\cano\AppData\Local\GWX
O43 - CFD: 2015/07/30 14:28:54 - [0] SHD -- C:\Users\cano\AppData\Local\Historique
O43 - CFD: 2013/10/04 21:41:33 - [] D -- C:\Users\cano\AppData\Local\LogMeIn
O43 - CFD: 2015/09/27 11:16:18 - [] D -- C:\Users\cano\AppData\Local\LogMeIn Hamachi
O43 - CFD: 2015/09/24 15:51:36 - [] D -- C:\Users\cano\AppData\Local\Microsoft
O43 - CFD: 2013/10/12 14:34:52 - [] D -- C:\Users\cano\AppData\Local\Microsoft Games
O43 - CFD: 2015/07/30 15:05:24 - [] D -- C:\Users\cano\AppData\Local\MicrosoftEdge
O43 - CFD: 2014/10/20 16:40:32 - [] D -- C:\Users\cano\AppData\Local\NVIDIA
O43 - CFD: 2014/10/20 16:47:09 - [] D -- C:\Users\cano\AppData\Local\NVIDIA Corporation
O43 - CFD: 2014/10/22 11:26:50 - [] D -- C:\Users\cano\AppData\Local\Origin
O43 - CFD: 2015/09/20 12:07:20 - [] D -- C:\Users\cano\AppData\Local\Packages
O43 - CFD: 2014/07/27 18:44:46 - [] D -- C:\Users\cano\AppData\Local\PAYDAY 2
O43 - CFD: 2014/07/25 17:44:31 - [] D -- C:\Users\cano\AppData\Local\Pipix-3
O43 - CFD: 2015/05/12 21:01:44 - [] D -- C:\Users\cano\AppData\Local\PokerStars.FR
O43 - CFD: 2014/07/22 20:53:24 - [] D -- C:\Users\cano\AppData\Local\Programs
O43 - CFD: 2015/07/30 14:57:32 - [] D -- C:\Users\cano\AppData\Local\Publishers
O43 - CFD: 2014/10/22 13:51:06 - [] D -- C:\Users\cano\AppData\Local\PunkBuster
O43 - CFD: 2014/07/26 01:55:10 - [] D -- C:\Users\cano\AppData\Local\SKIDROW
O43 - CFD: 2014/03/14 13:17:25 - [] D -- C:\Users\cano\AppData\Local\Skype
O43 - CFD: 2014/01/11 21:46:26 - [] D -- C:\Users\cano\AppData\Local\SniperV2 Demo
O43 - CFD: 2015/07/11 12:15:32 - [] D -- C:\Users\cano\AppData\Local\Sony
O43 - CFD: 2015/02/21 20:05:50 - [0] D -- C:\Users\cano\AppData\Local\Sparta
O43 - CFD: 2015/09/27 11:15:55 - [] D -- C:\Users\cano\AppData\Local\Spotify
O43 - CFD: 2013/09/15 14:55:19 - [] D -- C:\Users\cano\AppData\Local\TeknoGods
O43 - CFD: 2015/09/27 13:39:12 - [] D -- C:\Users\cano\AppData\Local\Temp
O43 - CFD: 2015/07/30 14:28:54 - [0] SHD -- C:\Users\cano\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/07/30 14:56:13 - [] D -- C:\Users\cano\AppData\Local\TileDataLayer
O43 - CFD: 2014/04/13 01:20:34 - [] D -- C:\Users\cano\AppData\Local\Ubisoft
O43 - CFD: 2014/02/11 22:51:01 - [] D -- C:\Users\cano\AppData\Local\Unity
O43 - CFD: 2014/08/10 14:33:21 - [] D -- C:\Users\cano\AppData\Local\VirtualStore
O43 - CFD: 2014/01/19 12:51:21 - [] D -- C:\Users\cano\AppData\Local\Warframe
O43 - CFD: 2014/01/29 18:55:15 - [] D -- C:\Users\cano\AppData\Local\_
O43 - CFD: 2014/12/18 00:03:47 - [] D -- C:\Users\cano\AppData\Local\_
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/07/30 14:56:12 - [] RD -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/30 08:37:22 - [] RD -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Duel of Champions Launcher
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 2014/02/01 22:26:20 - [0] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/30 08:37:22 - [] RD -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/07/10 13:04:45 - [] RSD -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/07/30 14:40:00 - [] D -- C:\Users\cano\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YGOPro DevPro

---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 14s
O45 - LFCP:[MD5.E2E88D461F8ACE450DD909E841688428] 2015/09/27 11:16:08 A -- C:\WINDOWS\Prefetch\CACAOWEB (3).EXE-16874496.pf =>PUP.Optional.CacaoWeb

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\cano\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll ©

---\\ Liste des pilotes du système (62) - 8s
O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] ©
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] ©
O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] ©
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] ©
O58 - SDL:2015/07/20 19:06:42 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [28656] ©
O58 - SDL:2015/07/20 19:06:42 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [90968] ©
O58 - SDL:2015/07/20 19:06:39 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [93528] ©
O58 - SDL:2015/07/20 19:06:42 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [65224] ©
O58 - SDL:2015/07/20 19:05:56 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1048856] ©
O58 - SDL:2015/07/20 19:06:42 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [447944] ©
O58 - SDL:2015/07/20 19:06:43 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [150160] ©
O58 - SDL:2015/07/20 19:06:42 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [274808] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2015/07/30 14:59:42 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283064] ©
O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] ©
O58 - SDL:2009/03/18 19:35:42 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\WINDOWS\System32\drivers\hamachi.sys [33856] ©
O58 - SDL:2015/08/03 12:12:32 A . (.LogMeIn Inc. - LogMeIn Hamachi Virtual Miniport Driver.) -- C:\WINDOWS\System32\drivers\Hamdrv.sys [45680] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2012/10/26 16:42:22 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\WINDOWS\System32\drivers\lvrs64.sys [351520] ©
O58 - SDL:2014/10/01 11:11:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] ©
O58 - SDL:2014/10/01 11:11:16 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [93400] ©
O58 - SDL:2014/10/20 16:14:49 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [129752] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] ©
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2014/10/01 11:11:26 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [63704] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] ©
O58 - SDL:2015/07/20 19:05:52 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\WINDOWS\System32\drivers\ngvss.sys [115152] ©
O58 - SDL:2013/11/28 13:38:20 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [197408] ©
O58 - SDL:2015/06/29 22:53:08 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [12896400] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\WINDOWS\System32\drivers\nvmf6264.sys [344192] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] ©
O58 - SDL:2010/04/09 01:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor64.sys [244328] ©
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] ©
O58 - SDL:2015/06/24 22:57:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4504320] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2015/08/02 01:26:35 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] ©
O58 - SDL:2015/08/02 01:28:55 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2014/05/07 05:00:02 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42184] ©
O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] ©
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] ©
O58 - SDL:2015/07/14 11:44:38 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\WINDOWS\System32\hamachi.sys [33856] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (9) - 55s
O61 - LFC: 2015/09/22 12:57:47 A . (..) -- C:\Users\cano\AppData\Roaming\NVIDIA\GLCache\eb3048901dfa0a2dd493ec1fdf66e58b\d7845583ac2fd3d0\3f05804b4fdefe26.bin [25588]
O61 - LFC: 2015/09/26 22:32:57 A . (..) -- C:\Users\cano\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2015/09/24 16:37:34 A . (..) -- C:\Users\cano\AppData\Local\NVIDIA\NvBackend\Packages\00007f2a\DAO.19993499.exe [6369136]
O61 - LFC: 2015/09/23 16:36:03 A . (..) -- C:\Users\cano\AppData\Local\NVIDIA\NvBackend\Packages\00007f1b\DAO.19989602.exe [6366312]
O61 - LFC: 2015/09/22 16:34:10 A . (..) -- C:\Users\cano\AppData\Local\NVIDIA\NvBackend\Packages\00007f04\DAO.19982006.exe [6319656]
O61 - LFC: 2015/09/19 16:29:02 A . (..) -- C:\Users\cano\AppData\Local\NVIDIA\NvBackend\Packages\00007e35\DAO.19976110.exe [6311544]
O61 - LFC: 2015/09/27 13:02:33 A . (..) -- C:\Users\cano\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2015/09/27 13:37:39 A . (..) -- C:\Users\cano\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [992]
O61 - LFC: 2015/09/24 15:52:01 A . (..) -- C:\Users\cano\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [96334]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (3) - 1s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {2246D2B9-7485-490F-802D-95C0B48C3679} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Goo) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (41) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] ©
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] ©
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [187392] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2235904] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] ©
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] ©
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] ©
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] ©
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] ©
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] ©
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] ©
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] ©
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [996352] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] ©

---\\ Liste des exceptions du parefeu Windows (56) - 6s
O87 - FAEL: "{BB6DFC2D-53F8-4733-8599-D6EF64834748}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyPlayer.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{BAEDE4D8-88B9-46CB-9711-B451E16EE7A8}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\Common\QyKernel.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{09C972D3-8342-4730-BE22-7654C7EEAA8F}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{1CEDCCF7-221B-4270-9449-86AD1B586612}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyClient.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{D3475979-FD35-4FD1-BD38-DE2AF3B27AE3}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{EB032E57-F169-4B84-91D5-3B3CD2492997}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{BCA57C0E-537A-4505-BB97-A39ECF41932A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAdBlock.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{26A4AC5E-A744-428E-AAA7-5CE66A87490A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAccountProtection.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{29DFA329-207F-467B-8D44-CA5D0FF32D3C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMRouterMgr.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{F8EF15BC-E747-474B-84E7-8871E6FC058F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TpkUpdate.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{27EDE143-4FE5-45E4-9438-AC16542033AE}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCPatch.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{402B7F60-8EF9-44C8-AFDC-B4FBC9B788BF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\Uninst.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{B32D9770-B8F3-4570-B114-A4BE25D6963D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQRepair.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{A6E04019-C8C5-4A97-B0C2-BE28FE42D69E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCUpdateAVLib.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{9545CF6C-EBE5-437A-A439-CFE9504AFD99}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSysOptimize.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{BEFBF8E2-047F-44FC-AFB8-960E9C823EA6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftGame.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{38DDF0C1-E829-4EA5-8819-0B7CE75C8549}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUpdate\QQPCMgrUpdate.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{21D925A1-9448-4CA7-8AA9-7464627936FA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLaunch.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{2B2FF839-BC88-48DE-B0BA-A82C522BA377}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCClinic.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{217C0276-435B-4956-8AC3-D4CECF8DFD48}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCBTU.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{DCCC9F33-DD5F-40FD-B190-1A5D4530038C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\plugins\QMNetMon\QQPCNetFlow.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{6C9D5015-399C-4BFD-8DDA-DF8232E8C77F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftMgr.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{F96BB78E-548F-4C8A-ADEB-3D412936DEC0}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPConfig.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{4662ABDB-B48D-4AEE-9759-ED97F129E632}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLeakScan.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{E5A3BC83-6DBD-4EF9-9907-7CA07DE060A7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCFileOpen.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{4D934310-5D9A-4C4F-8517-786EC0371A78}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\bugreport.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{43BB40D0-D49E-48A6-9B8D-E727997C44EF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMDL.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{636AD1F4-CB53-4FA7-BA91-3253DC5F6CA2}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{2C98B4B7-B3DD-4905-A928-CD0D7F05ACE8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCMgr.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{51368E03-491D-444E-8782-58E1F910DC21}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{D2CC3D7D-5685-4FC6-BA03-E8A13434A1CB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCmgrInstallGuide.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{E1C27721-C168-4185-949B-C9AA15AA4589}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyPlayer.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{2411F1A5-C5A8-463C-B496-715BCE689309}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\Common\QyKernel.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{95838C5B-52D7-4AFB-BD9F-280689DA7F76}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{92455982-2BA1-4836-B91D-2E2F6C74AB96}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyClient.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{B6FDA17C-A9ED-419A-B266-D4770FC5174C}" [In-None-P6-TRUE] .(...) -- C:\Users\cano\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{D470D7C1-7A5E-481B-9D63-8D006326A185}" [In-None-P6-TRUE] .(...) -- C:\IQIYI Video\GeePlayer\GeePlayer.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{FFFBEFE4-7D28-410F-BC6A-EB8AFAD74872}" [In-None-P6-TRUE] .(.NCSOFT Corporation - NCLauncher Module.) -- C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe
O87 - FAEL: "{50270AE1-5A35-426E-89B7-2BD89F8B8A68}" [In-None-P17-TRUE] .(.NCSOFT Corporation - NCLauncher Module.) -- C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe
O87 - FAEL: "UDP Query User{F6369A28-0945-4069-B154-71CEE9394B25}C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe" [In-None-P17-TRUE] .(.NCSOFT Corporation - NCLauncher Module.) -- C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe
O87 - FAEL: "TCP Query User{CC342422-A63D-4233-982B-8A6168660036}C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe" [In-None-P6-TRUE] .(.NCSOFT Corporation - NCLauncher Module.) -- C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe
O87 - FAEL: "{F0B0E6A3-3EB4-470C-AAE8-534FDDF543B8}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{68872843-1A84-4B6F-A1A1-E397B89A5A79}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{5CFE4DC0-1551-4A36-B27F-EAF36DD4A8CA}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{3EC559D2-4EC9-41B3-95E8-1E5A2F0AF0E7}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{D1FCD490-A8FB-4C53-93EC-CA839D6B095B}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\cano\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{7C4FF10B-7185-4BA0-B99B-0A92D2C1B5C9}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\cano\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "UDP Query User{13A172DE-FDDD-4E3A-A208-298E69F51359}C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "TCP Query User{7C687FBA-3A88-42B2-950D-5F0BA9E5CA97}C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{548E98A8-7EE4-4C7A-AB03-74035257D8FE}C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "TCP Query User{A0F0C8AF-DE81-447D-B7BE-EA32F1EF6279}C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\cano\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{14FAA65D-DC5A-4495-99B3-4C31F2A9C902}C:\users\cano\appdata\roaming\utorrent\utorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\cano\appdata\roaming\utorrent\utorrent.exe
O87 - FAEL: "TCP Query User{FCD10D95-C38E-4DD4-89AF-4F80D826F312}C:\users\cano\appdata\roaming\utorrent\utorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\cano\appdata\roaming\utorrent\utorrent.exe
O87 - FAEL: "TCP Query User{9ED7C9C3-B53C-462B-8337-BB809DFFD917}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
O87 - FAEL: "UDP Query User{790E61C9-C19C-4A78-85E4-D8798DBA95BD}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
O87 - FAEL: "TCP Query User{7E73779E-BC6F-49F8-8288-AE747DAA81A5}C:\users\cano\downloads\cacaoweb (3).exe" [In-None-P6-TRUE] .(...) -- C:\users\cano\downloads\cacaoweb (3).exe =>PUP.Optional.CacaoWeb

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (19) - 45s

SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [2015/09/21 20:12:35] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2015/07/20 19:06:13] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
SS - Demand [2015/07/20 19:05:36] [ 4047768] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe ©
SR - Auto [2014/03/13 18:42:40] [ 402192] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe ©
SR - Auto [2014/03/13 18:43:14] [ 385808] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe ©
SR - Auto [2014/03/13 18:45:08] [ 770832] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe ©
SS - Auto [2015/08/29 17:19:32] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/08/29 17:19:32] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2014/08/13 00:24:42] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe ©
SR - Auto [2015/08/03 12:47:10] [ 2545512] LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe ©
SPaused - Auto [2015/07/27 16:34:00] [ 8704] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe ©
SR - Auto [2015/08/03 12:13:12] [ 417552] LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe ©
SR - Auto [2014/07/25 16:02:40] [ 1720608] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
SR - Auto [2014/07/25 16:02:38] [18956064] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe ©
SR - Auto [2015/06/29 22:42:26] [ 932040] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe ©
SS - Auto [2015/07/09 13:14:04] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SR - Auto [2014/07/02 19:44:41] [ 411936] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©

---\\ Scan Additionnel (13) - 0s
C:\Users\cano\Downloads\cacaoweb (3).exe =>PUP.Optional.CacaoWeb
HKLM\SOFTWARE\Wow6432Node\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef
HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\winservice86-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\winservice86-nv-ie =>PUP.Optional.CrossRider
C:\Program Files (x86)\b43eb15c-64ff-4b93-964f-07ae87395ac7 =>PUP.Optional.CrossRider
C:\Program Files (x86)\Software =>PUP.Optional.Boxore
C:\Users\cano\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
C:\Users\cano\AppData\Roaming\VirusMaker =>PUP.Optional.VirusMaker
C:\WINDOWS\Prefetch\CACAOWEB (3).EXE-16874496.pf =>PUP.Optional.CacaoWeb

---\\ Récapitulatif des éléments trouvées sur votre station (8) - 0s
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb
http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.QuickRef
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/blog =>PUP.Optional.VirusMaker
http://www.nicolascoolman.fr/blog =>PUP.Optional.IQIYIVideo

~ End of the scan, 21203 items in 227 seconds (1062)(0)()

Publicité


Signaler le contenu de ce document

Publicité