cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.4.9.133 Par Nicolas Coolman (2015/09/4)
~ Démarré par user (Administrator) (2015/09/04 19:31:21)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Pas de fichier réseau
~ Mode: Scanner
~ Rapport: C:\Users\user\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\user\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v44.0.2403.155
MFIE: Mozilla Firefox 40.0.3 (x86 fr) v40.0.3
MSIE: Internet Explorer v9.0.8112.16421

---\\ Informations sur les produits Windows (4) - 16s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (4) - 3s
Avira Antivirus v15.0.12.420
Microsoft Security Client FR-FR Language Pack v2.0.0657.0
Microsoft Security Essentials v2.0.657.0
Windows Defender W7 (Deactivate)

---\\ Surveillance de Logiciels (2) - 4s
Adobe Flash Player 10 Plugin
Adobe Reader X

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4075.404 MB (40% free)
~ System Restore: Activé (Enable)
~ System drive C: has 243 GB free of 286 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: 6659888X50075
~ User Name: user
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 243 GB free of 286 GB (System)
~ Drive D: has 364 GB free of 403 GB
~ Drive E: has GB free of 0 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 3s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] ©
[MD5.5A45FA344F4AD99D903F4B20E43B89EC] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1392128] ©
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [390656] ©
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] ©
[MD5.492D07D79E7024CA310867B526D9636D] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [357888] ©
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] ©
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [498688] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] ©
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] ©
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208] ©
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] ©
[MD5.A2F74975097F52A00745F9637451FDD8] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1659776] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] ©
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] ©
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] ©
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [296320] ©

---\\ Processus lancés (43) - 6s
[MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672] [PID.1988] ©
[MD5.2DB0BC191AA5D060FC0100FFFD5EA0F7] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1005488] [PID.1972] ©
[MD5.1196D6E6589155A04B1BD2D3D4C5A622] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322176] [PID.2016] ©
[MD5.6B3BA5BB455D7A4FD16B697B8F73858F] - (.ASUSTek Computer Inc. - ASUS FaceLogon Application.) -- C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe [473728] [PID.2056] ©
[MD5.5AC92ABC3A201B79A73B1011B078EAE0] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe [17872] [PID.2072] ©
[MD5.A4EE07DF5DB9EBA55EF019932EECCBE7] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe [18896] [PID.2100] ©
[MD5.CD37E8F77BFF71F104BDC941A393F0B5] - (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe [645896] [PID.2140] ©
[MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.2176] ©
[MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672] [PID.2224] ©
[MD5.1CE0621B591913C12BECAA5B50E88BB2] - (...) -- C:\ProgramData\Camtel EVDO-Huawei\OnlineUpdate\ouc.exe [246112] [PID.2512]
[MD5.EB0B3C1577773CB81EBC0A2507FCCFDC] - (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbarsvc.exe [90696] [PID.2616]
[MD5.5C8BC8A28798FD010E7ABC4E0D588CAA] - (.Nero AG - NService Application.) -- C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368] [PID.2636] ©
[MD5.E90DA42B87D684DEBFB73B38A718A006] - (.Copyright (C) 2008 - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService64.exe [346976] [PID.2668]
[MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.2740]
[MD5.832CE330DD987227B7DEA8C03F22AEFA] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [628448] [PID.2768] ©
[MD5.3C6630473DD42FFC57D9F5564F533127] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.2796] ©
[MD5.D06822D03B0C089F5AB6D632B55F96E4] - (...) -- C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe [821600] [PID.2868]
[MD5.9EA47AA97D15BCC50A0F0B78CBD8E768] - (...) -- C:\ProgramData\MTN Internet\OnlineUpdate\ouc.exe [655712] [PID.2876]
[MD5.446462BBA744DA60379574926FD51EAB] - (.Copyright (C) 2012 - PassThruSvr Application.) -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912] [PID.2892]
[MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.2944]
[MD5.2BACD71123F42CEA603F4E205E1AE337] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096] [PID.3008] ©
[MD5.19FC9DBD5B1BD88A38DED010F409DD3E] - (...) -- C:\Program Files (x86)\Camtel EVDO-Huawei\Camtel EVDO-Huawei.exe [567808] [PID.3036]
[MD5.16326B348A879A2DD877FC0577E313CD] - (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [227592] [PID.1316] ©
[MD5.2A46FFE841EC43001D5A293A54DB34DE] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223104] [PID.1308] ©
[MD5.094F3AC18AF083D542D96EBEF1F28161] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [632152] [PID.2840] ©
[MD5.7307AEC9FA7F0872A26F4B5D2E8B623A] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [170264] [PID.3736] ©
[MD5.053C46FD07C5FB6D4C73FCC7DE72D3D3] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [398616] [PID.4008] ©
[MD5.141009771051A69C21F6E5F5D2539860] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12497552] [PID.3876] ©
[MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe [955392] [PID.2368] ©
[MD5.659474582C6E060DBD8FFFF97DC892C5] - (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968] [PID.4136] ©
[MD5.6BA8D86746935498D64CB5CF6286F2EB] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608] [PID.4304] ©
[MD5.FDB2FB392B20797AF3F4ED9D7699938E] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152] [PID.4312] ©
[MD5.27F8A7A78773427E5D931628F89D6839] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008] [PID.4320] ©
[MD5.B83DB01D9E4BD53C9B65214806B54EB7] - (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\APPINTEGRATOR.EXE [225864] [PID.4344]
[MD5.DDE9C9B89B413A5868D7358511DB5A6A] - (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\AppIntegrator64.exe [258632] [PID.4360]
[MD5.882FAF5F9C7873244D3432EBBC964444] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134880] [PID.4488] ©
[MD5.D03EE270D6D1A47C06845F04A80A413D] - (.Yahoo! Inc. - Yahoo! Messenger Tray.) -- C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe [79160] [PID.5932] ©
[MD5.A4260FC51A7CABA1F92047C4432CBCA7] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.5796] ©
[MD5.F9F22EF36F07A47FF65AEC8698A9E6CD] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.1324] ©
[MD5.05299546F243159CB8A42906ACB219A8] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] [PID.2960] ©
[MD5.B5FFD1810FF2295691C64505C28087B3] - (.Avira Operations GmbH & Co. KG - Control Center.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe [791296] [PID.3080] ©
[MD5.76F78018F45E7F92164CEA5020176933] - (.Microsoft Corporation. - Microsoft SeaPort Search Enhancement Broker.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE [247968] [PID.5088]
[MD5.1F7425258815EADF2CDCB82433D4C702] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\user\Downloads\ZHPDiag3.exe [1921024] [PID.4832] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (1) - 0s
G2 - GCE: Preference [User Data\Default] [cckahkoimnbpflhhobnanhfdihegpedf] Plus-HD-9.4 =>PUP.Optional.CrossRider

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 2s
M0 - MFSP: prefs.js [user - 1tavzbhg.default] http://home.tb.ask.com/index.jhtml?ptb=23F31860-01FA-4274-A360-C799376598C2&n=781aec88&p2=^ZJ^xdm048^YYA^cm&si=CMHayfGwj8QCFUHItAodxmgAAA =>Toolbar.Ask
P2 - EXT FILE: (...) -- C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\1tavzbhg.default\searchplugins\ask-web-search.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Mindspark - Zwinky.) -- C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\1tavzbhg.default\extensions\5qffxtbr@www.zwinky.com
P2 - EXT: (...) -- C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\1tavzbhg.default\extensions\prestonhull81@yahoo.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll ©
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.tb.ask.com/ =>Toolbar.Ask
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {a8625cb7-85fe-4936-92a4-b2a7c925209e} Orphean
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll ©
O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Bing Client Extensions.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll

---\\ Internet Explorer, Barre d'outil (3) - 1s
O3 - Toolbar: 0x9D0799A86F20A643BE6A07E0FA648EA0 - [HKCU]{A899079D-206F-43A6-BE6A-07E0FA648EA0} . (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbar.dll
O3 - Toolbar: Bing - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll
O3 - Toolbar: (no name) - [HKLM]{a899079d-206f-43a6-be6a-07e0fa648ea0} (Orphean)

---\\ Applications lancées au démarrage du système (26) - 2s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ©
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe ©
O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe ©
O4 - HKCU\..\Run: [Messenger (Yahoo!)] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ©
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe ©
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe ©
O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe ©
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe ©
O4 - HKLM\..\Wow6432Node\Run: [GamingWonderland EPM Support] . (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtmedint.exe
O4 - HKLM\..\Wow6432Node\Run: [GamingWonderland AppIntegrator 32-bit] . (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\AppIntegrator.exe
O4 - HKLM\..\Wow6432Node\Run: [GamingWonderland AppIntegrator 64-bit] . (.Mindspark - Mindspark Toolbar Platform.) -- C:\Program Files (x86)\GamingWonderland\bar\1.bin\AppIntegrator64.exe
O4 - HKLM\..\Wow6432Node\Run: [GamingWonderland Search Scope Monitor] C:\PROGRA~2\GAMING~2\bar\1.bin\gtsrchmn.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira.SystrayStartTrigger.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-2152021595-3506784582-1830437719-1002\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe ©
O4 - HKUS\S-1-5-21-2152021595-3506784582-1830437719-1002\..\Run: [Messenger (Yahoo!)] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ©
O4 - HKUS\S-1-5-21-2152021595-3506784582-1830437719-1002\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKUS\S-1-5-21-2152021595-3506784582-1830437719-1002\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe ©
O4 - HKUS\S-1-5-21-2152021595-3506784582-1830437719-1002\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.)

---\\ Modification Domaine/Adresses DNS (5) - 1s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 195.24.192.33 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.16.21.9 41.205.5.109 41.205.5.117
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 195.24.192.33 8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 172.16.21.9 41.205.5.109 41.205.5.117
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 172.16.21.9 41.205.5.109 41.205.5.117

---\\ Protocole additionnel (21) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (18) - 3s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: Avira Mail Protection (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe ©
O23 - Service: Avira Scheduler (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe ©
O23 - Service: Avira Real-Time Protection (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe ©
O23 - Service: Avira Web Protection (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe ©
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe ©
O23 - Service: Camtel EVDO-Huawei. OUC (Camtel EVDO-Huawei. RunOuc) . (...) - C:\Program Files (x86)\Camtel EVDO-Huawei\UpdateDog\ouc.exe
O23 - Service: DCService.exe (DCService.exe) . (.Copyright (C) 2010 - RunDCSer 应用程序.) - C:\ProgramData\DatacardService\DCService.exe
O23 - Service: GamingWonderlandService (GamingWonderlandService) . (.Mindspark - Mindspark Toolbar Platform.) - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbarsvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: HTCMonitorService (HTCMonitorService) . (.Nero AG - NService Application.) - C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe ©
O23 - Service: HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService64.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: MTN Internet. OUC (MTN Internet. RunOuc) . (...) - C:\Program Files (x86)\MTN Internet\UpdateDog\ouc.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012 - PassThruSvr Application.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Tâches planifiées en automatique (52) - 6s
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1] (...) -- C:\Program Files (x86)\Plus-HD-9.4\Plus-HD-9.4-codedownloader.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11] (...) -- C:\Program Files (x86)\Plus-HD-9.4\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2] (...) -- C:\Program Files (x86)\Plus-HD-9.4\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3] (...) -- C:\Program Files (x86)\Plus-HD-9.4\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4] (...) -- C:\Program Files (x86)\Plus-HD-9.4\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5] (...) -- C:\Program Files (x86)\Plus-HD-9.4\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6] (...) -- C:\Program Files (x86)\Plus-HD-9.4\Plus-HD-9.4-novainstaller.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7] (...) -- C:\Program Files (x86)\Plus-HD-9.4\Plus-HD-9.4-nova.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [AmiUpdXp] (...) -- C:\Users\user\AppData\Local\2801\Updater.exe (.not file.) [0] =>PUP.Optional.SoftwareUpdater
[MD5.2DB0BC191AA5D060FC0100FFFD5EA0F7] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1005488] ©
[MD5.5AC92ABC3A201B79A73B1011B078EAE0] [APT] [ASUS Quick Gesture] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe [17872] ©
[MD5.A4EE07DF5DB9EBA55EF019932EECCBE7] [APT] [ASUS Quick Gesture (x64)] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe [18896] ©
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002Core] (.Facebook Inc..) -- C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] ©
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002UA] (.Facebook Inc..) -- C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233224] ©
[MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233224] ©
[MD5.70B6D0C45256B688B7DBC10E922FB402] [APT] [{9C950352-A9E0-4859-8090-30DF00147032}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [26192168] ©
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1.job [1444] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11.job [3450] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2.job [1316] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3.job [2768] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4.job [2160] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5.job [1384] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6.job [1442] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7 - (...) -- C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7.job [1380] =>PUP.Optional.CrossRider
O39 - APT: AmiUpdXp - (...) -- C:\Windows\Tasks\AmiUpdXp.job [368] =>PUP.Optional.SoftwareUpdater
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002Core - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002Core.job [902] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002UA - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002UA.job [924] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job [828] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job [830] ©
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1 [4474] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11 [6480] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2 [4346] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3 [5798] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4 [5190] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5 [4414] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6 [4472] =>PUP.Optional.CrossRider
O39 - APT: 7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7 - (...) -- C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7 [4408] =>PUP.Optional.CrossRider
O39 - APT: AmiUpdXp - (...) -- C:\Windows\System32\Tasks\AmiUpdXp [3414] =>PUP.Optional.SoftwareUpdater
O39 - APT: ASUS P4G - (.ASUS.) -- C:\Windows\System32\Tasks\ASUS P4G [3054] ©
O39 - APT: ASUS Quick Gesture - (.ASUSTeK Computer Inc..) -- C:\Windows\System32\Tasks\ASUS Quick Gesture [3422] ©
O39 - APT: ASUS Quick Gesture (x64) - (.ASUSTeK Computer Inc..) -- C:\Windows\System32\Tasks\ASUS Quick Gesture (x64) [3438] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002Core - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002Core [3530] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002UA - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2152021595-3506784582-1830437719-1002UA [3898] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d [3492] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon [3188] ©

---\\ Logiciels installés (88) - 8s
O42 - Logiciel: ETDWare PS/2-X64 10.5.10.0 - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech ©
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client ©
O42 - Logiciel: myBitCast 1.0.0.3 - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- myBitCast ©
O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {0450B7B0-AC71-44A4-AB40-4DD678DF3A8C} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {09536BA1-E498-4CC3-B834-D884A67D7E34} ©
O42 - Logiciel: Microsoft Antimalware - (.Microsoft Corporation.) [HKLM][64Bits] -- {774088D4-0777-4D78-904D-E435B318F5D2} ©
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} ©
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} ©
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {E77543EE-6FB5-4FF6-AB70-635392C8C756} ©
O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {FCAB9F73-BF5D-4E3D-92E7-B0F35C568F20} ©
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin ©
O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 ©
O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage ©
O42 - Logiciel: Avira Antivirus v15.0.12.420 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus ©
O42 - Logiciel: Camtel EVDO-Huawei - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Camtel EVDO-Huawei
O42 - Logiciel: Game Park Console - (.Oberon Media Inc..) [HKLM][64Bits] -- Game Park Console
O42 - Logiciel: GamingWonderland Internet Explorer Toolbar - (.Mindspark Interactive Network.) [HKLM][64Bits] -- GamingWonderlandbar Uninstall Internet Explorer =>PUP.Optional.MindSpark
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: OffersWizard Network System Driver - (...) [HKLM][64Bits] -- inethnfd
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 40.0.3 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: MTN Internet - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- MTN Internet
O42 - Logiciel: PC Data App - (...) [HKLM][64Bits] -- PCData App
O42 - Logiciel: SuperCopier2 - (...) [HKLM][64Bits] -- SuperCopier2
O42 - Logiciel: WinRAR 4.20 beta 2 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger ©
O42 - Logiciel: IPTInstaller - (.HTC.) [HKLM][64Bits] -- {08208143-777D-4A06-BB54-71BF0AD1BB70} ©
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} ©
O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {19EA33FB-B34E-40EA-8B8A-61743AEB795A} ©
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} ©
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} ©
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} ©
O42 - Logiciel: HTC Sync Manager - (.HTC.) [HKLM][64Bits] -- {231D0C79-98A6-4693-A366-36DE7D7346EC} ©
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} ©
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {3365E735-48A6-4194-9988-CE59AC5AE503} ©
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: HTC Driver Installer - (.HTC Corporation.) [HKLM][64Bits] -- {4CEEE5D0-F905-4688-B9F9-ECC710507796} ©
O42 - Logiciel: SceneSwitch - (.ASUS.) [HKLM][64Bits] -- {5172E572-C175-4F80-A6D5-5CB45826AD61} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: ASUS FaceLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: InstantOn for NB - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91} ©
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} ©
O42 - Logiciel: Dream Vacation Solitaire - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111249233} ©
O42 - Logiciel: Galapago - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457} ©
O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110} ©
O42 - Logiciel: Bubbletown - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115065740} ©
O42 - Logiciel: Go Go Gourmet Chef of the Year - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115290153} ©
O42 - Logiciel: Turbo Fiesta - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115320460} ©
O42 - Logiciel: World of Goo - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-116672750} ©
O42 - Logiciel: Plants vs Zombies - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117080787} ©
O42 - Logiciel: Mahjong Memoirs - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117948443} ©
O42 - Logiciel: Deadtime Stories - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-118716773} ©
O42 - Logiciel: Farm Frenzy 3 - Madagascar - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-119205603} ©
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: ASUS Instant Connect - (.ASUS.) [HKLM][64Bits] -- {89ECB85A-D933-4CEA-9116-5CBC9C2ED95B} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} ©
O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0} ©
O42 - Logiciel: ASUS Virtual Touch - (.ASUS.) [HKLM][64Bits] -- {938CFBD4-0652-49E5-BB8B-153948865941} ©
O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM][64Bits] -- {981029E0-7FC9-4CF3-AB39-6F133621921A} ©
O42 - Logiciel: Software Version Updater - (...) [HKLM][64Bits] -- {99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927} ©
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} ©
O42 - Logiciel: Adobe Reader X (10.1.0) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} ©
O42 - Logiciel: Avira Launcher v1.1.44.15481 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {ACA55E67-3F69-4377-A38E-BD0E1F87A7F2} ©
O42 - Logiciel: Avira Launcher v1.1.44.15481 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {b76c0d12-422c-44e3-9daa-9363451e24cd} ©
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} ©
O42 - Logiciel: Skype™ 4.2 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {D103C4BA-F905-437A-8049-DB24763BBE36} ©
O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {D39F0676-163E-4595-A917-E28F99BBD4D2} ©
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} ©
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} ©
O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} ©
O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec

---\\ HKCU & HKLM Software Keys (69) - 8s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\Client
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\ECAREME
HKLM\SOFTWARE\Wow6432Node\GamingWonderland
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HTC
HKLM\SOFTWARE\Wow6432Node\Huawei technologies
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Myfree Codec
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Oberon Media
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\PCDataApp
HKLM\SOFTWARE\Wow6432Node\Ralink
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\yahoo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\BrowserChoice
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\GamingWonderland
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HTC
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Myfree Codec
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\PCDataApp
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\yahoo
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\AppDataLow
HKCU\SOFTWARE\AppDataLow\Software\GamingWonderland
HKCU\SOFTWARE\AppDataLow\Software\MarkAny
HKCU\SOFTWARE\AppDataLow\Software\Plus-HD-9.4 =>PUP.Optional.CrossRider

---\\ Contenu des dossiers Programmes (192) - 11s
O43 - CFD: 2012/12/17 17:24:23 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2012/08/07 09:22:08 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 2015/07/08 13:13:12 - [] D -- C:\Program Files (x86)\Avira
O43 - CFD: 2015/09/03 22:26:02 - [] D -- C:\Program Files (x86)\Camtel EVDO-Huawei
O43 - CFD: 2014/06/17 21:31:37 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2012/08/07 09:21:49 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2014/12/07 11:59:05 - [] D -- C:\Program Files (x86)\GamingWonderland
O43 - CFD: 2012/12/17 17:25:21 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2013/06/28 15:32:56 - [] D -- C:\Program Files (x86)\HeroicPlay_6o
O43 - CFD: 2013/06/28 15:24:51 - [] AD -- C:\Program Files (x86)\HeroicPlay_6oEI
O43 - CFD: 2014/04/08 15:40:38 - [] D -- C:\Program Files (x86)\HTC
O43 - CFD: 2014/08/05 14:47:58 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2012/08/07 08:40:36 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2012/08/08 09:46:56 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2012/02/24 03:41:46 - [] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2012/12/17 17:20:35 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2013/07/29 17:14:13 - [] D -- C:\Program Files (x86)\Microsoft Security Client
O43 - CFD: 2012/02/24 03:30:19 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2012/02/24 03:37:31 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2012/12/17 17:20:34 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 2012/12/17 17:18:09 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2012/12/17 17:20:50 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 2012/12/17 17:19:48 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/09/04 16:16:00 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/09/04 16:16:23 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2012/12/17 17:20:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2012/12/17 17:22:12 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 2013/04/20 08:11:39 - [] D -- C:\Program Files (x86)\MTN Internet
O43 - CFD: 2014/08/05 16:09:06 - [] D -- C:\Program Files (x86)\MyFree Codec
O43 - CFD: 2012/08/07 08:39:48 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2014/08/05 16:11:27 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2012/12/17 17:25:19 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2014/04/08 15:39:53 - [] D -- C:\Program Files (x86)\Spirent Communications
O43 - CFD: 2012/12/17 17:23:28 - [] D -- C:\Program Files (x86)\SuperCopier2
O43 - CFD: 2012/08/07 08:39:35 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2009/07/14 05:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2012/08/08 08:36:27 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2012/02/24 03:39:42 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2012/08/08 08:36:32 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2012/08/08 08:36:30 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2012/08/08 08:36:29 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2011/02/18 21:09:10 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2012/08/08 08:36:30 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2014/04/21 09:39:13 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2012/12/17 17:25:38 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 2012/02/24 03:28:25 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2009/07/14 05:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2012/09/04 12:40:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 2015/09/03 23:10:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 2015/09/03 22:25:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camtel EVDO-Huawei
O43 - CFD: 2012/08/07 09:22:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
O43 - CFD: 2012/02/24 03:50:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Park
O43 - CFD: 2012/02/24 03:50:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2012/02/24 03:29:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2014/04/08 15:40:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC
O43 - CFD: 2012/08/07 08:37:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2009/07/14 05:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2013/04/15 14:00:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2013/04/20 08:11:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTN Internet
O43 - CFD: 2014/08/05 16:09:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
O43 - CFD: 2014/08/05 14:48:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 2012/12/17 17:25:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2012/11/15 20:55:00 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2009/07/14 08:44:38 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2012/02/24 03:39:41 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2014/04/21 09:39:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2012/12/17 17:25:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger
O43 - CFD: 2012/12/17 17:24:24 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2013/05/20 17:01:12 - [] D -- C:\ProgramData\Asus
O43 - CFD: 2012/02/24 03:42:14 - [] D -- C:\ProgramData\ASUS WebStorage
O43 - CFD: 2015/06/17 09:13:07 - [] D -- C:\ProgramData\Avira
O43 - CFD: 2013/07/29 13:37:24 - [] D -- C:\ProgramData\Camtel EVDO-Huawei
O43 - CFD: 2012/08/06 17:35:44 - [] D -- C:\ProgramData\ChangeFolderView
O43 - CFD: 2014/04/21 10:14:24 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2015/09/03 22:26:13 - [] D -- C:\ProgramData\DatacardService
O43 - CFD: 2012/02/24 03:43:10 - [] D -- C:\ProgramData\Deadtime Stories
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2012/08/06 17:32:44 - [] D -- C:\ProgramData\FolderView
O43 - CFD: 2012/12/17 17:25:21 - [] D -- C:\ProgramData\Google
O43 - CFD: 2014/04/08 15:16:29 - [] D -- C:\ProgramData\HTC
O43 - CFD: 2012/08/07 08:38:53 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2012/08/08 09:50:40 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2013/04/15 13:59:57 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/06/25 21:18:13 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2013/07/31 21:55:03 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2013/04/20 06:39:05 - [] D -- C:\ProgramData\MTN Internet
O43 - CFD: 2012/08/07 08:44:34 - [] D -- C:\ProgramData\P4G
O43 - CFD: 2015/09/04 16:13:50 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2012/08/07 08:40:58 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 2014/08/05 16:09:34 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 2012/12/17 17:25:13 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2012/08/07 09:21:42 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2012/12/17 17:25:40 - [] D -- C:\ProgramData\Yahoo!
O43 - CFD: 2012/12/17 17:24:24 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2012/08/08 09:37:45 - [] D -- C:\Program Files (x86)\Common Files\Bitdefender
O43 - CFD: 2014/06/17 21:31:38 - [] D -- C:\Program Files (x86)\Common Files\Config
O43 - CFD: 2012/12/17 17:20:34 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2012/08/07 08:39:02 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2012/08/07 08:34:25 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2013/04/15 14:00:04 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2014/04/08 15:40:54 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2012/02/24 03:42:35 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 2012/08/07 08:36:27 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2012/08/07 08:46:25 - [] D -- C:\Program Files (x86)\Common Files\SceneSwitch
O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2012/12/17 17:25:14 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2012/12/17 17:18:01 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2012/02/24 03:29:35 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2013/01/01 12:00:37 - [] D -- C:\Users\user\AppData\Roaming\Adobe
O43 - CFD: 2014/04/08 15:41:20 - [] D -- C:\Users\user\AppData\Roaming\Apple Computer
O43 - CFD: 2012/12/15 07:10:45 - [] D -- C:\Users\user\AppData\Roaming\ASUS WebStorage
O43 - CFD: 2015/04/16 07:54:25 - [] D -- C:\Users\user\AppData\Roaming\Avira
O43 - CFD: 2013/05/28 13:41:02 - [] D -- C:\Users\user\AppData\Roaming\CyberLink
O43 - CFD: 2014/08/18 07:15:10 - [] D -- C:\Users\user\AppData\Roaming\HTC
O43 - CFD: 2012/11/15 21:02:43 - [] D -- C:\Users\user\AppData\Roaming\Identities
O43 - CFD: 2012/12/17 18:29:16 - [] D -- C:\Users\user\AppData\Roaming\Macromedia
O43 - CFD: 2009/07/14 08:44:38 - [0] D -- C:\Users\user\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/03/04 16:04:02 - [] SD -- C:\Users\user\AppData\Roaming\Microsoft
O43 - CFD: 2013/07/31 21:55:41 - [] D -- C:\Users\user\AppData\Roaming\Mozilla
O43 - CFD: 2014/08/05 16:19:10 - [] D -- C:\Users\user\AppData\Roaming\Samsung
O43 - CFD: 2014/04/11 21:59:28 - [] D -- C:\Users\user\AppData\Roaming\Skype
O43 - CFD: 2012/12/17 10:45:46 - [] D -- C:\Users\user\AppData\Roaming\SoftGrid Client
O43 - CFD: 2014/04/21 09:39:30 - [] D -- C:\Users\user\AppData\Roaming\WinRAR
O43 - CFD: 2013/08/09 23:17:11 - [] D -- C:\Users\user\AppData\Roaming\Yahoo!
O43 - CFD: 2015/09/04 19:32:05 - [] D -- C:\Users\user\AppData\Roaming\ZHP
O43 - CFD: 2015/09/03 09:41:06 - [] D -- C:\Users\user\AppData\Local\20759
O43 - CFD: 2014/12/25 10:58:19 - [] D -- C:\Users\user\AppData\Local\2801
O43 - CFD: 2014/06/17 21:31:12 - [] D -- C:\Users\user\AppData\Local\8686
O43 - CFD: 2013/01/01 12:00:36 - [] D -- C:\Users\user\AppData\Local\Adobe
O43 - CFD: 2014/04/08 15:41:21 - [] D -- C:\Users\user\AppData\Local\Apple Computer
O43 - CFD: 2012/11/15 21:02:33 - [0] SHD -- C:\Users\user\AppData\Local\Application Data
O43 - CFD: 2013/05/13 01:03:37 - [] D -- C:\Users\user\AppData\Local\Apps
O43 - CFD: 2013/05/20 17:01:10 - [] D -- C:\Users\user\AppData\Local\ASUS
O43 - CFD: 2013/05/13 01:04:19 - [0] D -- C:\Users\user\AppData\Local\Deployment
O43 - CFD: 2015/05/30 14:39:30 - [0] D -- C:\Users\user\AppData\Local\Diagnostics
O43 - CFD: 2014/08/05 14:28:02 - [] D -- C:\Users\user\AppData\Local\Downloaded Installations
O43 - CFD: 2013/07/02 18:31:06 - [0] D -- C:\Users\user\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2013/08/09 22:36:39 - [] D -- C:\Users\user\AppData\Local\Facebook
O43 - CFD: 2014/12/07 12:00:50 - [] D -- C:\Users\user\AppData\Local\GamingWonderland
O43 - CFD: 2014/06/17 21:34:50 - [] D -- C:\Users\user\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2014/04/21 09:41:51 - [] D -- C:\Users\user\AppData\Local\Google
O43 - CFD: 2012/11/15 21:02:33 - [0] SHD -- C:\Users\user\AppData\Local\Historique
O43 - CFD: 2015/09/04 16:11:40 - [] D -- C:\Users\user\AppData\Local\HTC MediaHub
O43 - CFD: 2014/08/18 07:26:43 - [] D -- C:\Users\user\AppData\Local\Microsoft
O43 - CFD: 2013/05/02 18:06:43 - [] D -- C:\Users\user\AppData\Local\Microsoft Games
O43 - CFD: 2015/04/14 09:35:03 - [] D -- C:\Users\user\AppData\Local\Microsoft Help
O43 - CFD: 2013/10/20 13:07:12 - [] D -- C:\Users\user\AppData\Local\Mozilla
O43 - CFD: 2014/08/05 16:17:40 - [] D -- C:\Users\user\AppData\Local\Samsung
O43 - CFD: 2015/09/04 19:30:25 - [] D -- C:\Users\user\AppData\Local\Temp
O43 - CFD: 2012/11/15 21:02:33 - [0] SHD -- C:\Users\user\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/11/05 18:34:29 - [] D -- C:\Users\user\AppData\Local\VirtualStore
O43 - CFD: 2014/12/17 07:49:08 - [] D -- C:\Users\user\AppData\Local\Windows Live
O43 - CFD: 2013/08/09 23:17:11 - [] D -- C:\Users\user\AppData\Local\Yahoo
O43 - CFD: 2015/06/16 08:30:29 - [0] D -- C:\Users\user\AppData\Local\{112A2609-5C95-47C6-8FB2-22560401D9B3}
O43 - CFD: 2013/05/16 04:03:00 - [0] D -- C:\Users\user\AppData\Local\{2D3C2230-5927-4589-8EBD-2F3013EAAA3B}
O43 - CFD: 2015/03/29 15:05:30 - [0] D -- C:\Users\user\AppData\Local\{4862341D-0CE2-4565-9F6C-5FA4BB265FF6}
O43 - CFD: 2015/02/20 05:19:46 - [0] D -- C:\Users\user\AppData\Local\{4C87929E-4306-4B5A-84A1-6AFE3E783053}
O43 - CFD: 2013/04/20 14:16:05 - [0] D -- C:\Users\user\AppData\Local\{508FBFB3-F042-4AD5-81E2-86EE7D229048}
O43 - CFD: 2013/06/01 18:56:51 - [0] D -- C:\Users\user\AppData\Local\{56006633-E760-426D-8DF6-304F6C1C0775}
O43 - CFD: 2014/12/14 11:49:37 - [0] D -- C:\Users\user\AppData\Local\{5786746D-6E57-4F27-9B18-70E3DEB6314E}
O43 - CFD: 2013/05/18 20:30:53 - [0] D -- C:\Users\user\AppData\Local\{5A516AF8-6B1D-41CE-84CC-18510D688A94}
O43 - CFD: 2014/08/18 07:26:07 - [0] D -- C:\Users\user\AppData\Local\{741A4833-0064-4588-B100-F651A30644A9}
O43 - CFD: 2013/05/10 20:40:29 - [0] D -- C:\Users\user\AppData\Local\{766894A8-9B32-40F3-BC3C-C346CEFC1710}
O43 - CFD: 2015/03/17 06:38:38 - [0] D -- C:\Users\user\AppData\Local\{79BAB7F0-DBB3-4D32-A281-4298B0FE0955}
O43 - CFD: 2015/02/20 05:20:22 - [0] D -- C:\Users\user\AppData\Local\{93EA2F40-A660-4C81-B302-E92C43D558BF}
O43 - CFD: 2015/03/15 20:41:13 - [0] D -- C:\Users\user\AppData\Local\{943C2388-8E64-4CF8-8FBB-33C03B0FC53E}
O43 - CFD: 2015/04/22 15:51:27 - [0] D -- C:\Users\user\AppData\Local\{94507972-6E9C-4385-BB10-8D30EA9D2679}
O43 - CFD: 2014/11/05 19:23:31 - [0] D -- C:\Users\user\AppData\Local\{9FD49981-F251-42B2-8B2D-0CEDF6688B23}
O43 - CFD: 2013/07/02 07:05:31 - [0] D -- C:\Users\user\AppData\Local\{A27385AC-8545-41F4-8731-81C6E882742C}
O43 - CFD: 2015/03/25 18:30:55 - [0] D -- C:\Users\user\AppData\Local\{C5A927A1-68FE-4534-A253-CBD86FDC0BFB}
O43 - CFD: 2015/04/14 10:53:10 - [0] D -- C:\Users\user\AppData\Local\{C8111AAC-30BC-44C1-9823-86F6184A25E2}
O43 - CFD: 2015/03/17 19:25:43 - [0] D -- C:\Users\user\AppData\Local\{E4EA3A65-EBBC-4C6B-9794-33FD00481357}
O43 - CFD: 2013/04/25 05:25:27 - [0] D -- C:\Users\user\AppData\Local\{F15FD48B-4F1A-468A-A405-394FEC32208E}
O43 - CFD: 2013/04/27 08:42:20 - [0] D -- C:\Users\user\AppData\Local\{F55C872C-5FE4-48B1-8AFC-17D486EDB1A2}
O43 - CFD: 2014/08/18 07:29:24 - [0] D -- C:\Users\user\AppData\Local\{F6F506C5-8721-40B4-93CB-C64187170177}
O43 - CFD: 2014/05/29 19:32:03 - [0] D -- C:\Users\user\AppData\Local\{F9535B2C-73E5-4685-A632-50E44CCC68DA}
O43 - CFD: 2014/04/11 20:05:02 - [0] D -- C:\Users\user\AppData\Local\{FB67AF61-8E4B-418B-830C-73E8AEA0ED9D}
O43 - CFD: 2014/11/08 02:18:13 - [0] D -- C:\Users\user\AppData\Local\{FFB45D2D-B87A-4FCB-ACD2-3755F749CF72}
O43 - CFD: 2009/07/14 05:54:32 - [] RD -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2012/11/15 21:02:56 - [] RD -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2009/07/14 05:49:38 - [] RD -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2012/11/15 21:02:56 - [] RD -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2012/12/17 17:23:28 - [] D -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2
O43 - CFD: 2014/04/21 09:39:13 - [] D -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumération des clés StartupReg (11) - 4s
O53 - SMSR:HKLM\...\startupreg\ACMON [Key] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe ©
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe ©
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe ©
O53 - SMSR:HKLM\...\startupreg\ASUSPRP [Key] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe ©
O53 - SMSR:HKLM\...\startupreg\ASUSWebStorage [Key] . (.ecareme - AsusWebStorage.) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe ©
O53 - SMSR:HKLM\...\startupreg\ATKMEDIA [Key] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe ©
O53 - SMSR:HKLM\...\startupreg\ATKOSD2 [Key] . (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe ©
O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe ©
O53 - SMSR:HKLM\...\startupreg\ETDCtrl [Key] . (.ELAN Microelectronics Corp. - .) -- C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.) ©
O53 - SMSR:HKLM\...\startupreg\HControlUser [Key] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe ©
O53 - SMSR:HKLM\...\startupreg\Wireless Console 3 [Key] . (.ASUSTeK Computer Inc. - A program that manage wireless devices in s.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe ©

---\\ Liste des pilotes du système (88) - 12s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/06/10 22:01:06 A . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\System32\drivers\agrsm64.sys [1146880] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2012/02/24 01:56:32 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] ©
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2012/02/24 01:56:32 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] ©
O58 - SDL:2009/11/02 11:16:50 A . (.HTC, Corporation - ADB Interface.) -- C:\Windows\System32\drivers\ANDROIDUSB.sys [33736]
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2012/04/11 23:49:00 A . (.Windows (R) Win 7 DDK provider - ASUS Virtual Bus.) -- C:\Windows\System32\drivers\AsusVBus.sys [35968] ©
O58 - SDL:2012/04/11 23:48:58 A . (.Windows (R) Win 7 DDK provider - ASUS HID mini driver for Virtual Touch Devi.) -- C:\Windows\System32\drivers\AsusVTouch.sys [16512] ©
O58 - SDL:2009/06/20 03:09:57 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [1394688] ©
O58 - SDL:2015/09/03 23:00:56 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [162528] ©
O58 - SDL:2015/09/03 23:00:56 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [141416] ©
O58 - SDL:2014/09/24 12:44:21 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [28600] ©
O58 - SDL:2015/03/15 14:19:49 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [44088] ©
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2012/05/14 18:44:20 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\Windows\System32\drivers\ETD.sys [200488] ©
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2015/09/03 22:24:20 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [32768]
O58 - SDL:2015/09/03 22:24:20 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [222464]
O58 - SDL:2015/09/03 22:24:20 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [415744]
O58 - SDL:2015/09/03 22:24:20 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [22016]
O58 - SDL:2015/09/03 22:24:20 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [117248]
O58 - SDL:2015/09/03 22:24:20 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [86016]
O58 - SDL:2015/09/03 22:24:21 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [98816]
O58 - SDL:2015/09/03 22:24:21 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [69632]
O58 - SDL:2015/09/03 22:24:21 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [28672]
O58 - SDL:2015/09/03 22:24:21 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [212992]
O58 - SDL:2015/09/03 22:24:21 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [13952]
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2011/11/10 09:04:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [60184] ©
O58 - SDL:2010/11/20 14:33:36 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] ©
O58 - SDL:2012/09/25 22:46:20 A . (.Windows (R) Win 7 DDK provider - RawPacket NDIS Protocol Driver.) -- C:\Windows\System32\drivers\htcnprot.sys [36928] ©
O58 - SDL:2012/03/01 03:01:08 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [568600] ©
O58 - SDL:2012/02/24 01:56:32 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] ©
O58 - SDL:2012/05/22 08:47:34 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [14759136] ©
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2012/05/25 04:22:42 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [331264] ©
O58 - SDL:2012/03/26 18:13:18 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [19224] ©
O58 - SDL:2012/03/26 18:13:20 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [356632] ©
O58 - SDL:2012/03/26 18:13:20 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [789272] ©
O58 - SDL:2009/07/20 10:29:40 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [15416]
O58 - SDL:2009/06/10 21:34:18 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\Windows\System32\drivers\L1C62x64.sys [57344] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2015/09/03 22:24:21 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [1001472]
O58 - SDL:2012/04/13 03:45:04 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28x.sys [1860672] ©
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2012/02/24 01:56:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] ©
O58 - SDL:2012/02/24 01:56:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] ©
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2011/08/23 14:57:24 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [565352] ©
O58 - SDL:2012/05/31 10:24:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4064272] ©
O58 - SDL:2012/02/01 10:06:18 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsBaStor.sys [292968] ©
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2009/06/10 21:35:57 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSG664.sys [56832] ©
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2014/06/16 07:01:30 A . (.Google Inc - ADB Interface.) -- C:\Windows\System32\drivers\ssadadb.sys [38080] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - SAMSUNG Android USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssadbus.sys [169288] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [17224] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcmnt.sys [17224] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - SAMSUNG Android USB Modem Filter Driver.) -- C:\Windows\System32\drivers\ssadmdfl.sys [21320] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - SAMSUNG Android USB Modem.) -- C:\Windows\System32\drivers\ssadmdm.sys [188232] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [17736] ©
O58 - SDL:2014/06/16 07:01:30 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwhnt.sys [17736] ©
O58 - SDL:2014/06/16 07:01:38 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [110336] ©
O58 - SDL:2014/06/16 07:01:38 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] ©
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ©

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (65) - 28s
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("browser.startup.homepage", "http://home.tb.ask.com/index.jhtml?ptb=23F31860-01FA-4274-A360-C799376598C2&n=781aec88&p2=^[...] =>Toolbar.Ask
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.a55d597b4643f421eb00726a68e26903ba62d99f0140244d586717a618c9c4868com53164.53164.name", "Plus-HD-9.4"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 0[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 20[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 203[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Fe[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.aprestonhull81yahoocom61774.61774.name", "Plus-HD-9.4c"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.crossrider.bic", "146bf2ae7ecb49f28df4002896c8a15e"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.mywebsearch.prevKwdEnabled", true); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.mywebsearch.prevKwdURL", "http://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=23F31860-01FA-4274-A360-C7[...] =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark.Mindspark.MindsparkFF_.browser.version.last", "40.0"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark.MindsparkFF_.lssState", "{\"previousLocales\":[\"fr\",\"fr-FR\",\"en-US\",\"en\"],\"suppor[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.BUTTON_STRUCTURE", "[{\"b\":212025602,\"c\":\"mindspark.magnify\",\"p\":\"L.0\[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.search.defaultenginename.prev", "Google"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.search.defaultenginename.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.search.defaultenginename.tb", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.search.selectedEngine.prev", "Google"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.search.selectedEngine.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.search.selectedEngine.tb", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.startup.homepage.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.startup.homepage.tb", "http://home.tb.ask.com/index.jhtml?ptb=23F31860[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.startup.page.savedPrev", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.startup.page.tb", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.browser.version.last", "39.0"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.firstKnownVersion", "6.85.6.13345"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.homepage", "http://home.tb.ask.com/index.jhtml?ptb=23F31860-01FA-4274-A360-C79[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.hp.guardType", "HPR"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.hp.user.defined", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.initialized", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installKeysSource", "Cookies"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installType", "XPI"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.contextKey", ""); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.dlpCountryCode", "CM"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.installDate", "2015030408"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.partnerId", "^ZJ^xdm048^YYA^cm"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.partnerSubId", "CMHayfGwj8QCFUHItAodxmgAAA"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.pixelUrl", "http://www.zwinky.com/dl/install_pixels.jhtml?partner[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.success", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.installation.toolbarId", "23F31860-01FA-4274-A360-C799376598C2"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.isCompliantUninstallImplementation", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.lastActivePing", "1441379834346"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.lastKnownVersion", "1.0.1.16857"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.options.defaultSearch", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.options.homePageEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.options.keywordEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.options.tabEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.partnerPixelFired", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.searchHistory", "manish sisodiamangas.FRFILM DE DRANGON BALL Zfilm de ba[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.successUrl", "http://www.zwinky.com/home/main.jhtml"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.toolbar.versionChanged", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.toolbarCollapsed", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark._5qMembers_.weather.location", "10001"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "64ffxtbr@TelevisionFanatic.com"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("extensions.toolbar.mindspark.lastInstalled", "zwinky@mindspark.com"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [user - 1tavzbhg.default] user_pref("keyword.URL", "http://int.search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=23F31860-01FA-4274-A360-C799376598C2&n=781ae[...] =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {3d29c02b-bf3e-4d3b-8a7a-e0e7d0f6dbab} - (Ask Web Search) - http://search.tb.ask.com/ =>Toolbar.Ask

---\\ Enumère les services démarrés par Svchost (32) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [680960] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2477536] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ©

---\\ Liste des exceptions du parefeu Windows (3) - 2s
O87 - FAEL: "{BC9A8DDB-3589-460E-B540-AD416384C7F6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe
O87 - FAEL: "{201C5038-C680-408D-9C7F-44810021168B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\PCDApp\dgen.exe (.not file.)
O87 - FAEL: "{3F974668-57BA-4064-A244-29110C58F2A1}" [In-None-P17-TRUE] .(...) -- C:\Program Files\PCDApp\dgen.exe (.not file.)

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (26) - 38s

SR - Auto [2011/06/06 12:55:28] [ 64952] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Auto [2015/09/03 22:42:47] [ 887128] Avira Mail Protection (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe ©
SR - Auto [2015/09/03 22:54:18] [ 461672] Avira Scheduler (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe ©
SR - Auto [2015/09/03 22:41:59] [ 461672] Avira Real-Time Protection (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe ©
SS - Auto [2015/09/03 22:45:04] [ 1213072] Avira Web Protection (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe ©
SS - Disabled [2011/11/21 22:22:08] [ 80512] ASLDR Service (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ©
SS - Disabled [2012/04/13 18:14:00] [ 277120] ASUS InstantOn Service (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe ©
SS - Disabled [2011/11/21 22:19:50] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe ©
SR - Auto [2015/08/03 14:04:34] [ 227592] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe ©
SS - Auto [2015/09/03 22:24:14] [ 246112] Camtel EVDO-Huawei. OUC (Camtel EVDO-Huawei. RunOuc) . (...) - C:\Program Files (x86)\Camtel EVDO-Huawei\UpdateDog\ouc.exe
SS - Demand [2012/05/22 08:47:42] [ 276248] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe ©
SS - Auto [2011/03/14 16:27:26] [ 142688] DCService.exe (DCService.exe) . (.Copyright (C) 2010.) - C:\ProgramData\DatacardService\DCService.exe
SR - Auto [2014/12/07 11:59:05] [ 90696] GamingWonderlandService (GamingWonderlandService) . (.Mindspark.) - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbarsvc.exe
SS - Auto [2015/09/03 23:00:12] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/09/03 23:00:12] [ 144200] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SR - Auto [2013/11/18 14:36:38] [ 87368] HTCMonitorService (HTCMonitorService) . (.Nero AG.) - C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe ©
SR - Auto [2011/03/14 16:27:34] [ 346976] HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2008.) - C:\ProgramData\DatacardService\HWDeviceService64.exe
SR - Auto [2012/02/03 06:29:52] [ 628448] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SS - Disabled [2012/02/21 20:29:28] [ 128280] Intel(R) ME Service (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
SR - Auto [2012/02/21 20:29:38] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [2012/02/29 02:19:02] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Demand [2015/09/04 01:43:03] [ 149160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SS - Auto [2013/04/20 08:10:59] [ 655712] MTN Internet. OUC (MTN Internet. RunOuc) . (...) - C:\Program Files (x86)\MTN Internet\UpdateDog\ouc.exe
SR - Auto [2013/10/17 15:27:02] [ 166912] Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
SR - Auto [2012/02/29 02:19:04] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Scan Additionnel (24) - 0s
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\AmiUpdXp.job =>PUP.Optional.SoftwareUpdater
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-1 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-11 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-2 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-3 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-4 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-5 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-6 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\7bf43e5c-7018-4dd8-912e-dd0c3d5e5749-7 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\AmiUpdXp =>PUP.Optional.SoftwareUpdater
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\GamingWonderlandbar Uninstall Internet Explorer =>PUP.Optional.MindSpark
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\AppDataLow\Software\Plus-HD-9.4 =>PUP.Optional.CrossRider
C:\Users\user\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate

---\\ Récapitulatif des éléments trouvées sur votre station (9) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater
http://www.nicolascoolman.fr/pup-mindspark/ =>PUP.Optional.MindSpark
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/blog =>PUP.Optional.Monetization
http://www.nicolascoolman.fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch
http://www.nicolascoolman.fr/adware-bandoo/ =>PUP.Optional.Bandoo

~ End of the scan, 48139 items in 208 seconds (931)(0)()

Publicité


Signaler le contenu de ce document

Publicité