cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.9.7.137 Par Nicolas Coolman (2015/09/7)
~ Démarré par bro (Administrator) (2015/09/08 07:20:04)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Wing\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Wing\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 40.0.3 (x86 fr) v40.0.3
MSIE: Internet Explorer v11.0.9600.17842

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : PYQHT
Windows License : OK
~ Windows Remaining Initializations Number : 999
Windows Automatic Updates : OK

---\\ Logiciels de protection (1) - 2s
Windows Defender (Activate)

---\\ Logiciels de protection et autres (Superflus) (1) - 2s
McAfee Security Scan Plus v3.8.150.1

---\\ Logiciels d'optimisation (1) - 3s
CCleaner v4.14

---\\ Surveillance de Logiciels (2) - 3s
Adobe Flash Player 18 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 6169.88 MB (71% free)
~ System Restore: Activé (Enable)
~ System drive C: has 498 GB free of 699 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-MARC
~ User Name: bro
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 498 GB free of 699 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368] ©
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] ©
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920] ©
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2426880] ©
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416] ©
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] ©
[MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [657920] ©
[MD5.BD9C7A068C46053F8747CEA73B5930AB] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [498688] ©
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] ©
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200] ©
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] ©
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] ©
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] ©
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] ©
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] ©
[MD5.D887446F3F6051C60C26F4FD1FC8D43F] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [107520] ©
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] ©
[MD5.31233271EDE50D1BBB220F78AFA60486] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [405504] ©
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624] ©
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] ©
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] ©
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832] ©
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] ©
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520] ©
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] ©

---\\ Processus lancés (39) - 2s
[MD5.66B54471B5856E314947881E28263A6D] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [239616] [PID.972] ©
[MD5.A10CF010E1A2B4337230B4929E0FE4A1] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872] [PID.1036] ©
[MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1544] ©
[MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.1604] ©
[MD5.E8967FC2F24134D585821F5AC6060EA7] - (.Qualcomm Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [226944] [PID.1620] ©
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- c:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1672] ©
[MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.1700] ©
[MD5.41DDCF1ADD1FB7DE23DCF671740DDBE6] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512] [PID.1748]
[MD5.8FA3C188F04B9288B35DC7DBA9E3956D] - (.Dell Inc. - Service.) -- C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [20648] [PID.1860] ©
[MD5.09B22759E21A560DE6255596009695DF] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536] [PID.2740] ©
[MD5.0418874EFFE3498B95422781C8049D1F] - (.Dell Inc. - OTBSurvey.) -- C:\Program Files (x86)\Dell Customer Connect\OTBSurvey.exe [145288] [PID.4472] ©
[MD5.6B572F7A4BF21250BBCF7071F565C4AF] - (.Dell Inc. - Dell Data Vault Wizard.) -- C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201936] [PID.4960] ©
[MD5.44C694C2B542DB3CDAEBDB1FF3233F4D] - (.Dell Inc. - Dell Update Windows Service.) -- C:\Program Files (x86)\Dell Update\DellUpService.exe [237272] [PID.4816] ©
[MD5.777788D9B63CCEEEF2DB353BA4EDD454] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14904] [PID.4880] ©
[MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.4388] ©
[MD5.EB70DAE99D7D4F1279AC13640FC974CC] - (.SoftThinks SAS - SoftThinks Agent Service.) -- C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [1915408] [PID.4716] ©
[MD5.FD2B661335F35AC52B23488CCF2162B7] - (.Dell Inc. - Dell Data Vault Service.) -- C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2573520] [PID.4088] ©
[MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.4180] ©
[MD5.6C9C1917F2C29AFADDC3DD10F28A9F56] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [588288] [PID.4404] ©
[MD5.E9752E0CD9FB37612474B23973443FC9] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1253520] [PID.568] ©
[MD5.7ECA873688083962CA8C1504F9D03A23] - (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [129664] [PID.6376] ©
[MD5.51F358BE1583FB3246020E36DEEB3E0F] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [391128] [PID.3364] ©
[MD5.055E17395ED551AA3138967846BC3892] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [844760] [PID.4748] ©
[MD5.288DE16E0863B8E70DA2B73DAA25B76F] - (...) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe [12928] [PID.1412]
[MD5.1218C5653632440C18ECEA89D1CA4575] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [771032] [PID.488] ©
[MD5.CC8EB098AEDF4BC97D3004A182099EED] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [769496] [PID.1948] ©
[MD5.DB333A5F69B00A6B550901A5C854929F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6846096] [PID.5036] ©
[MD5.E9752E0CD9FB37612474B23973443FC9] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1253520] [PID.5300] ©
[MD5.AC4FF112191B096061FFE1FDFACE89EB] - (.Dell Inc. - QuickSet.) -- C:\Program Files\Dell\QuickSet\quickset.exe [5757328] [PID.7028] ©
[MD5.DEC0C877FC3EEAC8A7787A0D3D41FD44] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2796272] [PID.7944] ©
[MD5.53B4C9F8E8DB6ABE4051D332C340D413] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [199408] [PID.7824] ©
[MD5.724CB7A116F7E1A67009D751BCF86586] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [PID.8020] ©
[MD5.9388FBA0B9985B18B3693A32B530A16B] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [143888] [PID.5668] ©
[MD5.F916BA0DA28A4B4F7B1ADE76EB42F088] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552] [PID.2400] ©
[MD5.1E09DFA4048196C9D3CC40C485A39422] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.2224] ©
[MD5.B0621665FD4AFD5EFB57B2160A5118AA] - (.Qualcomm Atheros - BtTray.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtTray.exe [838272] [PID.7112] ©
[MD5.C0E392910782C2BB9A28C8538CC1E1A1] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240] [PID.6392] ©
[MD5.9221F67A8FC9EF9629E8E5CF0C5931B0] - (.Dell Inc. - Dell Update.) -- C:\Program Files (x86)\Dell Update\DellUpTray.exe [707800] [PID.5444] ©
[MD5.277789334263C78BD58231766AD7C015] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Wing\ZHPDiag3.exe [1923072] [PID.2000] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 1s
G2 - GCE: Preference [User Data\Default] [abdlmbodeiakfihgnkeehdeefodpjidm] pricechop =>PUP.Optional.Multiplug
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Docs
G2 - GCE: Preference [User Data\Default] [hcfiafambgalcabpdpikkchpdmmcocjl] Unofficial Gimme Bar Extension
G2 - GCE: Preference [User Data\Default] [kidhjpmgjfbkmcfpfakmdddddgfbhahj] RoboForm Lite
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 0s
M0 - MFSP: prefs.js [bro - wcysovdg.default-1441491909565] https://www.google.fr/
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll ©
P2 - FPN: [HKLM] [@microsoft.com/Lync,version=15.0] - (.Microsoft.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll ©
P2 - FPN: [HKLM] [@perfectworld.com/npArcPlayNowPlugin] - (.Perfect World Entertainment Inc.) -- C:\Program Files (x86)\Perfect World Entertainment\Arc\plugins\npArcPluginFF.dll

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (22) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Applications lancées au démarrage du système (17) - 0s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe ©
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe ©
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe ©
O4 - HKLM\..\Run: [QuickSet] . (.Dell Inc. - QuickSet.) -- c:\Program Files\Dell\QuickSet\quickset.exe ©
O4 - HKLM\..\Run: [BtPreLoad] . (...) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtPreLoad.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe ©
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe ©
O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G8] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe ©
O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe ©
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe ©
O4 - HKLM\..\Wow6432Node\Run: [SMSTray] . (.SAMSUNG ELECTRONICS - SMSTray.exe.) -- C:\Program Files (x86)\Samsung\EmoDio\SMSTray.exe ©
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ©
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe ©

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.5.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 10.5.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (21) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (23) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe ©
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe ©
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe ©
O23 - Service: Dell Customer Connect (Dell Customer Connect) . (.Dell Inc. - OTBSurvey.) - C:\Program Files (x86)\Dell Customer Connect\OTBSurvey.exe ©
O23 - Service: Dell Data Vault (DellDataVault) . (.Dell Inc. - Dell Data Vault Service.) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe ©
O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) . (.Dell Inc. - Dell Data Vault Wizard.) - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe ©
O23 - Service: Dell Digital Delivery Service (DellDigitalDelivery) . (.Dell Products, LP. - Dell Digital Delivery Windows Service.) - c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe ©
O23 - Service: Dell Update Service (DellUpdate) . (.Dell Inc. - Dell Update Windows Service.) - C:\Program Files (x86)\Dell Update\DellUpService.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.)
O23 - Service: Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: overlafayeaembedded (overlafayeaembedded) . (...) - C:\Program Files (x86)\overlafayeaembedded\overlafayeaembedded.exe (.not file.)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ©
O23 - Service: SoftThinks Agent Service (SftService) . (.SoftThinks SAS - SoftThinks Agent Service.) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe ©
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc. - Service.) - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe ©
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©
O23 - Service: Update SquirrelWeb (Update SquirrelWeb) . (...) - C:\Program Files (x86)\SquirrelWeb\updateSquirrelWeb.exe (.not file.) =>PUP.Optional.SquirrelWeb*
O23 - Service: @C:\Program Files (x86)\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (.not file.)
O23 - Service: ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe ©

---\\ Tâches planifiées en automatique (18) - 6s
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] ©
[MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.A4C43C27BE9C14280ABF3EDB5A582BE7] [APT] [AffiliatedUpdate] (...) -- C:\Users\Wing\AppData\Roaming\AffiliatedUpdate\UpdateProc\UpdateTask.exe [104448]
[MD5.00000000000000000000000000000000] [APT] [bench-sys] (...) -- C:\Program Files (x86)\Bench\Updater\updater.exe (.not file.) [0]
[MD5.13ECAC1C51CC00147BD06B5ABF142956] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [4529944] ©
[MD5.6EA9333DF6FB999A2A40B51254A5DEF6] [APT] [PCDoctorBackgroundMonitorTask] (.PC-Doctor, Inc..) -- C:\Program Files\Dell\SupportAssist\uaclauncher.exe [1216680] ©
[MD5.00000000000000000000000000000000] [APT] [Superclean] (...) -- c:\programdata\{7fa0a0e6-d3bb-c001-7fa0-0a0e6d3b839b}\hqghumeaylnlf.exe (.not file.) [0]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: AffiliatedUpdate - (...) -- C:\WINDOWS\Tasks\AffiliatedUpdate.job [302]
O39 - APT: bench-sys - (...) -- C:\WINDOWS\Tasks\bench-sys.job [358]
O39 - APT: Superclean - (...) -- C:\WINDOWS\Tasks\Superclean.job [352]
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3886] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890] ©
O39 - APT: AffiliatedUpdate - (...) -- C:\WINDOWS\System32\Tasks\AffiliatedUpdate [2640]
O39 - APT: bench-sys - (...) -- C:\WINDOWS\System32\Tasks\bench-sys [3228]
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2768] ©
O39 - APT: PCDoctorBackgroundMonitorTask - (.PC-Doctor, Inc..) -- C:\WINDOWS\System32\Tasks\PCDoctorBackgroundMonitorTask [4024] ©
O39 - APT: Superclean - (...) -- C:\WINDOWS\System32\Tasks\Superclean [3234]

---\\ Logiciels installés (79) - 17s
O42 - Logiciel: Package de pilotes Windows - PrimeSense (psdrv3) PrimeSense (05/27/2013 3. - (.PrimeSense.) [HKLM][64Bits] -- 82DD881A809E2BBEAF5399AC9F7FC5A32FAB8DA1
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner ©
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan ©
O42 - Logiciel: Dell SupportAssist - (.Dell.) [HKLM][64Bits] -- PC-Doctor for Windows ©
O42 - Logiciel: Dell Touchpad - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {306823F5-9E3B-6FEA-77B0-C9F9B725D7C4} ©
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} ©
O42 - Logiciel: Quickset64 - (.Dell Inc..) [HKLM][64Bits] -- {87CF757E-C1F1-4D22-865C-00C6950B5258} ©
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8E5B2B2D-83C0-AC50-152D-709ED18707E1} ©
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} ©
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} ©
O42 - Logiciel: OpenNI 2.2 SDK for Windows 64-bit - (.PrimeSense.) [HKLM][64Bits] -- {FBC1C4A5-9F79-4F2D-907B-B494DFC3F2B4}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR ©
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Bundled software uninstaller - (...) [HKLM][64Bits] -- bi_uninstaller
O42 - Logiciel: DMUninstaller - (...) [HKLM][64Bits] -- DMUninstaller
O42 - Logiciel: CyberLink Media Suite Essentials - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7} ©
O42 - Logiciel: EmoDio - (.SAMSUNG.) [HKLM][64Bits] -- InstallShield_{C20CE592-B0F8-4D20-BF31-0151CA6331A6} ©
O42 - Logiciel: Mes créations photo myPIX.com - (.CEWE COLOR AG u Co. OHG.) [HKLM][64Bits] -- Mes créations photo myPIX.com ©
O42 - Logiciel: MonAlbumPhoto - (.MonAlbumPhoto.) [HKLM][64Bits] -- MonAlbumPhoto_is1 ©
O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 40.0.3 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: MuseScore 1.3 - (.Werner Schweer and Others.) [HKLM][64Bits] -- MuseScore ©
O42 - Logiciel: PC_Booster - (.PremiumSoft.) [HKLM][64Bits] -- S-493389286 =>PUP.Optional.SafeWeb
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client ©
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 ©
O42 - Logiciel: Dell Backup and Recovery - (.Dell Inc..) [HKLM][64Bits] -- {0ED7EE95-6A97-47AA-AD73-152C08A15B04} ©
O42 - Logiciel: ProcessInstance - (.Software Publisher.) [HKLM][64Bits] -- {12DA0E6F-5543-440C-BAA2-28BF01070AFA}{2e183406} =>PUP.Optional.Graftor
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} ©
O42 - Logiciel: Dell WLAN and Bluetooth Client Installation - (.Dell Inc..) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} ©
O42 - Logiciel: Dell SupportAssistAgent - (.Dell.) [HKLM][64Bits] -- {287348C8-8B47-4C36-AF28-441A3B7D8722} ©
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0} ©
O42 - Logiciel: Red AdBlocker - (.Red AdBlocker.) [HKLM][64Bits] -- {37476589-E48E-439E-A706-56189E2ED4C4}_is1
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} ©
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {418BAAD1-754D-48B4-B078-46EF4F25AF42} ©
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090} ©
O42 - Logiciel: Mumble 1.2.4 - (.Thorvald Natvig.) [HKLM][64Bits] -- {4D933DC4-EA10-4CDA-99F3-7F6AE9AE491F} ©
O42 - Logiciel: PowerXpressHybrid - (.Nom de votre société.) [HKLM][64Bits] -- {51FDC2DE-0917-46B7-EAEC-5377504701DE}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: Autodesk 123D Make 1.6.0 - (.Autodesk.) [HKLM][64Bits] -- {88FF8A21-F198-43DF-A5D9-80009EB620A8} ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} ©
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} ©
O42 - Logiciel: Software Version Updater - (...) [HKLM][64Bits] -- {99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
O42 - Logiciel: Dell Backup and Recovery - Support Software - (.Dell Inc..) [HKLM][64Bits] -- {A9668246-FB70-4103-A1E3-66C9BC2EFB49} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} ©
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} ©
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} ©
O42 - Logiciel: ContentSAFER for Wizmax - (...) [HKLM][64Bits] -- {C19BE821-89B1-4A96-AC7C-873810C0CB5F}
O42 - Logiciel: EmoDio - (.SAMSUNG.) [HKLM][64Bits] -- {C20CE592-B0F8-4D20-BF31-0151CA6331A6} ©
O42 - Logiciel: CyberLink LabelPrint 2.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: Arc - (.Perfect World Entertainment.) [HKLM][64Bits] -- {CED8E25B-122A-4E80-B612-7F99B93284B3}
O42 - Logiciel: Dell Digital Delivery - (.Dell Products, LP.) [HKLM][64Bits] -- {D9ED3EFC-AB00-4CE0-ADED-80EE6B1158A7} ©
O42 - Logiciel: Dell Update - (.Dell Inc..) [HKLM][64Bits] -- {DB82968B-57A4-4397-81A5-ECAB21B5DFCD} ©
O42 - Logiciel: CyberLink PowerDVD 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} ©
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F351B64A-0B7B-41B3-9621-C81AB8FD42EB} ©
O42 - Logiciel: Dell Customer Connect - (.Dell Inc..) [HKLM][64Bits] -- {FEFDCDCF-C49C-45D0-AAF8-5345858ADEC7} ©
O42 - Logiciel: Adobe Flash Player Packages - (...) [HKCU][64Bits] -- Adobe Flash Player Packages
O42 - Logiciel: CCleaner Packages - (...) [HKCU][64Bits] -- CCleaner Packages =>Adware.InstallCore
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox ©
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7

---\\ HKCU & HKLM Software Keys (178) - 18s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AIM Toolbar
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\ATHEROS
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\Autodesk
HKLM\SOFTWARE\Wow6432Node\babylontoolbar =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Better Surf Plus =>PUP.Optional.BetterSurf
HKLM\SOFTWARE\Wow6432Node\Better-Surf =>PUP.Optional.BetterSurf
HKLM\SOFTWARE\Wow6432Node\BetterSurf =>PUP.Optional.BetterSurf
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Client
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Wow6432Node\Dell
HKLM\SOFTWARE\Wow6432Node\Dell Inc.
HKLM\SOFTWARE\Wow6432Node\DellBackupandRecovery
HKLM\SOFTWARE\Wow6432Node\Dell_Wlan
HKLM\SOFTWARE\Wow6432Node\delta-homesSoftware =>PUP.Optional.DeltaHomes
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\ExpressFiles =>PUP.Optional.ExpressFiles
HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\hdcode
HKLM\SOFTWARE\Wow6432Node\HPS
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Insyde
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MAP-DN
HKLM\SOFTWARE\Wow6432Node\MarkAny
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\MediaBuzzV1 =>PUP.Optional.MediaBuzz
HKLM\SOFTWARE\Wow6432Node\MediaBuzzV1mode974 =>PUP.Optional.MediaBuzz
HKLM\SOFTWARE\Wow6432Node\MediaPlayerV1
HKLM\SOFTWARE\Wow6432Node\MediaPlayerV1alpha332
HKLM\SOFTWARE\Wow6432Node\MediaViewerV1
HKLM\SOFTWARE\Wow6432Node\MediaViewerV1alpha1350
HKLM\SOFTWARE\Wow6432Node\MediaViewV1 =>PUP.Optional.MediaViewer
HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha6267 =>PUP.Optional.MediaViewer
HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha957 =>PUP.Optional.MediaViewer
HKLM\SOFTWARE\Wow6432Node\Mes créations photo myPIX.com
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MusicNet
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\PC-Doctor
HKLM\SOFTWARE\Wow6432Node\PC_Booster =>PUP.Optional.SafeWeb
HKLM\SOFTWARE\Wow6432Node\Perfect World Entertainment
HKLM\SOFTWARE\Wow6432Node\PicexaSvc =>PUP.Optional.Picexa
HKLM\SOFTWARE\Wow6432Node\qvo6Software =>PUP.Optional.Qvo6
HKLM\SOFTWARE\Wow6432Node\raidcall
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\SoftThinks
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\sweet-pageSoftware =>PUP.Optional.SweetPage
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\Wow6432Node\TeamSpeak 3 Client
HKLM\SOFTWARE\Wow6432Node\TrustMediaViewerV1
HKLM\SOFTWARE\Wow6432Node\TrustMediaViewerV1alpha3959
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Video Player
HKLM\SOFTWARE\Wow6432Node\VideoPlayerV3 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\Werner Schweer and Others
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\winzipersvc
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\Wpm =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\14919ea49a8f3b4aa3cf1058d9a64cec =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKLM\SOFTWARE\Wow6432Node\VolDellBackupAndRecovery
HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AffiliatedUpdate
HKCU\SOFTWARE\AnchorFree
HKCU\SOFTWARE\Ankama
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppCloudUpdater
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\BI =>PUP.Optional.MegaSearch
HKCU\SOFTWARE\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
HKCU\SOFTWARE\CeWe Color
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\EMU
HKCU\SOFTWARE\Emulators
HKCU\SOFTWARE\ExpressFiles =>PUP.Optional.ExpressFiles
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Gameo =>PUP.Optional.Gameo
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GoldenGate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Iminent =>PUP.Optional.IMBouster
HKCU\SOFTWARE\Initex
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\lollipop =>PUP.Optional.Lollipop
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MAP-DN
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Mumble
HKCU\SOFTWARE\mysearchdial.com =>PUP.Optional.MySearchDial
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\PC-Doctor
HKCU\SOFTWARE\PCSX2
HKCU\SOFTWARE\Perfect World Platform Client
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Samsung Media Studio
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Soft Lemon
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\Super Optimizer =>PUP.Optional.SuperOptimizer
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\TeamSpeak 3 Client
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Vittalia =>PUP.Optional.Vittalia
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\dealscompare-3
HKCU\SOFTWARE\AppDataLow\Software\DynConIE =>PUP.Optional.DynConIE
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\MarkAny

---\\ Contenu des dossiers Programmes (236) - 19s
O43 - CFD: 2015/09/06 23:34:22 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2013/03/13 17:53:39 - [] D -- C:\Program Files (x86)\AMD APP
O43 - CFD: 2013/03/13 17:54:00 - [] D -- C:\Program Files (x86)\AMD AVT
O43 - CFD: 2013/03/13 17:53:33 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 2015/05/07 09:35:39 - [] D -- C:\Program Files (x86)\Autodesk
O43 - CFD: 2015/09/05 03:28:38 - [] D -- C:\Program Files (x86)\Chrome to Mobile
O43 - CFD: 2015/09/06 00:31:43 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2013/03/13 18:07:12 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/02/13 12:43:30 - [] D -- C:\Program Files (x86)\Dell
O43 - CFD: 2015/09/05 03:41:26 - [] D -- C:\Program Files (x86)\Dell Backup and Recovery
O43 - CFD: 2015/06/12 14:07:33 - [] D -- C:\Program Files (x86)\Dell Customer Connect
O43 - CFD: 2013/03/13 18:01:42 - [] D -- C:\Program Files (x86)\Dell Digital Delivery
O43 - CFD: 2015/08/29 11:38:23 - [] D -- C:\Program Files (x86)\Dell Update
O43 - CFD: 2013/03/13 18:01:22 - [] D -- C:\Program Files (x86)\Dell Wireless
O43 - CFD: 2014/08/12 01:58:58 - [] D -- C:\Program Files (x86)\Duke
O43 - CFD: 2015/08/06 16:46:11 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2014/04/26 11:41:23 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/06/14 09:21:25 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/06/10 07:51:45 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/09/06 00:32:20 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2013/08/31 20:27:43 - [] D -- C:\Program Files (x86)\MarkAny
O43 - CFD: 2013/10/09 14:26:31 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2013/10/09 14:29:58 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2013/10/09 14:31:45 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2013/03/13 18:14:15 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2013/12/21 19:20:35 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2014/04/04 11:49:04 - [] D -- C:\Program Files (x86)\MonAlbumPhoto
O43 - CFD: 2015/09/06 13:29:50 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/09/07 07:33:13 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2013/12/21 18:37:24 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2013/08/26 22:18:34 - [] D -- C:\Program Files (x86)\Mumble
O43 - CFD: 2014/02/27 00:23:45 - [] D -- C:\Program Files (x86)\MuseScore
O43 - CFD: 2014/01/24 07:56:13 - [] D -- C:\Program Files (x86)\myPIX
O43 - CFD: 2014/04/26 11:41:24 - [] D -- C:\Program Files (x86)\Perfect World Entertainment
O43 - CFD: 2014/03/26 13:37:09 - [] D -- C:\Program Files (x86)\PhotoFiltre 7
O43 - CFD: 2014/10/29 11:21:52 - [] D -- C:\Program Files (x86)\Prick
O43 - CFD: 2014/10/29 14:44:24 - [] D -- C:\Program Files (x86)\Prick2
O43 - CFD: 2015/08/18 06:03:54 - [0] D -- C:\Program Files (x86)\ProcessInstance
O43 - CFD: 2013/03/13 17:51:09 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2013/12/21 18:37:25 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2013/08/31 20:26:38 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2015/08/16 20:57:15 - [] D -- C:\Program Files (x86)\TeamSpeak 3 Client
O43 - CFD: 2015/04/20 00:40:50 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2013/03/13 18:14:14 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2015/03/12 03:53:40 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/03/12 03:53:40 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/03/12 03:53:40 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/03/12 03:53:40 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/03/12 03:53:40 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/12/21 19:20:37 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2013/09/08 13:28:06 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2015/09/06 01:03:50 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 2014/12/29 21:47:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Abyssia
O43 - CFD: 2015/03/12 03:55:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/04/20 00:40:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/12 03:55:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/12/21 19:20:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros Smart Net
O43 - CFD: 2015/05/07 09:35:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
O43 - CFD: 2013/12/21 19:20:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
O43 - CFD: 2013/12/21 19:23:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 2013/12/21 19:23:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
O43 - CFD: 2015/08/29 11:38:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
O43 - CFD: 2013/12/21 19:23:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Backup and Recovery
O43 - CFD: 2014/05/12 22:40:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
O43 - CFD: 2013/12/21 19:20:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HotSpot
O43 - CFD: 2013/12/21 19:23:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/09/06 00:32:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/06/08 07:45:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
O43 - CFD: 2014/01/24 08:03:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mes créations photo myPIX.com
O43 - CFD: 2013/12/23 17:48:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2014/04/04 11:48:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MonAlbumPhoto
O43 - CFD: 2013/12/21 19:20:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
O43 - CFD: 2014/02/27 00:23:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MuseScore
O43 - CFD: 2015/04/30 09:54:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenNI 64-bit 2
O43 - CFD: 2014/04/26 11:41:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment
O43 - CFD: 2014/03/26 13:37:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 2014/07/22 21:49:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RaidCall
O43 - CFD: 2013/12/21 19:20:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 2014/06/08 07:45:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/03/12 03:55:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/11/14 09:16:50 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2013/12/21 19:23:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/09/06 01:03:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2015/04/19 00:05:08 - [] D -- C:\ProgramData\12765799243944435558UL
O43 - CFD: 2014/09/19 17:02:19 - [0] D -- C:\ProgramData\374311380
O43 - CFD: 2015/01/15 15:28:09 - [0] D -- C:\ProgramData\7isave
O43 - CFD: 2015/09/05 03:06:02 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/01/28 21:22:54 - [] D -- C:\ProgramData\Ads Remover
O43 - CFD: 2014/04/04 11:50:46 - [] D -- C:\ProgramData\albumphoto
O43 - CFD: 2015/05/07 09:35:57 - [0] D -- C:\ProgramData\Alias
O43 - CFD: 2013/03/13 17:54:00 - [] D -- C:\ProgramData\AMD
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/01/06 21:13:02 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 2013/08/26 11:21:36 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2015/06/12 20:45:41 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2013/08/26 11:07:49 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/03/13 18:02:43 - [] D -- C:\ProgramData\CLSK
O43 - CFD: 2015/01/15 15:28:09 - [0] D -- C:\ProgramData\copuunK
O43 - CFD: 2013/10/10 23:32:43 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2013/10/09 14:22:48 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2015/06/14 09:16:51 - [] D -- C:\ProgramData\Dell
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/01/24 08:10:01 - [] D -- C:\ProgramData\hps
O43 - CFD: 2013/09/07 10:47:50 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 2013/03/13 18:07:10 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 2013/03/13 17:50:58 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2014/10/29 11:03:01 - [] D -- C:\ProgramData\Logs
O43 - CFD: 2013/11/14 09:33:15 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2014/06/08 07:45:54 - [] D -- C:\ProgramData\McAfee Security Scan
O43 - CFD: 2013/08/26 11:07:49 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/04/20 00:40:54 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/10/09 14:42:28 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2013/08/26 11:07:49 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/09/06 13:29:10 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/09/06 00:32:40 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/05/07 09:34:55 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/06/23 12:18:01 - [] D -- C:\ProgramData\PC-Doctor for Windows
O43 - CFD: 2015/09/05 03:06:12 - [] D -- C:\ProgramData\PCDr
O43 - CFD: 2013/12/21 19:20:43 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2015/03/12 03:53:39 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2013/11/14 21:43:51 - [] D -- C:\ProgramData\softthinks
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/09/03 17:22:36 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/06/23 16:55:53 - [] D -- C:\ProgramData\SupportAssistAgent
O43 - CFD: 2015/01/15 15:28:09 - [0] D -- C:\ProgramData\teaKeshope
O43 - CFD: 2014/10/29 11:02:57 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2014/01/24 08:04:50 - [] D -- C:\ProgramData\tmp
O43 - CFD: 2015/05/19 14:10:21 - [] D -- C:\ProgramData\{43517261-17bb-fc14-4351-1726117bc984}
O43 - CFD: 2015/09/06 01:30:15 - [] D -- C:\ProgramData\{7fa0a0e6-d3bb-c001-7fa0-0a0e6d3b839b}
O43 - CFD: 2015/06/23 16:58:04 - [] HDC -- C:\ProgramData\{8AF32939-989B-460A-8726-CA2C776032A1}
O43 - CFD: 2015/09/06 23:34:26 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/09/05 03:28:38 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2013/03/13 17:58:24 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 2013/03/13 17:54:00 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 2014/09/13 16:40:17 - [] D -- C:\Program Files (x86)\Common Files\Config
O43 - CFD: 2013/03/13 18:03:36 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2013/10/09 14:32:26 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2015/05/07 09:35:09 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2013/03/13 17:53:58 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2013/03/13 17:58:11 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 2015/09/06 00:31:43 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2013/12/21 19:20:33 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2013/03/13 17:50:37 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2013/03/13 17:59:11 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/03/12 03:53:39 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2013/03/13 18:13:14 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2015/07/01 19:00:53 - [] D -- C:\Users\Wing\AppData\Roaming\Adobe
O43 - CFD: 2013/10/04 00:18:00 - [] D -- C:\Users\Wing\AppData\Roaming\AffiliatedUpdate
O43 - CFD: 2014/12/27 15:45:48 - [] D -- C:\Users\Wing\AppData\Roaming\AnkamaCertificates
O43 - CFD: 2014/12/27 15:44:47 - [] D -- C:\Users\Wing\AppData\Roaming\app
O43 - CFD: 2015/09/05 03:28:50 - [] D -- C:\Users\Wing\AppData\Roaming\Arc
O43 - CFD: 2014/12/29 03:39:28 - [] D -- C:\Users\Wing\AppData\Roaming\ArkalysGame
O43 - CFD: 2013/08/26 11:21:04 - [] D -- C:\Users\Wing\AppData\Roaming\Atheros
O43 - CFD: 2013/08/26 11:21:36 - [] D -- C:\Users\Wing\AppData\Roaming\ATI
O43 - CFD: 2015/05/07 09:36:51 - [] D -- C:\Users\Wing\AppData\Roaming\Autodesk
O43 - CFD: 2015/08/31 19:36:21 - [] D -- C:\Users\Wing\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
O43 - CFD: 2013/10/09 17:19:10 - [] D -- C:\Users\Wing\AppData\Roaming\CyberLink
O43 - CFD: 2015/01/01 12:20:01 - [] D -- C:\Users\Wing\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2013/09/07 10:58:04 - [0] D -- C:\Users\Wing\AppData\Roaming\DMCache
O43 - CFD: 2014/12/28 03:05:21 - [] D -- C:\Users\Wing\AppData\Roaming\DofusTesting
O43 - CFD: 2014/12/27 15:44:49 - [] D -- C:\Users\Wing\AppData\Roaming\DofusTesting-2
O43 - CFD: 2014/04/24 07:42:03 - [] D -- C:\Users\Wing\AppData\Roaming\Dropbox
O43 - CFD: 2014/11/21 13:13:47 - [] HD -- C:\Users\Wing\AppData\Roaming\GoldenGate
O43 - CFD: 2013/12/21 19:45:50 - [] D -- C:\Users\Wing\AppData\Roaming\Identities
O43 - CFD: 2013/08/26 11:22:15 - [] D -- C:\Users\Wing\AppData\Roaming\Intel Corporation
O43 - CFD: 2013/08/26 11:17:47 - [] D -- C:\Users\Wing\AppData\Roaming\Leadertech
O43 - CFD: 2013/08/26 11:34:20 - [] D -- C:\Users\Wing\AppData\Roaming\Macromedia
O43 - CFD: 2015/06/10 11:09:39 - [] SD -- C:\Users\Wing\AppData\Roaming\Microsoft
O43 - CFD: 2013/09/17 11:01:48 - [] D -- C:\Users\Wing\AppData\Roaming\Mozilla
O43 - CFD: 2015/05/02 02:05:01 - [] D -- C:\Users\Wing\AppData\Roaming\Mumble
O43 - CFD: 2014/02/27 00:24:50 - [] D -- C:\Users\Wing\AppData\Roaming\MusE
O43 - CFD: 2014/07/16 19:15:54 - [] D -- C:\Users\Wing\AppData\Roaming\PCDr
O43 - CFD: 2015/09/05 03:28:52 - [] D -- C:\Users\Wing\AppData\Roaming\PhotoFiltre 7
O43 - CFD: 2013/09/24 22:16:46 - [] D -- C:\Users\Wing\AppData\Roaming\raidcall
O43 - CFD: 2014/12/27 15:44:50 - [] D -- C:\Users\Wing\AppData\Roaming\Reg
O43 - CFD: 2014/12/27 15:44:47 - [] D -- C:\Users\Wing\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 2015/09/05 03:28:21 - [] D -- C:\Users\Wing\AppData\Roaming\Skype
O43 - CFD: 2015/09/03 20:29:48 - [] D -- C:\Users\Wing\AppData\Roaming\Sun
O43 - CFD: 2015/09/05 18:56:08 - [] D -- C:\Users\Wing\AppData\Roaming\TS3Client
O43 - CFD: 2015/09/08 07:16:57 - [0] D -- C:\Users\Wing\AppData\Roaming\uTorrent
O43 - CFD: 2013/10/11 00:16:13 - [] D -- C:\Users\Wing\AppData\Roaming\WebApp
O43 - CFD: 2013/09/08 13:28:34 - [] D -- C:\Users\Wing\AppData\Roaming\WinRAR
O43 - CFD: 2014/12/31 16:02:20 - [0] D -- C:\Users\Wing\AppData\Roaming\WinZipper
O43 - CFD: 2013/09/07 12:13:16 - [] D -- C:\Users\Wing\AppData\Roaming\Your Freedom
O43 - CFD: 2015/09/08 07:20:13 - [] D -- C:\Users\Wing\AppData\Roaming\ZHP
O43 - CFD: 2015/09/06 01:30:15 - [] D -- C:\Users\Wing\AppData\Local\30534
O43 - CFD: 2015/09/06 23:36:21 - [] D -- C:\Users\Wing\AppData\Local\Adobe
O43 - CFD: 2015/01/18 21:56:42 - [0] D -- C:\Users\Wing\AppData\Local\Ankama
O43 - CFD: 2013/12/21 19:14:28 - [0] SHD -- C:\Users\Wing\AppData\Local\Application Data
O43 - CFD: 2013/08/26 11:21:36 - [] D -- C:\Users\Wing\AppData\Local\ATI
O43 - CFD: 2013/08/26 11:21:25 - [] D -- C:\Users\Wing\AppData\Local\BMExplorer
O43 - CFD: 2013/12/22 18:43:48 - [] D -- C:\Users\Wing\AppData\Local\cache
O43 - CFD: 2015/08/04 01:06:11 - [] D -- C:\Users\Wing\AppData\Local\CEF
O43 - CFD: 2014/08/28 16:37:21 - [] D -- C:\Users\Wing\AppData\Local\Comodo
O43 - CFD: 2013/12/22 18:45:21 - [0] D -- C:\Users\Wing\AppData\Local\CrashDumps
O43 - CFD: 2015/08/04 01:36:31 - [] D -- C:\Users\Wing\AppData\Local\Cyberlink
O43 - CFD: 2015/06/26 14:17:12 - [0] D -- C:\Users\Wing\AppData\Local\Diagnostics
O43 - CFD: 2015/06/26 14:17:12 - [0] D -- C:\Users\Wing\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/08/16 10:42:02 - [0] SHD -- C:\Users\Wing\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/08/16 10:42:02 - [0] SHD -- C:\Users\Wing\AppData\Local\EmieSiteList
O43 - CFD: 2015/08/16 10:42:02 - [0] SHD -- C:\Users\Wing\AppData\Local\EmieUserList
O43 - CFD: 2014/12/10 17:12:42 - [] D -- C:\Users\Wing\AppData\Local\EMU
O43 - CFD: 2014/05/12 22:40:08 - [] D -- C:\Users\Wing\AppData\Local\Google
O43 - CFD: 2015/06/03 12:47:19 - [] D -- C:\Users\Wing\AppData\Local\GWX
O43 - CFD: 2013/12/21 19:14:28 - [0] SHD -- C:\Users\Wing\AppData\Local\Historique
O43 - CFD: 2013/09/03 10:43:10 - [] D -- C:\Users\Wing\AppData\Local\Macromedia
O43 - CFD: 2015/09/06 23:15:09 - [] D -- C:\Users\Wing\AppData\Local\Microsoft
O43 - CFD: 2014/01/08 02:23:51 - [] D -- C:\Users\Wing\AppData\Local\Microsoft Help
O43 - CFD: 2013/10/01 18:08:58 - [] D -- C:\Users\Wing\AppData\Local\Mozilla
O43 - CFD: 2014/02/27 00:24:48 - [] D -- C:\Users\Wing\AppData\Local\MusE
O43 - CFD: 2015/09/07 01:24:03 - [] D -- C:\Users\Wing\AppData\Local\Packages
O43 - CFD: 2013/08/26 11:21:11 - [] D -- C:\Users\Wing\AppData\Local\Power2Go8
O43 - CFD: 2013/10/09 14:23:05 - [] D -- C:\Users\Wing\AppData\Local\Programs
O43 - CFD: 2015/08/31 22:20:18 - [] D -- C:\Users\Wing\AppData\Local\Skype
O43 - CFD: 2013/11/08 18:34:03 - [0] D -- C:\Users\Wing\AppData\Local\softthinks
O43 - CFD: 2015/09/08 07:20:01 - [] D -- C:\Users\Wing\AppData\Local\Temp
O43 - CFD: 2013/12/21 19:14:28 - [0] SHD -- C:\Users\Wing\AppData\Local\Temporary Internet Files
O43 - CFD: 2013/09/03 20:41:35 - [] D -- C:\Users\Wing\AppData\Local\VirtualStore
O43 - CFD: 2013/09/07 12:04:52 - [] D -- C:\Users\Wing\AppData\Local\Your Freedom
O43 - CFD: 2015/09/03 20:32:21 - [] D -- C:\Users\Wing\AppData\Local\YSearchUtil
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/12 12:09:06 - [] RD -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/09/08 02:17:27 - [] RD -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
O43 - CFD: 2014/01/09 11:16:19 - [] D -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/03/26 13:37:09 - [0] D -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 2015/05/19 14:10:20 - [] RD -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/12/21 19:15:47 - [] RD -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/12/21 19:23:26 - [] D -- C:\Users\Wing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Liste des pilotes du système (62) - 8s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] ©
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] ©
O58 - SDL:2013/12/13 11:23:16 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [36096] ©
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] ©
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] ©
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] ©
O58 - SDL:2013/06/18 16:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256] ©
O58 - SDL:2013/12/13 11:23:36 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [13207552] ©
O58 - SDL:2013/12/13 11:23:36 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [626176] ©
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2012/12/28 14:19:34 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\WINDOWS\System32\drivers\btath_a2dp.sys [345832] ©
O58 - SDL:2012/12/28 14:19:36 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\WINDOWS\System32\drivers\btath_avdt.sys [115432] ©
O58 - SDL:2012/12/28 14:19:36 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_flt.sys [89320] ©
O58 - SDL:2012/12/28 14:19:38 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\WINDOWS\System32\drivers\btath_hcrp.sys [179432] ©
O58 - SDL:2012/12/28 14:19:38 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\WINDOWS\System32\drivers\btath_lwflt.sys [77464] ©
O58 - SDL:2012/12/28 14:19:40 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\WINDOWS\System32\drivers\btath_rcp.sys [136424] ©
O58 - SDL:2014/04/28 06:33:30 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240] ©
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2012/06/25 11:24:50 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [92536] ©
O58 - SDL:2013/09/04 22:59:53 A . (.Connectify - NDISRD helper driver.) -- C:\WINDOWS\System32\drivers\cnnctfy3.sys [34840]
O58 - SDL:2015/01/31 00:36:11 A . (.Dell Computer Corporation - DDDriver.sys.) -- C:\WINDOWS\System32\drivers\DDDriver64Dcsa.sys [23760] ©
O58 - SDL:2015/05/22 18:41:57 A . (.Dell Computer Corporation - DellProf.sys.) -- C:\WINDOWS\System32\drivers\DellProf.sys [24240] ©
O58 - SDL:2013/01/25 04:12:08 A . (.OSR Open Systems Resources, Inc. - Airplane Mode Switch Driver.) -- C:\WINDOWS\System32\drivers\DellRbtn.sys [10752]
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] ©
O58 - SDL:2012/07/03 01:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] ©
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] ©
O58 - SDL:2012/12/05 01:50:56 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [652344] ©
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2013/10/04 00:42:44 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4185600] ©
O58 - SDL:2012/06/19 17:40:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] ©
O58 - SDL:2013/09/26 11:08:22 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [39320] ©
O58 - SDL:2013/09/26 11:08:22 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] ©
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] ©
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] ©
O58 - SDL:2013/05/29 10:24:20 A . (.Prime Sense Ltd. - Prime Sensor Device Driver v3.0.) -- C:\WINDOWS\System32\drivers\psdrv3.sys [24968]
O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] ©
O58 - SDL:2012/11/28 07:52:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4222096] ©
O58 - SDL:2012/06/15 10:50:46 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUVStor.sys [315536] ©
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2012/12/21 09:24:00 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [28040] ©
O58 - SDL:2013/11/22 15:36:52 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [31472] ©
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2013/11/22 15:36:52 A . (.Synaptics Incorporated - Synaptics Touchpad 64-bit Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [540912] ©
O58 - SDL:2013/08/22 14:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [40664] ©
O58 - SDL:2013/08/13 01:10:24 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42184] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2012/12/16 20:21:30 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\athw8x.sys [3735040] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 43s
O61 - LFC: 2015/08/31 19:34:55 A . (..) -- C:\Users\Wing\Downloads\AdobeDownloadAssistant-CC.exe [2588472]
O61 - LFC: 2015/09/08 02:17:17 A . (..) -- C:\Users\Wing\AppData\Local\ATI\ACE\Manifest.Bin [28015]
O61 - LFC: 2015/09/06 23:36:54 A . (..) -- C:\Users\Wing\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [84279]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (1) - 7s
O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (34) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1084416] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [225280] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [521728] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3678720] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] ©

---\\ Liste des exceptions du parefeu Windows (12) - 3s
O87 - FAEL: "UDP Query User{9BC0389C-2E7D-4BA3-A879-E5838EAFDB13}C:\users\wing\downloads\utorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\wing\downloads\utorrent.exe
O87 - FAEL: "TCP Query User{2E061399-5AEB-4472-851E-12483029E917}C:\users\wing\downloads\utorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\wing\downloads\utorrent.exe
O87 - FAEL: "{D4F6CAAC-69F6-425A-970E-A05EF4EFB828}" [In-None-P17-TRUE] .(...) -- C:\Users\Wing\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{52086EF3-3C8A-455F-8878-7349690F7916}" [In-None-P6-TRUE] .(...) -- C:\Users\Wing\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "TCP Query User{13E0D854-384F-42E5-80A5-3622B54FAC86}C:\users\wing\downloads\utorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\wing\downloads\utorrent.exe
O87 - FAEL: "UDP Query User{509958CB-7534-4338-A2BD-7D50786624BE}C:\users\wing\downloads\utorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\users\wing\downloads\utorrent.exe
O87 - FAEL: "{468E1790-D909-4538-BA31-2ACFB2391EB6}" [In-None-P6-TRUE] .(...) -- C:\Users\Wing\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{1CF03108-88E1-4B49-A73C-02D877989CE0}" [In-None-P17-TRUE] .(...) -- C:\Users\Wing\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "TCP Query User{9A63D50D-BF28-42C9-94FB-DB9D77029C17}C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P6-TRUE] .(...) -- C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe (.not file.)
O87 - FAEL: "UDP Query User{9CC1E4DB-DEC1-4954-8A40-E479B4BF14C5}C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P17-TRUE] .(...) -- C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe (.not file.)
O87 - FAEL: "TCP Query User{FEE5863D-38F0-476E-97EA-104E7E0FEB46}C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P6-TRUE] .(...) -- C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe (.not file.)
O87 - FAEL: "UDP Query User{27F7BE67-C5F4-4CA7-A741-967F4E3E4DF9}C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P17-TRUE] .(...) -- C:\users\wing\appdata\local\popcorn time\node-webkit\popcorn time.exe (.not file.)

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (25) - 34s

SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [2015/08/15 03:50:52] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2009/11/18 04:14:26] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe ©
SR - Auto [2013/12/13 11:23:32] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\system32\atiesrxx.exe ©
SS - Demand [2015/07/23 16:21:58] [ 88400] Arc Service (ArcService) . (.Perfect World Entertainment Inc.) - C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe
SR - Auto [2012/12/28 14:41:58] [ 226944] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations.) - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe ©
SS - Demand [2013/10/04 00:43:02] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe ©
SR - Auto [2015/04/09 08:38:26] [ 145288] Dell Customer Connect (Dell Customer Connect) . (.Dell Inc..) - C:\Program Files (x86)\Dell Customer Connect\OTBSurvey.exe ©
SR - Auto [2015/05/22 18:44:25] [ 2573520] Dell Data Vault (DellDataVault) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe ©
SR - Auto [2015/05/22 18:45:36] [ 201936] Dell Data Vault Wizard (DellDataVaultWiz) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe ©
SS - Auto [2012/06/19 15:33:06] [ 173056] Dell Digital Delivery Service (DellDigitalDelivery) . (.Dell Products, LP..) - c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe ©
SR - Auto [2015/08/27 13:13:44] [ 237272] Dell Update Service (DellUpdate) . (.Dell Inc..) - C:\Program Files (x86)\Dell Update\DellUpService.exe ©
SR - Auto [2012/11/19 13:15:20] [ 14904] Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
SR - Auto [2012/04/20 15:16:12] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SR - Auto [2012/07/18 03:10:16] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [2012/07/18 03:10:30] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Demand [2014/04/09 15:13:48] [ 289256] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe ©
SS - Demand [2015/09/06 13:29:39] [ 149160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SR - Auto [2012/04/25 04:43:48] [ 254512] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
SR - Auto [2012/11/23 23:49:18] [ 201872] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ©
SR - Auto [2013/10/10 06:21:24] [ 1915408] SoftThinks Agent Service (SftService) . (.SoftThinks SAS.) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe ©
SR - Auto [2015/06/11 13:15:34] [ 20648] Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc..) - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe ©
SR - Auto [2012/07/18 03:10:32] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©
SR - Auto [2012/12/26 02:41:44] [ 81536] ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros.) - C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe ©

---\\ Recherche de clés de registre Tracing (4) - 3s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SnapDo_RASAPI32 =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SnapDo_RASMANCS =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseSmart_RASAPI32 =>PUP.Optional.BrowseSmart
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseSmart_RASMANCS =>PUP.Optional.BrowseSmart

---\\ Scan Additionnel (66) - 0s
C:\Users\Wing\AppData\Local\Google\Chrome\User Data\Default\Extensions\abdlmbodeiakfihgnkeehdeefodpjidm
HKLM\SYSTEM\CurrentControlSet\Services\Update SquirrelWeb =>PUP.Optional.SquirrelWeb*
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\S-493389286 =>PUP.Optional.SafeWeb
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{2e183406} =>PUP.Optional.Graftor
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner Packages =>Adware.InstallCore
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\babylontoolbar =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Better Surf Plus =>PUP.Optional.BetterSurf
HKLM\SOFTWARE\Wow6432Node\Better-Surf =>PUP.Optional.BetterSurf
HKLM\SOFTWARE\Wow6432Node\BetterSurf =>PUP.Optional.BetterSurf
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Wow6432Node\delta-homesSoftware =>PUP.Optional.DeltaHomes
HKLM\SOFTWARE\Wow6432Node\ExpressFiles =>PUP.Optional.ExpressFiles
HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\MediaBuzzV1 =>PUP.Optional.MediaBuzz
HKLM\SOFTWARE\Wow6432Node\MediaBuzzV1mode974 =>PUP.Optional.MediaBuzz
HKLM\SOFTWARE\Wow6432Node\MediaViewV1 =>PUP.Optional.MediaViewer
HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha6267 =>PUP.Optional.MediaViewer
HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha957 =>PUP.Optional.MediaViewer
HKLM\SOFTWARE\Wow6432Node\PC_Booster =>PUP.Optional.SafeWeb
HKLM\SOFTWARE\Wow6432Node\PicexaSvc =>PUP.Optional.Picexa
HKLM\SOFTWARE\Wow6432Node\qvo6Software =>PUP.Optional.Qvo6
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\sweet-pageSoftware =>PUP.Optional.SweetPage
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\VideoPlayerV3 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\Wpm =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\14919ea49a8f3b4aa3cf1058d9a64cec =>PUP.Optional.CrossRider
HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\BI =>PUP.Optional.MegaSearch
HKCU\SOFTWARE\BonanzaDealsLive =>PUP.Optional.BonanzaDeals
HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKCU\SOFTWARE\ExpressFiles =>PUP.Optional.ExpressFiles
HKCU\SOFTWARE\Gameo =>PUP.Optional.Gameo
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\Iminent =>PUP.Optional.IMBouster
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\lollipop =>PUP.Optional.Lollipop
HKCU\SOFTWARE\mysearchdial.com =>PUP.Optional.MySearchDial
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\Super Optimizer =>PUP.Optional.SuperOptimizer
HKCU\SOFTWARE\Systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Vittalia =>PUP.Optional.Vittalia
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\DynConIE =>PUP.Optional.DynConIE
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SnapDo_RASAPI32 =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SnapDo_RASMANCS =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseSmart_RASAPI32 =>PUP.Optional.BrowseSmart
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseSmart_RASMANCS =>PUP.Optional.BrowseSmart

---\\ Récapitulatif des éléments trouvées sur votre station (45) - 0s
http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/blog =>PUP.Optional.SquirrelWeb*
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/pup-safeweb/ =>PUP.Optional.SafeWeb
http://www.nicolascoolman.fr/blog =>PUP.Optional.Graftor
http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore
http://www.nicolascoolman.fr/blog =>Toolbar.AskBar
http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/pup-bettersurf/ =>PUP.Optional.BetterSurf
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/pup-datamngr/ =>PUP.Optional.Datamngr
http://www.nicolascoolman.fr/blog =>PUP.Optional.DeltaHomes
http://www.nicolascoolman.fr/adware-expressfiles/ =>PUP.Optional.ExpressFiles
http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBouster
http://www.nicolascoolman.fr/pup-mediabuzz/ =>PUP.Optional.MediaBuzz
http://www.nicolascoolman.fr/blog =>PUP.Optional.MediaViewer
http://www.nicolascoolman.fr/blog =>PUP.Optional.Picexa
http://www.nicolascoolman.fr/hijacker-qvo6/ =>PUP.Optional.Qvo6
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/pup-sweetpage/ =>PUP.Optional.SweetPage
http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak
http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/pup-1clickdownloader/ =>PUP.Optional.1ClickDownloader
http://www.nicolascoolman.fr/adware-megasearch/ =>PUP.Optional.MegaSearch
http://www.nicolascoolman.fr/adware-bonanzadeals/ =>PUP.Optional.BonanzaDeals
http://www.nicolascoolman.fr/blog =>PUP.Optional.Gameo
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch
http://www.nicolascoolman.fr/adware-lollipop/ =>PUP.Optional.Lollipop
http://www.nicolascoolman.fr/blog =>PUP.Optional.MySearchDial
http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic
http://www.nicolascoolman.fr/blog =>PUP.Optional.SuperOptimizer
http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork
http://www.nicolascoolman.fr/pup-vittalia/ =>PUP.Optional.Vittalia
http://www.nicolascoolman.fr/blog =>PUP.Optional.DynConIE
http://www.nicolascoolman.fr/pup-browsesmart/ =>PUP.Optional.BrowseSmart

~ End of the scan, 31913 items in 210 seconds (1026)(0)()

Publicité


Signaler le contenu de ce document

Publicité