cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.9.14.141 Par Nicolas Coolman (2015/09/12)
~ Démarré par louna (Administrator) (2015/09/16 17:07:56)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\louna\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\louna\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v11.0.9600.18015

---\\ Informations sur les produits Windows (10) - 1s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 2BT4J
Windows License : OK
~ Windows Remaining Initializations Number : 4

---\\ Logiciels de protection (4) - 8s
Avast Free Antivirus v10.3.2225
Microsoft Security Client v4.8.0204.0
Microsoft Security Essentials v4.8.204.0
Windows Defender W7 (Deactivate)

---\\ Logiciels d'optimisation (1) - 11s
CCleaner v4.06

---\\ Surveillance de Logiciels (2) - 11s
Adobe Flash Player 18 ActiveX
Adobe Reader 9.1 - Français

---\\ Informations sur le système (7) - 1s
~ Operating System: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3985.972 MB (27% free)
~ System Restore: Activé (Enable)
~ System drive C: has 94 GB free of 183 GB
Total RAM: 3985.972 MB (28% free)

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: LOUNA-PC
~ User Name: louna
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 94 GB free of 183 GB (System)
~ Drive D: has 237 GB free of 273 GB
~ Drive F: has 3 GB free of 3 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 4s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\windows\Explorer.exe [2871808] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\windows\System32\Wininit.exe [129024] ©
[MD5.A55305B1CACD38EAC176CC532B2053AC] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\windows\System32\wininet.dll [2427392] ©
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\windows\System32\Winlogon.exe [455168] ©
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\windows\System32\sppcomapi.dll [232448] ©
[MD5.492D07D79E7024CA310867B526D9636D] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\windows\System32\dnsapi.dll [357888] ©
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\windows\Syswow64\dnsapi.dll [270336] ©
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\windows\System32\drivers\AFD.sys [497152] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\windows\System32\drivers\DfsC.sys [102400] ©
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\windows\System32\drivers\IpNat.sys [116224] ©
[MD5.43E1F4B0EFDC244D2A83995CCD7846F7] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\windows\System32\drivers\MRxSmb.sys [159232] ©
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\windows\System32\drivers\netBT.sys [261632] ©
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\windows\System32\drivers\ntfs.sys [1684928] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\windows\System32\drivers\Parport.sys [97280] ©
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\windows\System32\drivers\Rasl2tp.sys [129536] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\windows\System32\drivers\smb.sys [93184] ©
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\windows\System32\drivers\tdx.sys [119296] ©
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\windows\System32\drivers\volsnap.sys [295808] ©

---\\ Processus lancés (18) - 4s
[MD5.1E1FDBB3DF6EAE61984AEBC213271175] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9644576] [PID.2088] ©
[MD5.61FDCB360C500610C6EC372CD7A4F512] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2074408] [PID.2128] ©
[MD5.E3B83A43E60DF321644450188966CC2C] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [386584] [PID.2176] ©
[MD5.77645F69474E1892FEE1612E9D013E09] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [415256] [PID.2284] ©
[MD5.B9AF30E8BFF1C81BD2F91F91687CEFE3] - (...) -- C:\Users\louna\AppData\Roaming\cacaoweb\cacaoweb.exe [535856] [PID.2756] =>PUP.Optional.CacaoWeb
[MD5.983FABFCA997CCACEF61F3A7BE9EACDD] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [53725200] [PID.2084] ©
[MD5.4D83DC461F8F4370274CF6E9AC9A34F4] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.4124] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.1708] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.4384] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.4308] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.4420] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.1076] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.5860] ©
[MD5.018B44D6E41ABDD08403E6B9EC3575B3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\louna\Downloads\ZHPDiag3.exe [1929728] [PID.6664] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.4300] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.5492] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.6060] ©
[MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe [815944] [PID.828] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 1s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr/
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [leahdjjpjmnamomgpojikeapflgbmjab] cacaoweb =>PUP.Optional.CacaoWeb
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [onhbegdkgonhlokobjefolhpoidcnida] onhbegdkgonhlokobjefolhpoidcnida

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll ©
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll ©
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.2] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (22) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.helperbar.com/ =>PUP.Optional.HelperBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.helperbar.com/ =>PUP.Optional.HelperBar
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com/ =>PUP.Optional.HelperBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com/ =>PUP.Optional.HelperBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://feed.helperbar.com/ =>PUP.Optional.HelperBar
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (6) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:49423;https=127.0.0.1:49423 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Etude du fichier hosts (1) - 1s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (4) - 0s
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll ©
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll ©
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll ©
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL ©

---\\ Internet Explorer, Barre d'outil (3) - 1s
O3 - Toolbar: 0x5BC3E6EE1861DC119C72001320C79847 - [HKCU]{EEE6C35B-6118-11DC-9C72-001320C79847} . (...) -- (.not file.)
O3 - Toolbar: 0xCCE97A9783AFE8459E03E2798216E2D5 - [HKCU]{977AE9CC-AF83-45E8-9E03-E2798216E2D5} . (...) -- (.not file.)
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (22) - 1s
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ©
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\windows\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe ©
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe ©
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\louna\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\louna\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\louna\AppData\Local\Google\Update\GoogleUpdate.exe ©
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe ©
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\windows\System32\SPReview\SPReview.exe ©
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\windows\System32\SPReview\SPReview.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-1972273453-3807663751-171534141-1001\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\louna\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKUS\S-1-5-21-1972273453-3807663751-171534141-1001\..\Run: [cacaoweb] . (...) -- C:\Users\louna\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O4 - HKUS\S-1-5-21-1972273453-3807663751-171534141-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\louna\AppData\Local\Google\Update\GoogleUpdate.exe ©
O4 - HKUS\S-1-5-21-1972273453-3807663751-171534141-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©

---\\ Modification Domaine/Adresses DNS (9) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = mshome.net
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = mshome.net
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = mshome.net

---\\ Protocole additionnel (22) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL ©

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (.Skytech Co., Ltd. - Skytech.) - C:\Program Files (x86)\SupTab\SearchProtect64.dll =>PUP.Optional.SearchProtect

---\\ Liste des services NT non Microsoft et non désactivés (4) - 2s
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe =>PUP.Optional.GlobalUpdate
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©

---\\ Tâches planifiées en automatique (64) - 4s
[MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.167F9E5AF87B57763DAAA27D3144C2A0] [APT] [advSRS4] (.SEC.) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2201192] ©
[MD5.76F586CEF7018BD376CBBD74AEAC93F5] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1373872] ©
[MD5.2FA49064294A3CF40B4C3EFA0B36ADEE] [APT] [BatteryLifeExtender] (.Samsung Electronics. Co. Ltd..) -- C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [6644736]
[MD5.22621F4BC16C5C47E76E40F251F0CC79] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3905304] ©
[MD5.BBEA6EA8E1845F5EDD2A7E9A6C09FB0B] [APT] [EasyBatteryManager] (.SAMSUNG Electronics co., LTD..) -- C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [342016] ©
[MD5.326691EA3A6B5576A9DEFEF47AA6C327] [APT] [EasyDisplayMgr] (.Samsung Electronics Co., Ltd..) -- C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe [847360] ©
[MD5.E3735DC796E5183D63F35921B058934C] [APT] [EasySpeedUpManager] (.Samsung Electronics Co., Ltd..) -- C:\Program Files (x86)\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe [716800] ©
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core] (.Facebook Inc..) -- C:\Users\louna\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] ©
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA] (.Facebook Inc..) -- C:\Users\louna\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] ©
[MD5.D858BA2EE718B1DB1CED20646E641D08] [APT] [globalUpdateUpdateTaskMachineCore] (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608] =>PUP.Optional.GlobalUpdate
[MD5.D858BA2EE718B1DB1CED20646E641D08] [APT] [globalUpdateUpdateTaskMachineUA] (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608] =>PUP.Optional.GlobalUpdate
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineCore] (...) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.BE99918C2211431C6424EFFD087FD9C7] [APT] [GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core] (.Google Inc..) -- C:\Users\louna\AppData\Local\Google\Update\GoogleUpdate.exe [107848] ©
[MD5.BE99918C2211431C6424EFFD087FD9C7] [APT] [GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA] (.Google Inc..) -- C:\Users\louna\AppData\Local\Google\Update\GoogleUpdate.exe [107848] ©
[MD5.BCE8BE4DBEC02ED62D331EB1EBDAD06B] [APT] [HP Deskjet 3050 J610 series.exe] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HP Deskjet 3050 J610 series.exe [733032] ©
[MD5.B4725170B546863C09583E40E6E7BCED] [APT] [HPCustParticipation HP Deskjet 3050 J610 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPCustPartic.exe [3689320] ©
[MD5.C7AC5B01552870771BB878321D855D0B] [APT] [PhotoProduct.exe] (.Visan / RocketLife.) -- C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe [181744]
[MD5.1BCC1F03714C5734DB3E02EACA0E07E6] [APT] [q5seMb8h0Lp9Occ] (.Copyright 2001.) -- C:\Users\louna\AppData\Roaming\q5seMb8h0Lp9Occ.exe [1577472] =>PUP.Optional.CrossRider
[MD5.10760383AA50CCFC7DB9B5AB0D326AAF] [APT] [SamsungSupportCenter] (.SAMSUNG Electronics.) -- C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe [1749504] ©
[MD5.06F7D67EC4D15F11A2923268BAA937D3] [APT] [SUPBackground] (...) -- C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe [300912]
[MD5.D7EA62FFD7DE85440D4A843DB6854368] [APT] [TaskUserUpdate_wp] (...) -- C:\Users\louna\AppData\Roaming\~qvvived.exe [492208]
[MD5.7016A5D74459577060366F7D1E44F495] [APT] [winter_web_notification_service] (.FileProperties_CompanyName.) -- C:\Program Files (x86)\winter web\winter_web_notification_service.exe [1417216] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [winter_web_updating_service] (...) -- C:\Program Files (x86)\winter web\winter_web_updating_service.exe (.not file.) [0]
[MD5.87948212C71A773AEF4C68029BFAE924] [APT] [wp_update] (...) -- C:\Users\louna\AppData\Roaming\~ehaserx.exe [493272] =>PUP.Optional.WpManager
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\windows\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core - (.Facebook Inc..) -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core.job [906] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA - (.Facebook Inc..) -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA.job [928] ©
O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job [910] =>PUP.Optional.GlobalUpdate
O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job [914] =>PUP.Optional.GlobalUpdate
O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job [1062]
O39 - APT: GoogleUpdateTaskMachineUA - (...) -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job [1066]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core - (.Google Inc..) -- C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core.job [1026] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA - (.Google Inc..) -- C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA.job [1078] ©
O39 - APT: q5seMb8h0Lp9Occ - (.Copyright 2001.) -- C:\windows\Tasks\q5seMb8h0Lp9Occ.job [1002] =>PUP.Optional.CrossRider
O39 - APT: winter_web_notification_service - (.FileProperties_CompanyName.) -- C:\windows\Tasks\winter_web_notification_service.job [1314] =>PUP.Optional.CrossRider
O39 - APT: winter_web_updating_service - (...) -- C:\windows\Tasks\winter_web_updating_service.job [676]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\windows\System32\Tasks\Adobe Flash Player Updater [3940] ©
O39 - APT: advSRS4 - (.SEC.) -- C:\windows\System32\Tasks\advSRS4 [3306] ©
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\windows\System32\Tasks\avast! Emergency Update [4182] ©
O39 - APT: BatteryLifeExtender - (.Samsung Electronics. Co. Ltd..) -- C:\windows\System32\Tasks\BatteryLifeExtender [3100]
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\windows\System32\Tasks\CCleanerSkipUAC [2772] ©
O39 - APT: EasyBatteryManager - (.SAMSUNG Electronics co., LTD..) -- C:\windows\System32\Tasks\EasyBatteryManager [3234] ©
O39 - APT: EasyDisplayMgr - (.Samsung Electronics Co., Ltd..) -- C:\windows\System32\Tasks\EasyDisplayMgr [3168] ©
O39 - APT: EasySpeedUpManager - (.Samsung Electronics Co., Ltd..) -- C:\windows\System32\Tasks\EasySpeedUpManager [3286] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core - (.Facebook Inc..) -- C:\windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core [3536] ©
O39 - APT: FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA - (.Facebook Inc..) -- C:\windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA [3904] ©
O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore [3658] =>PUP.Optional.GlobalUpdate
O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA [3912] =>PUP.Optional.GlobalUpdate
O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore [3810]
O39 - APT: GoogleUpdateTaskMachineUA - (...) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA [4062]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001Core [3652] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1972273453-3807663751-171534141-1001UA [4048] ©
O39 - APT: HP Deskjet 3050 J610 series.exe - (.Hewlett-Packard Co..) -- C:\windows\System32\Tasks\HP Deskjet 3050 J610 series.exe [3002] ©
O39 - APT: HPCustParticipation HP Deskjet 3050 J610 series - (.Hewlett-Packard Co..) -- C:\windows\System32\Tasks\HPCustParticipation HP Deskjet 3050 J610 series [3622] ©
O39 - APT: PhotoProduct.exe - (.Visan / RocketLife.) -- C:\windows\System32\Tasks\PhotoProduct.exe [2766]
O39 - APT: q5seMb8h0Lp9Occ - (.Copyright 2001.) -- C:\windows\System32\Tasks\q5seMb8h0Lp9Occ [4028] =>PUP.Optional.CrossRider
O39 - APT: SamsungSupportCenter - (.SAMSUNG Electronics.) -- C:\windows\System32\Tasks\SamsungSupportCenter [3266] ©
O39 - APT: SUPBackground - (...) -- C:\windows\System32\Tasks\SUPBackground [3158]
O39 - APT: TaskUserUpdate_wp - (...) -- C:\windows\System32\Tasks\TaskUserUpdate_wp [2894]
O39 - APT: winter_web_notification_service - (.FileProperties_CompanyName.) -- C:\windows\System32\Tasks\winter_web_notification_service [4336] =>PUP.Optional.CrossRider
O39 - APT: winter_web_updating_service - (...) -- C:\windows\System32\Tasks\winter_web_updating_service [3700]
O39 - APT: wp_update - (...) -- C:\windows\System32\Tasks\wp_update [3212] =>PUP.Optional.WpManager

---\\ Logiciels installés (93) - 11s
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner ©
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler ©
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client ©
O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM][64Bits] -- ProInst
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 3050 J610 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {310DDAB6-41DA-4679-9CF6-C8E4EB16C2A6} ©
O42 - Logiciel: HP Deskjet 3050 J610 series - Enquête sur l'amélioration du produit - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {33F1B0F6-F218-4556-8051-F16C6C464510} ©
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {D9FCBAAE-DB72-488B-96D0-0AA3C892C0D6} ©
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast ©
O42 - Logiciel: HP Photo Creations - (.HP Photo Creations Powered by RocketLife.) [HKLM][64Bits] -- HP Photo Creations ©
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} ©
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: CyberLink PowerProducer - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861} ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} ©
O42 - Logiciel: Marvell Miniport Driver - (.Marvell.) [HKLM][64Bits] -- Marvell Miniport Driver ©
O42 - Logiciel: Tux of Math Command (remove only) - (...) [HKLM][64Bits] -- TuxMath
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {0481A2EA-DA1D-4D10-A7C3-F8237948F6B5} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {066219C8-4BE6-46D7-9E01-60FCFA6B32DC} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {082E37F5-3924-4168-A69A-1B6B1FEA587C} ©
O42 - Logiciel: Samsung Recovery Solution 4 - (.Samsung.) [HKLM][64Bits] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2} ©
O42 - Logiciel: Easy Display Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {17283B95-21A8-4996-97DA-547A48DB266F} ©
O42 - Logiciel: EasyBatteryManager - (.Samsung.) [HKLM][64Bits] -- {178EE5F4-0F86-4BF0-A0D1-9790AFF409D1} ©
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} ©
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} ©
O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} ©
O42 - Logiciel: Компаньон Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {3705D53F-BB01-4BEE-8585-289E71CAC4B4} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {3889988F-762B-4B85-AB17-71C9CC3AE445} ©
O42 - Logiciel: Complemento Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {3A09ED0F-8DDF-47BB-B53D-841AB9D1D3A7} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} ©
O42 - Logiciel: Messenger Suradnik - (.Microsoft Corporation.) [HKLM][64Bits] -- {3FD1CB9F-807F-451B-926C-9D19C84CFC61} ©
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {50816F92-1652-4A7C-B9BC-48F682742C4B} ©
O42 - Logiciel: Messenger Assistent - (.Microsoft Corporation.) [HKLM][64Bits] -- {56D42B00-572C-4AE9-BCFB-CD45A3B5D0E1} ©
O42 - Logiciel: Bing Rewards Client Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17} ©
O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} ©
O42 - Logiciel: Doplnok programu Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D2F0A26-ECEA-49CE-833C-9A6125F3D5E8} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DD3B54B-F0D0-4A69-8344-F52033225A02} ©
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} ©
O42 - Logiciel: BatteryLifeExtender - (.Samsung.) [HKLM][64Bits] -- {74A579FB-EB06-497D-B194-01590D6FE51A} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {781E0319-15CD-4A4C-A47E-D9FFF697E7A1} ©
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {787D1A33-A97B-4245-87C0-7174609A540C} ©
O42 - Logiciel: „Messenger“ pagalbinė priemonė - (.Microsoft Corporation.) [HKLM][64Bits] -- {7E274911-32ED-4489-9B04-4EF100D0E4D3} ©
O42 - Logiciel: Messenger 浏览器插件 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7F061FA8-5A87-4758-876B-17EE28B358D0} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {8142D25E-028A-4563-86ED-5755783C8029} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {847C879C-1467-4924-A491-1302B4C58F70} ©
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: Messenger Pratilac - (.Microsoft Corporation.) [HKLM][64Bits] -- {902585EB-8FA3-43A5-AD1C-5C9821A77114} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {939C80FA-96C9-44A6-B318-8E7D8BD8481B} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {96403552-88D1-429F-9C92-388B814B885E} ©
O42 - Logiciel: SweetIM for Messenger 3.7 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A0C9DF2B-89B5-4483-8983-18A68200F1B4} =>PUP.Optional.SweetIM
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Messenger 사이트 공유 - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB067785-9646-456B-91C3-E71228132A4C} ©
O42 - Logiciel: מסייע Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB5977C5-11AE-4003-BA7D-261C48F2BC35} ©
O42 - Logiciel: Adobe Reader 9.1 - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-A91000000001} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {B44F3823-52DD-45CA-A916-8B320778715D} ©
O42 - Logiciel: CyberLink PowerProducer - (.CyberLink Corp..) [HKLM][64Bits] -- {B7A0CE06-068E-11D6-97FD-0050BACBF861} ©
O42 - Logiciel: User Guide - (...) [HKLM][64Bits] -- {BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}
O42 - Logiciel: Pomocnik Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD8DA595-F501-4ABE-85A0-5C23E82472A0} ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {C7DAD22D-29D4-438F-B986-03B9ED582EA4} ©
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} ©
O42 - Logiciel: Messenger 分享元件 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF088261-BC81-4FB9-9BA0-7B5B9602D01A} ©
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} ©
O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM][64Bits] -- {D1434266-0486-4469-B338-A60082CC04E1} ©
O42 - Logiciel: Samsung Update Plus - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {D4F81B27-4054-4AD6-A588-265508BAA17C} ©
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {D58E381C-DE02-46A9-B9D1-A2CB807D2676} ©
O42 - Logiciel: Messenger-kumppani - (.Microsoft Corporation.) [HKLM][64Bits] -- {D657CCB5-9F2F-4D3C-B93D-F77EBEF79B66} ©
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: Google SketchUp 8 - (.Google, Inc..) [HKLM][64Bits] -- {E3F4EA31-41D7-4789-9AC4-F26CDAF797BA} ©
O42 - Logiciel: Update Manager for SweetPacks 1.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {EA8FA6BE-29BE-4AF2-9352-841F83215EB0} =>PUP.Optional.SweetIM
O42 - Logiciel: Easy SpeedUp Manager - (.Samsung Electronics Co.,Ltd..) [HKLM][64Bits] -- {EF367AA4-070B-493C-9575-85BE59D789C9} ©
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Spremljevalec Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {F14F9EE9-9B68-42B4-90F7-0924F7619281} ©
O42 - Logiciel: Messenger kísérő - (.Microsoft Corporation.) [HKLM][64Bits] -- {F3ECEB0A-82A0-4DB9-BB44-393A66BA0871} ©
O42 - Logiciel: Samsung Support Center - (.Samsung.) [HKLM][64Bits] -- {F687E657-F636-44DF-8125-9FEEA2C362F5} ©
O42 - Logiciel: HP Deskjet 3050 J610 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {F7632A9B-661E-4FD9-B1A4-3B86BC99847F} ©
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} ©
O42 - Logiciel: Easy Network Manager - (.Samsung.) [HKLM][64Bits] -- {F9557866-B4C8-4CE5-8508-0E386BDC20B2} ©
O42 - Logiciel: Помощник на Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {FEA0181F-3758-46DA-B7EC-F3CDFA7E0CE7} ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome ©
O42 - Logiciel: Browser Max - (.Comp Touch corp.) [HKCU][64Bits] -- {9563BC59-9556-4805-8CD4-886781779D8D}
O42 - Logiciel: Outil de notification de cadeaux MSN - (.Microsoft Corporation.) [HKCU][64Bits] -- {CAD9C0EB-457D-49BB-A6AD-389304C38B2A} ©

---\\ HKCU & HKLM Software Keys (96) - 11s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\America Online
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\CHECKINSTALLER
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Marvell
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Object
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\omiga-plusSoftware =>PUP.Optional.OmigaPlus
HKLM\SOFTWARE\Wow6432Node\Pricora 12.0 =>PUP.Optional.Pricora
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\RocketLife
HKLM\SOFTWARE\Wow6432Node\RocketTab =>PUP.Optional.RocketTab
HKLM\SOFTWARE\Wow6432Node\Samsung
HKLM\SOFTWARE\Wow6432Node\Samsung Electronics Co., Ltd.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsProtectManger =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\SweetIM =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\Wow6432Node\TuxMath
HKLM\SOFTWARE\Wow6432Node\Visan
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\5e2d88cb569e415 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Avast Software
HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution
HKCU\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon
HKCU\SOFTWARE\BI =>PUP.Optional.MegaSearch
HKCU\SOFTWARE\Bugsplat
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Iminent =>PUP.Optional.IMBouster
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PowerPack
HKCU\SOFTWARE\q5seMb8h0Lp9Occ
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RocketTabInstalled =>PUP.Optional.RocketTab
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SearchProtectINT =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\Security Stronghold
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\SweetIM =>PUP.Optional.SweetIM
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\winter web =>PUP.Optional.WinterWeb
HKCU\SOFTWARE\winterweb =>PUP.Optional.WinterWeb
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Pricora 12.0 =>PUP.Optional.Pricora

---\\ Contenu des dossiers Programmes (426) - 29s
O43 - CFD: 2011/10/27 15:37:04 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2010/11/08 01:10:07 - [] D -- C:\Program Files (x86)\Atheros Client Installation Program
O43 - CFD: 2015/09/08 20:16:17 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2011/10/27 15:38:12 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2014/06/10 20:26:21 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/01/25 17:24:45 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2014/06/13 22:30:20 - [] D -- C:\Program Files (x86)\Greener Web =>PUP.Optional.GreenerWeb
O43 - CFD: 2015/02/20 20:46:10 - [] D -- C:\Program Files (x86)\HP
O43 - CFD: 2011/11/30 23:25:08 - [] D -- C:\Program Files (x86)\HP Photo Creations
O43 - CFD: 2013/10/15 00:39:13 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2010/12/29 03:08:58 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/09/10 16:50:23 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2010/11/08 01:08:15 - [] D -- C:\Program Files (x86)\Marvell
O43 - CFD: 2013/03/08 21:31:56 - [] D -- C:\Program Files (x86)\McAfee
O43 - CFD: 2015/04/28 18:15:09 - [0] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2015/06/03 19:48:51 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2015/09/15 21:31:15 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/05/23 13:53:04 - [] D -- C:\Program Files (x86)\Microsoft Security Client
O43 - CFD: 2015/06/03 19:56:45 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2015/06/03 19:57:46 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services
O43 - CFD: 2015/06/03 19:51:13 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2012/03/11 11:38:33 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2013/03/06 17:43:38 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/06/03 19:59:03 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2013/10/02 15:59:46 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 2014/06/13 22:29:27 - [] D -- C:\Program Files (x86)\MyPC Backup =>PUP.Optional.MyPCBackup
O43 - CFD: 2014/06/13 15:23:04 - [0] D -- C:\Program Files (x86)\Nosibay =>PUP.Optional.SPointer
O43 - CFD: 2014/06/13 22:29:27 - [] D -- C:\Program Files (x86)\PC Speed Maximizer =>PUP.Optional.PCSpeedMaximizer
O43 - CFD: 2014/09/19 21:17:07 - [] D -- C:\Program Files (x86)\Pricora 12.0 =>PUP.Optional.Pricora
O43 - CFD: 2010/11/08 01:07:50 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2010/11/08 01:23:36 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2014/06/13 16:52:25 - [0] D -- C:\Program Files (x86)\SaveClicker =>PUP.Optional.SaveClicker
O43 - CFD: 2015/04/28 19:31:27 - [] D -- C:\Program Files (x86)\Search Extensions =>PUP.Optional.RocketTab
O43 - CFD: 2015/08/24 18:26:38 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2013/03/09 13:59:18 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore
O43 - CFD: 2015/04/28 18:49:27 - [] D -- C:\Program Files (x86)\SupTab =>PUP.Optional.SupTab
O43 - CFD: 2013/10/15 00:18:57 - [] D -- C:\Program Files (x86)\SweetIM =>PUP.Optional.SweetIM
O43 - CFD: 2010/11/08 01:08:11 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2012/10/25 20:53:20 - [] D -- C:\Program Files (x86)\TuxMath
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2014/06/13 16:53:14 - [0] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2013/07/16 23:31:46 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2014/06/12 18:37:55 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2013/03/27 20:16:16 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/07/01 11:34:05 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2013/03/27 20:16:16 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2013/03/27 20:16:16 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/03/27 20:16:16 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/04/01 20:20:19 - [] D -- C:\Program Files (x86)\winter web =>PUP.Optional.WinterWeb
O43 - CFD: 2014/10/20 18:22:15 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/06/29 19:10:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2014/06/13 22:09:42 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
O43 - CFD: 2014/06/10 20:25:55 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/06/13 14:07:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2013/11/26 00:36:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2015/01/25 17:25:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8
O43 - CFD: 2015/02/20 20:46:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2010/12/29 03:08:59 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/06/03 19:59:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2010/11/08 01:23:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 2015/08/24 18:26:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2009/07/14 06:54:24 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2010/11/06 04:31:44 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2012/10/25 20:53:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tux of Math Command
O43 - CFD: 2012/07/18 12:33:42 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2014/06/13 16:52:25 - [] D -- C:\ProgramData\4135aefae4b5af4e
O43 - CFD: 2011/10/27 15:37:15 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/06/13 17:31:16 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2013/03/06 17:42:47 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2013/10/15 00:26:02 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/01/25 17:25:35 - [] D -- C:\ProgramData\Google
O43 - CFD: 2012/02/04 23:55:58 - [] D -- C:\ProgramData\HP
O43 - CFD: 2011/11/30 23:35:46 - [] D -- C:\ProgramData\HP Photo Creations
O43 - CFD: 2014/09/19 21:17:51 - [] D -- C:\ProgramData\IePluginServices =>Trojan.SProtector
O43 - CFD: 2013/10/15 00:39:13 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 2013/03/08 21:31:56 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/09/15 21:31:26 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/09/09 23:22:08 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2010/11/08 02:41:36 - [] D -- C:\ProgramData\SAMSUNG
O43 - CFD: 2014/09/19 21:00:51 - [0] D -- C:\ProgramData\SaveClicker =>PUP.Optional.SaveClicker
O43 - CFD: 2010/11/08 01:39:04 - [] D -- C:\ProgramData\SiteAdvisor
O43 - CFD: 2015/08/24 18:26:46 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/03/09 13:59:18 - [] D -- C:\ProgramData\Software =>PUP.Optional.Boxore
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2012/10/25 20:49:41 - [] D -- C:\ProgramData\SweetIM =>PUP.Optional.SweetIM
O43 - CFD: 2013/10/15 00:39:15 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2011/11/27 18:02:30 - [] D -- C:\ProgramData\VirtualizedApplications
O43 - CFD: 2014/04/10 00:17:11 - [] D -- C:\ProgramData\WinClon
O43 - CFD: 2014/09/19 21:22:01 - [] D -- C:\ProgramData\WindowsProtectManger =>PUP.Optional.WpManager
O43 - CFD: 2011/10/27 15:37:07 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2010/11/08 01:19:04 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2014/06/04 20:53:32 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2010/11/08 01:07:46 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2010/11/08 01:07:44 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2013/03/08 21:31:55 - [] D -- C:\Program Files (x86)\Common Files\McAfee
O43 - CFD: 2015/09/15 21:43:03 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2010/11/08 01:23:17 - [] D -- C:\Program Files (x86)\Common Files\Samsung
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/08/24 18:26:38 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2013/03/27 20:16:16 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2010/11/08 02:22:04 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2011/11/06 11:55:48 - [] D -- C:\Users\louna\AppData\Roaming\Adobe
O43 - CFD: 2014/06/13 17:33:21 - [] D -- C:\Users\louna\AppData\Roaming\AVAST Software
O43 - CFD: 2013/03/06 17:42:47 - [] D -- C:\Users\louna\AppData\Roaming\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/09/16 16:27:46 - [] D -- C:\Users\louna\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
O43 - CFD: 2014/08/07 18:40:03 - [] D -- C:\Users\louna\AppData\Roaming\CyberLink
O43 - CFD: 2014/05/09 12:57:37 - [] D -- C:\Users\louna\AppData\Roaming\dvdcss
O43 - CFD: 2015/01/25 17:25:35 - [] D -- C:\Users\louna\AppData\Roaming\Google
O43 - CFD: 2011/11/30 23:24:58 - [0] D -- C:\Users\louna\AppData\Roaming\HpUpdate
O43 - CFD: 2011/10/27 15:41:49 - [] D -- C:\Users\louna\AppData\Roaming\Identities
O43 - CFD: 2012/10/25 20:54:08 - [] D -- C:\Users\louna\AppData\Roaming\Iminent =>PUP.Optional.IMBouster
O43 - CFD: 2011/10/27 15:43:42 - [] D -- C:\Users\louna\AppData\Roaming\Macromedia
O43 - CFD: 2010/11/06 04:31:44 - [0] D -- C:\Users\louna\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/09/04 19:07:26 - [] SD -- C:\Users\louna\AppData\Roaming\Microsoft
O43 - CFD: 2014/06/13 15:23:02 - [0] D -- C:\Users\louna\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock
O43 - CFD: 2014/06/13 21:04:51 - [] D -- C:\Users\louna\AppData\Roaming\PC Speed Maximizer =>PUP.Optional.PCSpeedMaximizer
O43 - CFD: 2015/09/16 16:19:54 - [] D -- C:\Users\louna\AppData\Roaming\Skype
O43 - CFD: 2015/09/15 21:40:39 - [] D -- C:\Users\louna\AppData\Roaming\SoftGrid Client
O43 - CFD: 2014/06/13 14:08:22 - [0] D -- C:\Users\louna\AppData\Roaming\SupTab =>PUP.Optional.SupTab
O43 - CFD: 2014/06/13 16:50:32 - [] D -- C:\Users\louna\AppData\Roaming\Systweak =>PUP.Optional.Systweak
O43 - CFD: 2011/11/04 22:28:02 - [0] D -- C:\Users\louna\AppData\Roaming\TP
O43 - CFD: 2013/09/22 10:29:07 - [] D -- C:\Users\louna\AppData\Roaming\tuxmath
O43 - CFD: 2014/05/09 14:49:22 - [] D -- C:\Users\louna\AppData\Roaming\vlc
O43 - CFD: 2014/10/21 14:50:26 - [0] D -- C:\Users\louna\AppData\Roaming\Windows Live Writer
O43 - CFD: 2015/06/03 20:03:36 - [] D -- C:\Users\louna\AppData\Roaming\WinRAR
O43 - CFD: 2015/09/12 10:26:59 - [] D -- C:\Users\louna\AppData\Roaming\wp_update =>PUP.Optional.WpManager
O43 - CFD: 2015/09/16 16:53:42 - [] D -- C:\Users\louna\AppData\Roaming\ZHP
O43 - CFD: 2015/02/09 17:14:43 - [0] D -- C:\Users\louna\AppData\Local\45b49b0a-8ed3-4770-8e5b-cc2d569f5f5b
O43 - CFD: 2011/11/06 11:56:12 - [] D -- C:\Users\louna\AppData\Local\Adobe
O43 - CFD: 2011/10/27 15:36:29 - [0] SHD -- C:\Users\louna\AppData\Local\Application Data
O43 - CFD: 2011/10/28 09:46:19 - [] D -- C:\Users\louna\AppData\Local\Apps
O43 - CFD: 2013/10/12 13:29:57 - [] D -- C:\Users\louna\AppData\Local\avgchrome
O43 - CFD: 2015/09/08 20:16:15 - [] D -- C:\Users\louna\AppData\Local\Browser Max
O43 - CFD: 2014/06/13 14:11:51 - [] D -- C:\Users\louna\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser
O43 - CFD: 2014/06/13 14:11:51 - [] D -- C:\Users\louna\AppData\Local\Comodo
O43 - CFD: 2011/10/28 09:47:29 - [0] D -- C:\Users\louna\AppData\Local\Deployment
O43 - CFD: 2015/03/10 20:20:47 - [0] D -- C:\Users\louna\AppData\Local\Diagnostics
O43 - CFD: 2015/07/01 12:57:30 - [0] SHD -- C:\Users\louna\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/07/01 12:57:30 - [0] SHD -- C:\Users\louna\AppData\Local\EmieSiteList
O43 - CFD: 2015/07/01 12:57:30 - [0] SHD -- C:\Users\louna\AppData\Local\EmieUserList
O43 - CFD: 2012/07/26 11:24:32 - [] D -- C:\Users\louna\AppData\Local\Facebook
O43 - CFD: 2015/07/27 21:10:29 - [0] D -- C:\Users\louna\AppData\Local\Food Kit
O43 - CFD: 2014/06/10 20:26:21 - [] D -- C:\Users\louna\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/09/14 21:58:31 - [] D -- C:\Users\louna\AppData\Local\Google
O43 - CFD: 2015/07/02 21:56:30 - [] D -- C:\Users\louna\AppData\Local\GWX
O43 - CFD: 2011/10/27 15:36:29 - [0] SHD -- C:\Users\louna\AppData\Local\Historique
O43 - CFD: 2013/10/13 11:54:55 - [] D -- C:\Users\louna\AppData\Local\HP
O43 - CFD: 2015/09/04 17:50:08 - [] D -- C:\Users\louna\AppData\Local\Microsoft
O43 - CFD: 2013/05/20 12:15:28 - [] D -- C:\Users\louna\AppData\Local\Microsoft Games
O43 - CFD: 2015/06/07 10:11:55 - [] D -- C:\Users\louna\AppData\Local\Microsoft Help
O43 - CFD: 2014/06/13 14:11:54 - [] D -- C:\Users\louna\AppData\Local\Packages
O43 - CFD: 2011/10/27 15:42:35 - [] D -- C:\Users\louna\AppData\Local\Power2Go
O43 - CFD: 2014/06/13 13:56:52 - [] D -- C:\Users\louna\AppData\Local\Programs
O43 - CFD: 2014/06/12 18:38:01 - [] D -- C:\Users\louna\AppData\Local\Skype
O43 - CFD: 2011/11/04 22:27:55 - [] D -- C:\Users\louna\AppData\Local\SoftGrid Client
O43 - CFD: 2012/10/25 20:48:53 - [] D -- C:\Users\louna\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 2015/09/16 16:53:16 - [] D -- C:\Users\louna\AppData\Local\Temp
O43 - CFD: 2011/10/27 15:36:29 - [0] SHD -- C:\Users\louna\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/06/13 14:11:51 - [] D -- C:\Users\louna\AppData\Local\Torch =>PUP.Optional.Torch
O43 - CFD: 2014/10/21 09:59:54 - [] D -- C:\Users\louna\AppData\Local\VirtualStore
O43 - CFD: 2015/07/28 13:10:47 - [] D -- C:\Users\louna\AppData\Local\Windows Live
O43 - CFD: 2014/10/21 14:50:34 - [] D -- C:\Users\louna\AppData\Local\Windows Live Writer
O43 - CFD: 2012/12/25 12:15:23 - [0] D -- C:\Users\louna\AppData\Local\{00288FA2-6718-4AB8-90BF-A9B365B1C6B4}
O43 - CFD: 2012/07/21 15:58:54 - [0] D -- C:\Users\louna\AppData\Local\{009D1B42-29BF-4BAA-B27E-ADE508F144CC}
O43 - CFD: 2012/07/15 19:38:22 - [0] D -- C:\Users\louna\AppData\Local\{01925708-8648-400F-807A-0FB0610CCA6C}
O43 - CFD: 2012/02/28 21:37:41 - [0] D -- C:\Users\louna\AppData\Local\{0297D4B9-D3EC-4902-AB33-B929E6296885}
O43 - CFD: 2012/09/11 21:23:27 - [0] D -- C:\Users\louna\AppData\Local\{029CC521-42FC-4CA1-B0C1-3F1BA698B56B}
O43 - CFD: 2012/11/18 13:30:57 - [0] D -- C:\Users\louna\AppData\Local\{036D2405-4A0B-40B2-AE5F-AB246BCB2C93}
O43 - CFD: 2012/05/19 13:09:42 - [0] D -- C:\Users\louna\AppData\Local\{03FC22A9-5B84-4252-9278-EB8884058F0C}
O43 - CFD: 2012/01/30 22:50:16 - [0] D -- C:\Users\louna\AppData\Local\{047257E5-1670-4630-B3E6-E1A89BA92DC9}
O43 - CFD: 2012/12/15 18:03:34 - [0] D -- C:\Users\louna\AppData\Local\{073CDE06-14E6-43D5-BF12-211AD57BE463}
O43 - CFD: 2012/09/02 01:22:02 - [0] D -- C:\Users\louna\AppData\Local\{076A6696-929F-4C2A-A374-C39F6029A867}
O43 - CFD: 2012/01/04 13:47:27 - [0] D -- C:\Users\louna\AppData\Local\{0827EEB0-B60B-4F70-8558-94F2D8655DF7}
O43 - CFD: 2012/04/28 14:33:06 - [0] D -- C:\Users\louna\AppData\Local\{082FBD89-84B2-4520-B18B-4CFAB12F9F81}
O43 - CFD: 2012/11/09 20:33:04 - [0] D -- C:\Users\louna\AppData\Local\{0958D47F-4AC9-4F8F-9C38-0A8B37D14F03}
O43 - CFD: 2012/06/20 12:55:11 - [0] D -- C:\Users\louna\AppData\Local\{09608FE6-826C-4DFE-BF01-6EDCE32D2A65}
O43 - CFD: 2013/01/15 14:34:54 - [0] D -- C:\Users\louna\AppData\Local\{0CE2BAE6-7C68-4940-844F-AAD39CEE2C8E}
O43 - CFD: 2012/03/10 12:50:12 - [0] D -- C:\Users\louna\AppData\Local\{0D3C4A75-5266-4F23-9654-BB99D9763389}
O43 - CFD: 2012/04/20 18:32:31 - [0] D -- C:\Users\louna\AppData\Local\{0DF20DC8-278E-48ED-9173-6DE962E7DBB1}
O43 - CFD: 2012/10/26 20:40:44 - [0] D -- C:\Users\louna\AppData\Local\{0E644B22-6A81-4AB5-BE85-B58BE9B2C759}
O43 - CFD: 2012/07/21 15:59:04 - [0] D -- C:\Users\louna\AppData\Local\{0FEB5BE4-443E-4C45-983A-216B4C55387A}
O43 - CFD: 2012/11/29 20:13:26 - [0] D -- C:\Users\louna\AppData\Local\{12BC0E5C-9857-4061-8995-E9C97091DD15}
O43 - CFD: 2012/05/08 08:51:02 - [0] D -- C:\Users\louna\AppData\Local\{133B9B4F-8597-4A8D-8EDF-1173A60ED07A}
O43 - CFD: 2012/09/11 18:45:45 - [0] D -- C:\Users\louna\AppData\Local\{13D2A1CA-E604-4F37-9C5E-7025BA145FAE}
O43 - CFD: 2012/10/30 15:25:06 - [0] D -- C:\Users\louna\AppData\Local\{13F587D9-677A-4F56-9B2D-858D7200796F}
O43 - CFD: 2012/08/31 10:33:56 - [0] D -- C:\Users\louna\AppData\Local\{15E5C64C-F21B-45FB-B413-5C2D0093DEEF}
O43 - CFD: 2012/02/18 19:58:05 - [0] D -- C:\Users\louna\AppData\Local\{170ACE06-9532-4D8C-93F7-385E33C25225}
O43 - CFD: 2012/04/30 21:40:36 - [0] D -- C:\Users\louna\AppData\Local\{1823F1FF-0ACA-4696-A6FF-06498473A818}
O43 - CFD: 2013/01/27 16:03:26 - [0] D -- C:\Users\louna\AppData\Local\{182FA1BE-F367-4C88-BA56-7509C41DAAE8}
O43 - CFD: 2012/04/16 12:01:09 - [0] D -- C:\Users\louna\AppData\Local\{1AB1F5ED-767C-4615-ADE1-2014FFFADC6A}
O43 - CFD: 2012/04/01 10:10:19 - [0] D -- C:\Users\louna\AppData\Local\{1AB3482C-BBA1-4419-98A9-6F61CC573FDF}
O43 - CFD: 2012/02/21 14:32:28 - [0] D -- C:\Users\louna\AppData\Local\{1AE74BF0-369E-40B5-8DB2-6ABE5CFDE240}
O43 - CFD: 2012/05/03 19:34:16 - [0] D -- C:\Users\louna\AppData\Local\{1C27C84F-7A22-4E2F-A417-F6440CFA6A81}
O43 - CFD: 2013/01/11 09:18:28 - [0] D -- C:\Users\louna\AppData\Local\{1CD21064-2BC5-4DD0-AC24-AAD93C0C2573}
O43 - CFD: 2013/01/14 22:23:32 - [0] D -- C:\Users\louna\AppData\Local\{1F551AD5-C095-45E0-A1A9-83C5DE238FA9}
O43 - CFD: 2012/02/17 19:39:29 - [0] D -- C:\Users\louna\AppData\Local\{218C2F99-232D-4555-B3E9-95ADEE5959DC}
O43 - CFD: 2012/03/11 14:40:26 - [0] D -- C:\Users\louna\AppData\Local\{221DBC79-3C47-42C9-B8CE-5A6F92D9F803}
O43 - CFD: 2012/07/05 20:59:35 - [0] D -- C:\Users\louna\AppData\Local\{2494D4D1-250D-4557-897D-9CEE3BA3F6CF}
O43 - CFD: 2013/03/10 19:58:27 - [0] D -- C:\Users\louna\AppData\Local\{27D61D78-2048-4BF1-805D-EF62EA1ACB66}
O43 - CFD: 2012/11/05 18:04:49 - [0] D -- C:\Users\louna\AppData\Local\{28780474-DA15-41B0-A628-42D0C3F57651}
O43 - CFD: 2012/02/18 19:58:19 - [0] D -- C:\Users\louna\AppData\Local\{29B58248-C2ED-4A83-9F6D-67484C257B7B}
O43 - CFD: 2012/07/13 18:53:44 - [0] D -- C:\Users\louna\AppData\Local\{2B76EC6E-74C0-4C41-8199-04727F363C86}
O43 - CFD: 2012/12/27 14:14:18 - [0] D -- C:\Users\louna\AppData\Local\{2C1083D4-06AC-4E1A-98F0-28678960629F}
O43 - CFD: 2012/01/29 18:32:14 - [0] D -- C:\Users\louna\AppData\Local\{2C4E6875-B49C-4ABB-8E74-282A46880288}
O43 - CFD: 2012/03/13 08:56:22 - [0] D -- C:\Users\louna\AppData\Local\{2D8BA7BB-0FC5-41FF-96E2-9FAC4460D0CC}
O43 - CFD: 2012/03/07 10:29:47 - [0] D -- C:\Users\louna\AppData\Local\{2EF74DA3-22EA-435F-8FE1-DFE19E070141}
O43 - CFD: 2012/07/13 18:53:34 - [0] D -- C:\Users\louna\AppData\Local\{2F00E846-0F62-4B43-87C1-AC32C09E3CCD}
O43 - CFD: 2012/10/06 18:33:30 - [0] D -- C:\Users\louna\AppData\Local\{2F4BCEAC-EA09-4857-9DD4-9D1A21B7CB91}
O43 - CFD: 2012/04/21 14:18:51 - [0] D -- C:\Users\louna\AppData\Local\{313A138E-C534-4332-AC78-FB3406269A05}
O43 - CFD: 2012/04/30 14:15:35 - [0] D -- C:\Users\louna\AppData\Local\{3151551C-7842-4209-B00D-943F33C810F2}
O43 - CFD: 2012/01/01 22:55:59 - [0] D -- C:\Users\louna\AppData\Local\{31BA7CBC-C0E3-460C-B364-74811C37600F}
O43 - CFD: 2012/07/12 19:54:46 - [0] D -- C:\Users\louna\AppData\Local\{328CD06B-74AB-4ADE-9160-A37DE5ED8226}
O43 - CFD: 2012/02/04 23:24:22 - [0] D -- C:\Users\louna\AppData\Local\{34AF6C16-6F50-4D44-A78B-CA44CEDC174C}
O43 - CFD: 2013/02/28 11:24:50 - [0] D -- C:\Users\louna\AppData\Local\{3616F90E-0886-40D3-AFF0-183B7DB41FAA}
O43 - CFD: 2013/04/09 19:05:18 - [0] D -- C:\Users\louna\AppData\Local\{361DDAB9-7B69-40C0-804A-2A31C22000E5}
O43 - CFD: 2012/01/15 00:01:49 - [0] D -- C:\Users\louna\AppData\Local\{36BF5B2A-AA0E-4079-95F1-3F4116445B1C}
O43 - CFD: 2012/03/12 19:10:33 - [0] D -- C:\Users\louna\AppData\Local\{370E1D12-C024-42D9-B81D-4C4D8A3F5955}
O43 - CFD: 2012/04/05 21:53:49 - [0] D -- C:\Users\louna\AppData\Local\{371E0CC0-2A3D-44F3-892C-3435837F954B}
O43 - CFD: 2012/07/18 09:49:35 - [0] D -- C:\Users\louna\AppData\Local\{39523E0B-A9AD-41E1-974C-99403F1C2CD7}
O43 - CFD: 2012/05/02 11:03:08 - [0] D -- C:\Users\louna\AppData\Local\{39F5FA75-9D87-4415-B970-FE0156CAEA69}
O43 - CFD: 2012/01/01 22:55:47 - [0] D -- C:\Users\louna\AppData\Local\{3AF0B662-C28E-46BB-9709-49ADB78C8F3F}
O43 - CFD: 2012/04/20 17:17:32 - [0] D -- C:\Users\louna\AppData\Local\{3B18B591-D051-4FDF-83B3-CD180D939BD6}
O43 - CFD: 2012/02/19 15:18:47 - [0] D -- C:\Users\louna\AppData\Local\{3D7ABFD5-C949-42A6-A5A4-A76073AC0459}
O43 - CFD: 2012/07/22 19:06:55 - [0] D -- C:\Users\louna\AppData\Local\{3E1FD145-F832-4FD2-8E04-F63F4BDC77CB}
O43 - CFD: 2012/08/31 22:48:05 - [0] D -- C:\Users\louna\AppData\Local\{413749D1-4A12-46B8-9366-F0B421A92B90}
O43 - CFD: 2013/03/09 13:47:23 - [0] D -- C:\Users\louna\AppData\Local\{41561EBC-C2A6-49D4-A7B6-CA42F3BD3AFC}
O43 - CFD: 2011/12/30 13:12:21 - [0] D -- C:\Users\louna\AppData\Local\{430112AB-A719-4C5B-A9DC-AFC37CA97871}
O43 - CFD: 2012/03/13 08:56:33 - [0] D -- C:\Users\louna\AppData\Local\{43D93C92-A0A7-40D3-95BC-573B9B6ECEC0}
O43 - CFD: 2013/02/23 12:33:33 - [0] D -- C:\Users\louna\AppData\Local\{4450BC80-84B1-47C8-822A-D36757F807AF}
O43 - CFD: 2014/10/21 14:50:40 - [0] D -- C:\Users\louna\AppData\Local\{448A494D-A6EE-4152-ADD8-06720DAE97A4}
O43 - CFD: 2012/11/02 11:54:47 - [0] D -- C:\Users\louna\AppData\Local\{45BFDFF6-75F7-43EC-8650-C0E26953759A}
O43 - CFD: 2012/03/21 10:36:45 - [0] D -- C:\Users\louna\AppData\Local\{4679F95D-8A7C-4B46-A735-1DAF5E085CEE}
O43 - CFD: 2012/07/12 19:54:58 - [0] D -- C:\Users\louna\AppData\Local\{49541DB7-F132-4BE0-A671-E12D18BFA878}
O43 - CFD: 2013/01/19 14:33:47 - [0] D -- C:\Users\louna\AppData\Local\{4A165E42-5531-4E37-A17F-A0AC350627EF}
O43 - CFD: 2012/03/16 14:07:34 - [0] D -- C:\Users\louna\AppData\Local\{4C041520-214D-4E9E-854B-73E143F6BAEA}
O43 - CFD: 2012/05/18 21:30:56 - [0] D -- C:\Users\louna\AppData\Local\{4D6F9926-1224-4AC0-818D-3E8E65B259F5}
O43 - CFD: 2013/01/20 06:18:49 - [0] D -- C:\Users\louna\AppData\Local\{4E7E0FDA-1FB0-4F01-AE3A-9BE5E01011B3}
O43 - CFD: 2012/07/11 20:32:07 - [0] D -- C:\Users\louna\AppData\Local\{4EC4C443-5B9E-44D2-9830-45E70A75D124}
O43 - CFD: 2012/01/03 22:36:20 - [0] D -- C:\Users\louna\AppData\Local\{4FEA03FE-20F8-4F1C-B04B-8FB96A386298}
O43 - CFD: 2015/07/02 21:59:51 - [0] D -- C:\Users\louna\AppData\Local\{502B4F27-F7CA-4179-93A2-9CEE578A63E2}
O43 - CFD: 2013/03/12 21:18:53 - [0] D -- C:\Users\louna\AppData\Local\{505CF83B-A3C4-483B-8F1C-90E161628C9C}
O43 - CFD: 2012/04/25 09:59:03 - [0] D -- C:\Users\louna\AppData\Local\{512D67B7-8F4B-4DFC-B52C-85458194E2B4}
O43 - CFD: 2012/02/09 20:16:09 - [0] D -- C:\Users\louna\AppData\Local\{56C0848B-C819-408A-89AF-38E4498F7C1C}
O43 - CFD: 2012/02/24 20:32:59 - [0] D -- C:\Users\louna\AppData\Local\{56DC0C9B-920E-4B25-B17B-5955D9E29AF5}
O43 - CFD: 2012/02/20 13:03:43 - [0] D -- C:\Users\louna\AppData\Local\{57EE574D-7BBC-4239-AA72-143AA7EF56BD}
O43 - CFD: 2013/01/26 10:27:29 - [0] D -- C:\Users\louna\AppData\Local\{58FED218-30A0-4349-A239-50CE91828D96}
O43 - CFD: 2012/04/28 22:19:42 - [0] D -- C:\Users\louna\AppData\Local\{592C5484-18FA-4241-9E8A-C8762E1ADA49}
O43 - CFD: 2012/02/09 20:37:25 - [0] D -- C:\Users\louna\AppData\Local\{59D12C6A-D471-465E-9D7D-59F6F0A5C785}
O43 - CFD: 2013/01/29 19:48:48 - [0] D -- C:\Users\louna\AppData\Local\{5AD0095A-C8F8-494E-8299-B9162D590D48}
O43 - CFD: 2012/12/24 12:18:37 - [0] D -- C:\Users\louna\AppData\Local\{5B1EC9BE-911B-4A40-9917-B4F7EEEA4192}
O43 - CFD: 2012/03/11 11:27:55 - [0] D -- C:\Users\louna\AppData\Local\{5BCB4111-5C65-43E4-92FB-B2DFE4E4CF09}
O43 - CFD: 2013/01/13 11:12:34 - [0] D -- C:\Users\louna\AppData\Local\{5BF4B597-9C51-4D23-B5AF-925A701825C0}
O43 - CFD: 2013/01/20 18:18:48 - [0] D -- C:\Users\louna\AppData\Local\{5C0A3388-4BE4-44DD-88F2-E2AEDDA9053B}
O43 - CFD: 2012/03/02 16:16:34 - [0] D -- C:\Users\louna\AppData\Local\{5C6D92D2-2AD3-408C-A445-93191AE806F1}
O43 - CFD: 2012/02/24 20:26:05 - [0] D -- C:\Users\louna\AppData\Local\{5ECB97A7-714C-420C-8E8E-D60B3D884487}
O43 - CFD: 2012/09/03 11:32:20 - [0] D -- C:\Users\louna\AppData\Local\{5ED55950-E8C6-45E8-B270-E533F125DC3D}
O43 - CFD: 2012/02/20 13:03:32 - [0] D -- C:\Users\louna\AppData\Local\{5F2AFA3E-5050-4E8F-BB02-2A573028B4B2}
O43 - CFD: 2012/11/08 11:27:56 - [0] D -- C:\Users\louna\AppData\Local\{60BB7437-25AA-4A36-AC4F-C35C1F63883C}
O43 - CFD: 2012/07/18 12:26:56 - [0] D -- C:\Users\louna\AppData\Local\{63412C56-F2D4-463D-BA2E-5C8CBF4922FA}
O43 - CFD: 2012/01/14 23:43:41 - [0] D -- C:\Users\louna\AppData\Local\{63692FAC-CD0A-44F0-B808-E1410F5ECD5C}
O43 - CFD: 2012/02/26 19:51:51 - [0] D -- C:\Users\louna\AppData\Local\{641AC44C-64E1-4701-A769-8004C8E9DBBA}
O43 - CFD: 2012/12/24 12:20:29 - [0] D -- C:\Users\louna\AppData\Local\{68AD2FFC-E089-4323-BDDE-01E3625B9B72}
O43 - CFD: 2012/05/09 13:05:51 - [0] D -- C:\Users\louna\AppData\Local\{6A90B871-9E93-4F9B-A651-44300AAE6717}
O43 - CFD: 2012/09/18 19:46:12 - [0] D -- C:\Users\louna\AppData\Local\{6AB88141-A916-4579-A771-4D4B22147D08}
O43 - CFD: 2012/04/06 17:05:41 - [0] D -- C:\Users\louna\AppData\Local\{6B1B01A9-2C80-4500-AC5D-30AD5A38ABD7}
O43 - CFD: 2012/02/24 20:28:54 - [0] D -- C:\Users\louna\AppData\Local\{6C13BB66-ED3D-4EA3-A6CD-33EB2C6D9D2C}
O43 - CFD: 2012/05/03 19:33:56 - [0] D -- C:\Users\louna\AppData\Local\{6D76665F-F75C-4F6E-B52F-3F7BFC860A8F}
O43 - CFD: 2012/07/23 11:32:34 - [0] D -- C:\Users\louna\AppData\Local\{6D9D8B9E-0B47-45B9-ACD6-C57AE7068D07}
O43 - CFD: 2012/01/14 23:43:29 - [0] D -- C:\Users\louna\AppData\Local\{6E28EC19-21A5-49D7-91AA-07C0BA780A05}
O43 - CFD: 2012/01/18 12:24:09 - [0] D -- C:\Users\louna\AppData\Local\{7155C63C-C85E-4ABB-B223-C70F5B09CD69}
O43 - CFD: 2012/10/28 17:48:16 - [0] D -- C:\Users\louna\AppData\Local\{7289FF92-4EEC-41F2-88E8-5BEB5A3CD752}
O43 - CFD: 2012/03/15 21:04:38 - [0] D -- C:\Users\louna\AppData\Local\{74478617-D36F-4D2F-A64D-A786B59E07BD}
O43 - CFD: 2012/11/30 20:18:43 - [0] D -- C:\Users\louna\AppData\Local\{74A25DF3-F49F-4356-8C4C-435BBECB559C}
O43 - CFD: 2012/07/18 09:49:22 - [0] D -- C:\Users\louna\AppData\Local\{77CDCE23-AC14-4897-B1A3-9A082B4EB257}
O43 - CFD: 2011/12/30 13:12:32 - [0] D -- C:\Users\louna\AppData\Local\{79072531-7506-499A-99F4-028557C67C29}
O43 - CFD: 2013/03/06 17:40:11 - [0] D -- C:\Users\louna\AppData\Local\{7A1F6D05-1669-492D-BBCC-A64CB505F74A}
O43 - CFD: 2012/05/02 11:17:09 - [0] D -- C:\Users\louna\AppData\Local\{7A509F23-64EC-4B86-B6B4-CAEB30DB7C72}
O43 - CFD: 2012/02/04 23:24:10 - [0] D -- C:\Users\louna\AppData\Local\{7A810772-4FF4-4B79-8CD7-7430A0C3378D}
O43 - CFD: 2012/09/10 07:25:04 - [0] D -- C:\Users\louna\AppData\Local\{7B842651-0B19-4893-AD39-5D909C5079EC}
O43 - CFD: 2012/02/22 10:25:32 - [0] D -- C:\Users\louna\AppData\Local\{7D3D199D-C7C4-4F8A-AE4F-10E9795FB7EA}
O43 - CFD: 2012/11/23 20:38:40 - [0] D -- C:\Users\louna\AppData\Local\{7DE58DEE-4500-4FD4-89E6-5C87319964BF}
O43 - CFD: 2012/02/17 19:39:19 - [0] D -- C:\Users\louna\AppData\Local\{801285C7-393A-4D58-B963-F1973683EC25}
O43 - CFD: 2012/11/20 22:09:20 - [0] D -- C:\Users\louna\AppData\Local\{81CE3C47-02E0-4BA6-A648-79E95740568B}
O43 - CFD: 2012/08/08 17:29:41 - [0] D -- C:\Users\louna\AppData\Local\{823C4E79-F3A2-4F30-9BAB-617DD168BA1C}
O43 - CFD: 2012/07/27 09:21:06 - [0] D -- C:\Users\louna\AppData\Local\{82EA109C-0CA3-4E47-8F0D-77E17DD94964}
O43 - CFD: 2012/09/30 10:18:59 - [0] D -- C:\Users\louna\AppData\Local\{83FC0464-78CA-4D7B-A418-2E8B149BE428}
O43 - CFD: 2012/08/30 09:46:47 - [0] D -- C:\Users\louna\AppData\Local\{87494B48-D41A-4560-9674-1A5EBB9604FE}
O43 - CFD: 2012/03/16 14:07:45 - [0] D -- C:\Users\louna\AppData\Local\{881AD62A-E146-4012-ACE3-4FBFB3201E73}
O43 - CFD: 2012/05/09 22:06:55 - [0] D -- C:\Users\louna\AppData\Local\{8875570B-9D46-4ED5-B144-C8E6681B7E10}
O43 - CFD: 2012/01/24 08:53:03 - [0] D -- C:\Users\louna\AppData\Local\{8D0D5065-9B0A-4B77-BC7F-F08B6C56C289}
O43 - CFD: 2012/07/18 12:29:42 - [0] D -- C:\Users\louna\AppData\Local\{8E05D0E3-86A5-4FF2-A6C4-D1D63D46AB21}
O43 - CFD: 2012/05/08 22:06:21 - [0] D -- C:\Users\louna\AppData\Local\{8E4D5000-72F4-4A45-81AA-BADBD5FC1E5E}
O43 - CFD: 2012/01/15 11:48:35 - [0] D -- C:\Users\louna\AppData\Local\{90CA67AC-335F-42E8-AABD-50782C922C21}
O43 - CFD: 2012/02/22 10:25:20 - [0] D -- C:\Users\louna\AppData\Local\{924CC201-6230-46B1-B130-52BE69E4A454}
O43 - CFD: 2012/09/07 21:17:46 - [0] D -- C:\Users\louna\AppData\Local\{933864C9-614C-4542-B67F-5F40BBA75D35}
O43 - CFD: 2012/07/25 09:44:37 - [0] D -- C:\Users\louna\AppData\Local\{95696E8A-63E3-45E3-BDA0-12F29B9CCBA4}
O43 - CFD: 2012/11/01 12:45:40 - [0] D -- C:\Users\louna\AppData\Local\{9762C5BC-CED8-4D1B-95BE-0AB361DAB197}
O43 - CFD: 2012/11/07 12:20:43 - [0] D -- C:\Users\louna\AppData\Local\{9815CDE5-1253-4A7C-A0E8-34AFA3437A5B}
O43 - CFD: 2012/07/13 18:43:17 - [0] D -- C:\Users\louna\AppData\Local\{98286B18-BC5B-4BE7-9785-5BEC5558096D}
O43 - CFD: 2012/05/02 11:14:39 - [0] D -- C:\Users\louna\AppData\Local\{98FB9A46-6B79-497D-B644-699050B7830C}
O43 - CFD: 2012/10/11 18:02:56 - [0] D -- C:\Users\louna\AppData\Local\{9B038DC1-7CFE-4D08-953F-936B61AC85A6}
O43 - CFD: 2012/04/28 17:55:24 - [0] D -- C:\Users\louna\AppData\Local\{9B79FFA4-E4B0-49CA-88F0-768764790894}
O43 - CFD: 2012/04/20 17:17:45 - [0] D -- C:\Users\louna\AppData\Local\{9C6611A3-F4B5-400D-B2B1-AA8BED77850E}
O43 - CFD: 2012/03/21 10:36:33 - [0] D -- C:\Users\louna\AppData\Local\{9CE1049D-A74F-496B-8DB2-4020D42EA09D}
O43 - CFD: 2012/01/29 18:32:03 - [0] D -- C:\Users\louna\AppData\Local\{A078E906-5BEF-48EE-B905-1AB0E0AD7E59}
O43 - CFD: 2012/01/03 22:36:33 - [0] D -- C:\Users\louna\AppData\Local\{A0835A66-34A4-4DB3-A165-C2767B8F899A}
O43 - CFD: 2012/11/15 20:59:21 - [0] D -- C:\Users\louna\AppData\Local\{A23961DC-FDFB-421D-AEB6-C7B3D8F17B73}
O43 - CFD: 2012/09/10 21:28:13 - [0] D -- C:\Users\louna\AppData\Local\{A2A90C1E-02DA-4A0B-91AF-05E1B0146ADE}
O43 - CFD: 2012/07/13 18:43:32 - [0] D -- C:\Users\louna\AppData\Local\{A49AC261-4F81-47EE-8437-7A5292D3B5A8}
O43 - CFD: 2012/06/26 22:00:08 - [0] D -- C:\Users\louna\AppData\Local\{A649EA8D-A5F4-4BA4-964E-74C6B8090C91}
O43 - CFD: 2012/07/20 12:27:51 - [0] D -- C:\Users\louna\AppData\Local\{A72EBA95-52E8-4F9C-9EF7-70256F015705}
O43 - CFD: 2012/04/16 18:16:03 - [0] D -- C:\Users\louna\AppData\Local\{A8306A2D-FA5C-4C2A-BCC6-9FEC9E2E71A8}
O43 - CFD: 2012/01/04 13:47:14 - [0] D -- C:\Users\louna\AppData\Local\{A967AE3F-4E6E-43DB-8F02-0EB0B6145C5E}
O43 - CFD: 2012/06/20 12:55:32 - [0] D -- C:\Users\louna\AppData\Local\{A9BE6741-2807-43DD-8C2E-E591B38F52D8}
O43 - CFD: 2013/01/25 19:01:52 - [0] D -- C:\Users\louna\AppData\Local\{A9C1A5E3-BBC3-4410-8B51-0633366E3CAC}
O43 - CFD: 2012/12/25 11:33:24 - [0] D -- C:\Users\louna\AppData\Local\{AAC18839-F82F-47A0-86DA-A8F290CACDD3}
O43 - CFD: 2012/04/09 20:00:42 - [0] D -- C:\Users\louna\AppData\Local\{AB540905-C4C3-41AC-A05A-17B4CFF583C6}
O43 - CFD: 2012/07/05 20:59:23 - [0] D -- C:\Users\louna\AppData\Local\{AC690875-AC4C-4C39-AD83-761A34CACBDD}
O43 - CFD: 2012/03/11 14:40:38 - [0] D -- C:\Users\louna\AppData\Local\{ADA80229-209B-4F4F-9A2F-BEA4BCF5A4CD}
O43 - CFD: 2011/12/29 19:51:28 - [0] D -- C:\Users\louna\AppData\Local\{ADE42C99-8F80-40F5-9588-AB5EFB87C1EA}
O43 - CFD: 2012/03/10 12:50:37 - [0] D -- C:\Users\louna\AppData\Local\{ADFD3097-113B-412B-A694-65BB6D44F209}
O43 - CFD: 2012/05/20 21:59:18 - [0] D -- C:\Users\louna\AppData\Local\{AF49FF1A-FE1A-4532-A09A-CBF57C675CF7}
O43 - CFD: 2013/03/13 19:10:29 - [0] D -- C:\Users\louna\AppData\Local\{B19D7EAB-E4A0-498A-843E-3A6AB65288FF}
O43 - CFD: 2012/09/01 23:02:02 - [0] D -- C:\Users\louna\AppData\Local\{B4DA92D8-B473-4700-8141-01207ADC8820}
O43 - CFD: 2012/07/23 11:32:47 - [0] D -- C:\Users\louna\AppData\Local\{B5D498C3-2339-4AEF-ADF8-C4ADF79F1A3D}
O43 - CFD: 2012/01/30 22:50:05 - [0] D -- C:\Users\louna\AppData\Local\{B7433950-027D-4F7D-B93F-4FBE0D95FDE8}
O43 - CFD: 2012/01/17 12:53:02 - [0] D -- C:\Users\louna\AppData\Local\{B75444E8-210A-4D1D-8114-D6E34293E4A5}
O43 - CFD: 2012/03/16 14:06:52 - [0] D -- C:\Users\louna\AppData\Local\{B7B37607-CEF9-4786-B112-E4F34DDBDAF1}
O43 - CFD: 2013/01/08 14:47:43 - [0] D -- C:\Users\louna\AppData\Local\{BA9AC036-9B68-493C-A37B-256616D9A038}
O43 - CFD: 2012/04/15 11:51:37 - [0] D -- C:\Users\louna\AppData\Local\{BAF61071-F9AE-440C-B5AE-BCF604D440F5}
O43 - CFD: 2012/10/26 07:51:29 - [0] D -- C:\Users\louna\AppData\Local\{BC57B02D-667C-4884-8602-5F86EC033601}
O43 - CFD: 2012/07/22 19:06:45 - [0] D -- C:\Users\louna\AppData\Local\{BD0F232D-1742-4194-986A-A46847C39BB9}
O43 - CFD: 2012/03/07 10:29:35 - [0] D -- C:\Users\louna\AppData\Local\{BECE8C49-76A7-4439-BD46-98A8B4F333CE}
O43 - CFD: 2012/01/24 08:52:51 - [0] D -- C:\Users\louna\AppData\Local\{BF01E87D-C12B-45CD-BDC4-6D6905323F36}
O43 - CFD: 2012/09/25 15:04:42 - [0] D -- C:\Users\louna\AppData\Local\{C0883C2F-D2DB-405B-9BD5-BDC1F86086B8}
O43 - CFD: 2012/01/15 11:48:47 - [0] D -- C:\Users\louna\AppData\Local\{C3296370-60AC-45F4-B596-A98EA1BEE4DB}
O43 - CFD: 2012/04/28 22:19:31 - [0] D -- C:\Users\louna\AppData\Local\{C40FA35B-EA38-4B47-BF6B-51821B92C637}
O43 - CFD: 2012/05/19 18:17:23 - [0] D -- C:\Users\louna\AppData\Local\{C55285A0-4676-4097-B2D4-C6B53D9F1D37}
O43 - CFD: 2012/04/09 18:59:20 - [0] D -- C:\Users\louna\AppData\Local\{C75D5E89-288A-4789-A8BF-00A373B81E08}
O43 - CFD: 2013/01/28 18:37:33 - [0] D -- C:\Users\louna\AppData\Local\{C781F3F8-37FD-438F-BE6C-A77F4B48F1C6}
O43 - CFD: 2012/07/27 09:20:44 - [0] D -- C:\Users\louna\AppData\Local\{C8CA7027-648A-4CB2-9B1E-F5994E359DFD}
O43 - CFD: 2012/07/28 18:40:21 - [0] D -- C:\Users\louna\AppData\Local\{CA05A6F2-9EC2-4A80-8709-D66499DAB2DF}
O43 - CFD: 2012/04/19 21:48:53 - [0] D -- C:\Users\louna\AppData\Local\{CAA03DF6-053A-47D2-A193-642F64D6FBB3}
O43 - CFD: 2012/05/19 18:17:34 - [0] D -- C:\Users\louna\AppData\Local\{CB6AF850-42B7-484A-86EB-7E376D503414}
O43 - CFD: 2012/05/09 13:06:03 - [0] D -- C:\Users\louna\AppData\Local\{CC64B7C7-6BDD-4640-88A3-27EC2BE88191}
O43 - CFD: 2012/11/05 16:04:08 - [0] D -- C:\Users\louna\AppData\Local\{CCDC4D08-59DC-467F-95CA-29CDB2CAE8C5}
O43 - CFD: 2012/04/25 09:59:15 - [0] D -- C:\Users\louna\AppData\Local\{CD5610F4-E6CB-4340-B974-EDEF27B29DFC}
O43 - CFD: 2012/02/06 21:35:33 - [0] D -- C:\Users\louna\AppData\Local\{CDDB40C4-45CA-49C9-9A7A-662CB6947FE6}
O43 - CFD: 2012/02/09 20:16:21 - [0] D -- C:\Users\louna\AppData\Local\{CE21F22D-99DD-47EF-ADA8-02814CDD2792}
O43 - CFD: 2012/07/11 20:31:57 - [0] D -- C:\Users\louna\AppData\Local\{CE7DAA73-E1DA-4ED6-90DD-EBFB816E3ECF}
O43 - CFD: 2013/03/03 17:04:36 - [0] D -- C:\Users\louna\AppData\Local\{CF9AC22A-349C-4B87-B9A3-474BE439BAB5}
O43 - CFD: 2012/04/20 18:32:19 - [0] D -- C:\Users\louna\AppData\Local\{D02A20A8-1790-4140-A259-8FD564272A39}
O43 - CFD: 2012/09/19 08:10:16 - [0] D -- C:\Users\louna\AppData\Local\{D16208EB-95CE-49AB-A8E8-10840ABE153B}
O43 - CFD: 2012/01/17 12:52:49 - [0] D -- C:\Users\louna\AppData\Local\{D2D045B2-5648-44E4-9442-E5A3A080E9C8}
O43 - CFD: 2013/02/14 19:11:14 - [0] D -- C:\Users\louna\AppData\Local\{D44B6152-1533-4028-859F-4D972781F50F}
O43 - CFD: 2012/05/19 19:26:29 - [0] D -- C:\Users\louna\AppData\Local\{D4B5FE98-6ED1-45E3-A0D0-399DD6D9C128}
O43 - CFD: 2012/02/24 20:26:05 - [0] D -- C:\Users\louna\AppData\Local\{D567CD45-F619-4EFF-8F1B-7052D8790878}
O43 - CFD: 2012/05/08 22:07:38 - [0] D -- C:\Users\louna\AppData\Local\{D668F705-8DB8-434E-8F52-09EF09FEF475}
O43 - CFD: 2013/01/09 10:13:55 - [0] D -- C:\Users\louna\AppData\Local\{D695FE25-5109-410A-8194-A7CB51BCDEEB}
O43 - CFD: 2012/02/18 19:43:03 - [0] D -- C:\Users\louna\AppData\Local\{D900E793-AD48-4AF5-A61D-9D9073C53FC0}
O43 - CFD: 2013/03/08 18:26:39 - [0] D -- C:\Users\louna\AppData\Local\{DA75D7B4-2C28-458E-912F-9023958AE190}
O43 - CFD: 2013/01/31 20:56:56 - [0] D -- C:\Users\louna\AppData\Local\{DB5D0B01-08C0-41BE-90B9-7D025015B633}
O43 - CFD: 2012/04/21 14:19:02 - [0] D -- C:\Users\louna\AppData\Local\{DDED4267-506F-4CBB-AFA9-620B53AF3FE7}
O43 - CFD: 2012/07/22 18:54:30 - [0] D -- C:\Users\louna\AppData\Local\{DE449EC9-39A4-4DFC-A8B3-9CD3E9E45E11}
O43 - CFD: 2012/07/26 17:52:57 - [0] D -- C:\Users\louna\AppData\Local\{DFE5559A-2736-468E-8616-67D982729BDF}
O43 - CFD: 2012/05/09 22:32:36 - [0] D -- C:\Users\louna\AppData\Local\{E043B280-2262-4ABC-BEA7-56AD9DDDB9DA}
O43 - CFD: 2012/08/08 17:29:29 - [0] D -- C:\Users\louna\AppData\Local\{E07A2596-23E7-4953-BCF1-FEE05AEC150D}
O43 - CFD: 2012/05/05 10:37:17 - [0] D -- C:\Users\louna\AppData\Local\{E145BA66-5F54-4462-AAF1-246A88C8A1BB}
O43 - CFD: 2012/12/09 12:42:37 - [0] D -- C:\Users\louna\AppData\Local\{E4F59AAE-A634-4295-A032-8A3F2CE1E8AC}
O43 - CFD: 2013/01/10 18:27:52 - [0] D -- C:\Users\louna\AppData\Local\{E584C7FF-DB76-4086-8628-A987985EE2EE}
O43 - CFD: 2012/11/17 14:10:13 - [0] D -- C:\Users\louna\AppData\Local\{E5BF1EF7-CA55-42A0-8DC5-4A9E261AC5D6}
O43 - CFD: 2012/03/15 19:55:41 - [0] D -- C:\Users\louna\AppData\Local\{E5DD2AD7-4810-48A3-8F18-53CAC73196A7}
O43 - CFD: 2012/07/27 18:43:00 - [0] D -- C:\Users\louna\AppData\Local\{E5E28A76-33F6-4AB8-A3F5-7957DB018953}
O43 - CFD: 2012/03/12 19:10:44 - [0] D -- C:\Users\louna\AppData\Local\{E65F663E-D9CD-4B7C-9469-B3EC519F2E70}
O43 - CFD: 2012/09/12 11:51:38 - [0] D -- C:\Users\louna\AppData\Local\{E66CE414-5F04-4C00-9E96-708BF81BB257}
O43 - CFD: 2015/07/28 13:11:45 - [0] D -- C:\Users\louna\AppData\Local\{E72FC092-BA1A-4870-93DE-C63A04B27C28}
O43 - CFD: 2012/12/24 13:27:32 - [0] D -- C:\Users\louna\AppData\Local\{E96308E9-CAEC-41F4-B2C4-6BF14743CC5D}
O43 - CFD: 2012/09/24 19:06:18 - [0] D -- C:\Users\louna\AppData\Local\{EC65F884-34F7-47AD-B8BA-2546E9927AE6}
O43 - CFD: 2013/02/13 15:04:27 - [0] D -- C:\Users\louna\AppData\Local\{EDE53FEF-8C98-451E-B039-53EC74DEC80F}
O43 - CFD: 2012/10/27 08:49:34 - [0] D -- C:\Users\louna\AppData\Local\{EEB80F1E-0C24-4289-93BD-63C8C27B06BB}
O43 - CFD: 2012/02/06 21:35:21 - [0] D -- C:\Users\louna\AppData\Local\{EEF09562-ACFF-440B-8B93-0BFFC7504EE4}
O43 - CFD: 2013/01/06 11:44:01 - [0] D -- C:\Users\louna\AppData\Local\{EEFDF3C1-3577-4C8B-8EC5-3B92B6DF84D0}
O43 - CFD: 2012/11/09 10:12:00 - [0] D -- C:\Users\louna\AppData\Local\{EF2F94C2-F934-4384-B056-6C41AE58720A}
O43 - CFD: 2012/02/24 20:28:02 - [0] D -- C:\Users\louna\AppData\Local\{EF5E8306-EB65-465C-BD2D-CF4653937C4E}
O43 - CFD: 2012/10/25 19:50:51 - [0] D -- C:\Users\louna\AppData\Local\{F0405379-548A-43C9-A30D-612DC13F9B8D}
O43 - CFD: 2011/12/29 19:50:58 - [0] D -- C:\Users\louna\AppData\Local\{F0AAAC34-6CA5-4C22-BACD-558FF88EACFE}
O43 - CFD: 2012/05/02 11:14:50 - [0] D -- C:\Users\louna\AppData\Local\{F190F320-4D04-4847-9489-B6F09E234951}
O43 - CFD: 2012/04/28 17:55:13 - [0] D -- C:\Users\louna\AppData\Local\{F2F882CD-42E4-409E-8D6D-6E8A4AA81486}
O43 - CFD: 2012/07/25 19:42:29 - [0] D -- C:\Users\louna\AppData\Local\{F2FCC701-06B9-4BED-B6C3-B7D8A9602532}
O43 - CFD: 2013/01/09 22:36:13 - [0] D -- C:\Users\louna\AppData\Local\{F303468E-57CF-40EE-BF55-A44DB71EE021}
O43 - CFD: 2012/06/26 22:00:19 - [0] D -- C:\Users\louna\AppData\Local\{F3B30AED-736B-4496-8F03-902CE5F10722}
O43 - CFD: 2013/03/27 20:34:07 - [0] D -- C:\Users\louna\AppData\Local\{F43F5C12-93D7-4A2A-97C2-0E5EA899BD19}
O43 - CFD: 2012/01/04 13:44:56 - [0] D -- C:\Users\louna\AppData\Local\{F5AFE6BD-0328-4F6D-AD25-960825819066}
O43 - CFD: 2013/01/31 08:56:20 - [0] D -- C:\Users\louna\AppData\Local\{F6108FED-DA21-4A39-BD3F-CC02D8E55462}
O43 - CFD: 2012/01/18 12:23:57 - [0] D -- C:\Users\louna\AppData\Local\{F65593E2-E2AE-4368-85FD-BD1BAB198976}
O43 - CFD: 2012/04/16 18:15:36 - [0] D -- C:\Users\louna\AppData\Local\{F7831A57-8848-435C-A55B-B9B237C2EBA5}
O43 - CFD: 2012/05/05 10:37:31 - [0] D -- C:\Users\louna\AppData\Local\{F9FC3221-F9AA-48DA-925F-E272F064DD44}
O43 - CFD: 2012/09/30 22:19:20 - [0] D -- C:\Users\louna\AppData\Local\{FADE5592-616A-4318-9279-665061E52C17}
O43 - CFD: 2012/03/15 21:04:26 - [0] D -- C:\Users\louna\AppData\Local\{FC467BA7-0859-4741-83E7-E3839FCA97A5}
O43 - CFD: 2012/07/15 19:38:11 - [0] D -- C:\Users\louna\AppData\Local\{FCCA52C1-3FC8-40AA-80E5-E6151958C724}
O43 - CFD: 2012/06/07 21:56:38 - [0] D -- C:\Users\louna\AppData\Local\{FE04675F-6C4A-44CB-AB43-DC68F31B16E4}
O43 - CFD: 2012/04/16 12:01:22 - [0] D -- C:\Users\louna\AppData\Local\{FE10D630-154C-4CC8-9911-30F50C8145E8}
O43 - CFD: 2013/01/05 12:35:28 - [0] D -- C:\Users\louna\AppData\Local\{FE3E9779-4CEA-4DD6-8293-45FC8EF52EF7}
O43 - CFD: 2013/01/07 09:52:10 - [0] D -- C:\Users\louna\AppData\Local\{FEF83808-8D5C-41DC-B1B9-EF1D77387713}
O43 - CFD: 2012/10/31 12:19:31 - [0] D -- C:\Users\louna\AppData\Local\{FFA7AEE5-D190-4753-BAAF-BF1F0AFC6CC5}
O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/23 17:04:54 - [] RD -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/10/15 01:00:08 - [] D -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
O43 - CFD: 2011/10/27 15:38:44 - [] D -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 2013/03/23 18:26:36 - [] D -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/23 17:04:54 - [] RD -- C:\Users\louna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/09/16 17:06:49 - [] D -- C:\Users\louna\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
O43 - CFD: 2015/09/16 17:01:32 - [] D -- C:\Users\louna\AppData\Roaming\Skype
O43 - CFD: 2015/09/16 17:08:23 - [] D -- C:\Users\louna\AppData\Roaming\ZHP
O43 - CFD: 2015/09/16 17:09:05 - [] D -- C:\Users\louna\AppData\Local\Temp

---\\ Enumération des clés StartupReg (14) - 3s
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe ©
O53 - SMSR:HKLM\...\startupreg\cacaoweb [Key] . (...) -- C:\Users\louna\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe ©
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\louna\AppData\Local\Google\Update\GoogleUpdate.exe ©
O53 - SMSR:HKLM\...\startupreg\PDVD8LanguageShortcut [Key] . (.CyberLink Corp. - PowerDVD Language Application.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe ©
O53 - SMSR:HKLM\...\startupreg\RemoteControl8 [Key] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe ©
O53 - SMSR:HKLM\...\startupreg\SweetIM [Key] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe =>PUP.Optional.SweetIM
O53 - SMSR:HKLM\...\startupreg\Sweetpacks Communicator [Key] . (...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.Optional.SweetIM
O53 - SMSR:HKLM\...\startupreg\UCam_Menu [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\UpdateLBPShortCut [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\UpdateP2GoShortCut [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\UpdatePDRShortCut [Key] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\UpdatePPShortCut [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\UpdatePSTShortCut [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe ©

---\\ Liste des pilotes du système (61) - 31s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904] ©
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2015/07/28 21:11:14 A . (.AVAST Software - avast! HWID.) -- C:\windows\System32\drivers\aswHwid.sys [28656] ©
O58 - SDL:2013/05/09 10:59:06 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\windows\System32\drivers\aswKbd.sys [22600] ©
O58 - SDL:2015/07/28 21:11:14 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\windows\System32\drivers\aswMonFlt.sys [90968] ©
O58 - SDL:2015/07/28 21:11:14 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\windows\System32\drivers\aswRdr2.sys [93528] ©
O58 - SDL:2015/07/28 21:11:14 A . (.AVAST Software - avast! Revert.) -- C:\windows\System32\drivers\aswRvrt.sys [65224] ©
O58 - SDL:2015/08/22 18:05:37 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\windows\System32\drivers\aswsnx.sys [1048344] ©
O58 - SDL:2015/07/28 21:11:14 A . (.AVAST Software - avast! self protection module.) -- C:\windows\System32\drivers\aswSP.sys [447944] ©
O58 - SDL:2015/07/28 21:11:15 A . (.AVAST Software - Stream Filter.) -- C:\windows\System32\drivers\aswStm.sys [150672] ©
O58 - SDL:2015/07/28 21:11:14 A . (.AVAST Software - avast! VM Monitor.) -- C:\windows\System32\drivers\aswVmm.sys [274808] ©
O58 - SDL:2011/12/13 03:32:22 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\windows\System32\drivers\athrx.sys [2797056] ©
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2010/11/20 15:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720] ©
O58 - SDL:2009/11/20 08:09:48 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStor.sys [537112] ©
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496] ©
O58 - SDL:2010/12/28 11:05:06 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [10611552] ©
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2010/02/27 02:32:12 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\windows\System32\drivers\Impcd.sys [158976] ©
O58 - SDL:2010/06/19 01:36:04 A . (.Siliten - Flex Define Keyboard Driver.) -- C:\windows\System32\drivers\InputFilter_FlexDef2b.sys [17920] ©
O58 - SDL:2010/12/28 11:05:06 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\windows\System32\drivers\IntcDAud.sys [289280] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352] ©
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272] ©
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2009/06/10 22:35:42 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 64-bit Dr.) -- C:\windows\System32\drivers\Rt64win7.sys [187392] ©
O58 - SDL:2009/12/15 03:57:06 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [2224928] ©
O58 - SDL:2009/05/28 08:38:04 A . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\windows\System32\drivers\SABI.sys [13824] ©
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2010/02/26 20:32:58 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\windows\System32\drivers\SynTP.sys [316464] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872] ©
O58 - SDL:2009/09/28 11:22:00 A . (.©Copyright 2002-2009 Marvell®. All rights reserved. - .) -- C:\windows\System32\drivers\yk62x64.sys [395264]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (5) - 9s
O61 - LFC: 2015/09/16 13:59:31 A . (..) -- C:\Users\louna\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [74039]
O61 - LFC: 2015/09/16 13:08:39 A . (..) -- C:\Users\louna\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [333410]
O61 - LFC: 2015/09/16 16:35:39 A . (..) -- C:\Users\louna\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2015/09/08 20:16:13 A . (..) -- C:\Users\louna\AppData\Local\Browser Max\Bin\BrowserMax.dll [33280]
O61 - LFC: 2015/09/08 20:16:13 A . (..) -- C:\Users\louna\AppData\Local\Browser Max\Bin\evjuqvy.dll [11776]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe ©

---\\ Menu de démarrage Internet (8) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\louna\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (3) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {EA2FFA88-4D71-4890-8916-407FCC5800E9} [DefaultScope] - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (32) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\windows\system32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\windows\System32\gpsvc.dll [777728] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\windows\System32\ikeext.dll [859648] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\windows\System32\Audiosrv.dll [680960] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\windows\System32\rasmans.dll [344064] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\windows\System32\termsrv.dll [683520] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\windows\system32\wuaueng.dll [2606080] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\windows\System32\qmgr.dll [849920] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\windows\System32\iphlpsvc.dll [569344] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\windows\system32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\windows\System32\appinfo.dll [70656] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\windows\system32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\windows\system32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\windows\System32\browser.dll [136704] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\windows\system32\schedsvc.dll [1110016] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\windows\system32\kmsvc.dll [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [210432] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\windows\system32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\windows\System32\bdesvc.dll [100864] ©

---\\ Liste des exceptions du parefeu Windows (4) - 4s
O87 - FAEL: "TCP Query User{528BE9F6-8CD6-4893-BF05-1F70CA5B1C23}C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{6C35E970-196F-4874-ADEC-60D79EE73F21}C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O87 - FAEL: "TCP Query User{8E9B77F6-874F-49A1-9C58-9D4030C87FF4}C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{027810B4-7560-455F-9FF3-3C3CB6020215}C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\louna\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb

---\\ Enumère les codes produits des logiciels (1) - 8s
O90 - PUC: "B2FD9C0A5B9838449838816A28001F4B" . (.SweetIM for Messenger 3.7.) -- C:\windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}\ARPPRODUCTICON.exe =>PUP.Optional.SweetIM

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (7) - 20s

SS - Demand [2015/08/22 18:22:08] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2015/07/28 21:11:03] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
SS - Auto [2014/06/13 14:09:25] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe =>PUP.Optional.GlobalUpdate
SS - Demand [2014/06/13 14:09:25] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe =>PUP.Optional.GlobalUpdate
SR - Auto [2009/07/07 20:23:08] [ 247152] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
SS - Auto [2015/07/09 13:14:04] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©

---\\ Recherche de clés de registre Tracing (28) - 3s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BI_RunOnce_RASAPI32 =>PUP.Optional.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BI_RunOnce_RASMANCS =>PUP.Optional.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASAPI32 =>PUP.Optional.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASMANCS =>PUP.Optional.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_0308-accd2ad2_RASAPI32 =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_0308-accd2ad2_RASMANCS =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Iminent_RASAPI32 =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Iminent_RASMANCS =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Linkury_RASAPI32 =>PUP.Optional.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Linkury_RASMANCS =>PUP.Optional.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASAPI32 =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASMANCS =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pricepeep_130001_1001_RASAPI32 =>PUP.Optional.PricePeep
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pricepeep_130001_1001_RASMANCS =>PUP.Optional.PricePeep
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmartbarExeInstaller_RASAPI32 =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmartbarExeInstaller_RASMANCS =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\sweetim_2210-1be9878d_RASAPI32 =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\sweetim_2210-1be9878d_RASMANCS =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASAPI32 =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASMANCS =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Umbrella_RASAPI32 =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Umbrella_RASMANCS =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WajamUpdater_RASAPI32 =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WajamUpdater_RASMANCS =>PUP.Optional.Wajam

---\\ Scan Additionnel (118) - 0s
C:\Users\louna\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
C:\Users\louna\AppData\Local\Google\Chrome\User Data\Default\Extensions\leahdjjpjmnamomgpojikeapflgbmjab
C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\SupTab\SearchProtect64.dll =>PUP.Optional.SearchProtect
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\q5seMb8h0Lp9Occ =>PUP.Optional.CrossRider
C:\Users\louna\AppData\Roaming\q5seMb8h0Lp9Occ.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\winter web\winter_web_notification_service.exe =>PUP.Optional.CrossRider
C:\Users\louna\AppData\Roaming\~ehaserx.exe =>PUP.Optional.WpManager
C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate
C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate
C:\windows\Tasks\q5seMb8h0Lp9Occ.job =>PUP.Optional.CrossRider
C:\windows\Tasks\winter_web_notification_service.job =>PUP.Optional.CrossRider
C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate
C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate
C:\windows\System32\Tasks\q5seMb8h0Lp9Occ =>PUP.Optional.CrossRider
C:\windows\System32\Tasks\winter_web_notification_service =>PUP.Optional.CrossRider
C:\windows\System32\Tasks\wp_update =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4} =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0} =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\omiga-plusSoftware =>PUP.Optional.OmigaPlus
HKLM\SOFTWARE\Wow6432Node\Pricora 12.0 =>PUP.Optional.Pricora
HKLM\SOFTWARE\Wow6432Node\RocketTab =>PUP.Optional.RocketTab
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsProtectManger =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\SweetIM =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\5e2d88cb569e415 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution
HKCU\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon
HKCU\SOFTWARE\BI =>PUP.Optional.MegaSearch
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Iminent =>PUP.Optional.IMBouster
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\RocketTabInstalled =>PUP.Optional.RocketTab
HKCU\SOFTWARE\SearchProtectINT =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\SweetIM =>PUP.Optional.SweetIM
HKCU\SOFTWARE\Systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\winter web =>PUP.Optional.WinterWeb
HKCU\SOFTWARE\winterweb =>PUP.Optional.WinterWeb
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Pricora 12.0 =>PUP.Optional.Pricora
C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\Greener Web =>PUP.Optional.GreenerWeb
C:\Program Files (x86)\MyPC Backup =>PUP.Optional.MyPCBackup
C:\Program Files (x86)\Nosibay =>PUP.Optional.SPointer
C:\Program Files (x86)\PC Speed Maximizer =>PUP.Optional.PCSpeedMaximizer
C:\Program Files (x86)\Pricora 12.0 =>PUP.Optional.Pricora
C:\Program Files (x86)\SaveClicker =>PUP.Optional.SaveClicker
C:\Program Files (x86)\Search Extensions =>PUP.Optional.RocketTab
C:\Program Files (x86)\Software =>PUP.Optional.Boxore
C:\Program Files (x86)\SupTab =>PUP.Optional.SupTab
C:\Program Files (x86)\SweetIM =>PUP.Optional.SweetIM
C:\Program Files (x86)\winter web =>PUP.Optional.WinterWeb
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
C:\ProgramData\Babylon =>PUP.Optional.Babylon
C:\ProgramData\IePluginServices =>Trojan.SProtector
C:\ProgramData\SaveClicker =>PUP.Optional.SaveClicker
C:\ProgramData\Software =>PUP.Optional.Boxore
C:\ProgramData\SweetIM =>PUP.Optional.SweetIM
C:\ProgramData\WindowsProtectManger =>PUP.Optional.WpManager
C:\Users\louna\AppData\Roaming\Babylon =>PUP.Optional.Babylon
C:\Users\louna\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
C:\Users\louna\AppData\Roaming\Iminent =>PUP.Optional.IMBouster
C:\Users\louna\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock
C:\Users\louna\AppData\Roaming\PC Speed Maximizer =>PUP.Optional.PCSpeedMaximizer
C:\Users\louna\AppData\Roaming\SupTab =>PUP.Optional.SupTab
C:\Users\louna\AppData\Roaming\Systweak =>PUP.Optional.Systweak
C:\Users\louna\AppData\Roaming\wp_update =>PUP.Optional.WpManager
C:\Users\louna\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser
C:\Users\louna\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\louna\AppData\Local\Software =>PUP.Optional.Boxore
C:\Users\louna\AppData\Local\Torch =>PUP.Optional.Torch
C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe =>PUP.Optional.SweetIM
C:\windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}\ARPPRODUCTICON.exe =>PUP.Optional.SweetIM
HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B =>PUP.Optional.SweetIM
HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B =>PUP.Optional.SweetIM
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BI_RunOnce_RASAPI32 =>PUP.Optional.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BI_RunOnce_RASMANCS =>PUP.Optional.MegaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASAPI32 =>PUP.Optional.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASMANCS =>PUP.Optional.BrowserSafeguard
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_0308-accd2ad2_RASAPI32 =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup_0308-accd2ad2_RASMANCS =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Iminent_RASAPI32 =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Iminent_RASMANCS =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Linkury_RASAPI32 =>PUP.Optional.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Linkury_RASMANCS =>PUP.Optional.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASAPI32 =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASMANCS =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pricepeep_130001_1001_RASAPI32 =>PUP.Optional.PricePeep
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pricepeep_130001_1001_RASMANCS =>PUP.Optional.PricePeep
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmartbarExeInstaller_RASAPI32 =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmartbarExeInstaller_RASMANCS =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\sweetim_2210-1be9878d_RASAPI32 =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\sweetim_2210-1be9878d_RASMANCS =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASAPI32 =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASMANCS =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Umbrella_RASAPI32 =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Umbrella_RASMANCS =>PUP.Optional.IMBouster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WajamUpdater_RASAPI32 =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WajamUpdater_RASMANCS =>PUP.Optional.Wajam

---\\ Récapitulatif des éléments trouvées sur votre station (37) - 0s
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/pup-helperbar/ =>PUP.Optional.HelperBar
http://www.nicolascoolman.fr/hijacker-omigaplus/ =>PUP.Optional.OmigaPlus
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/pup-sweetim/ =>PUP.Optional.SweetIM
http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/pup-datamngr/ =>PUP.Optional.Datamngr
http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBouster
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/adware-pricora/ =>PUP.Optional.Pricora
http://www.nicolascoolman.fr/blog =>PUP.Optional.RocketTab
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak
http://www.nicolascoolman.fr/blog =>PUP.Optional.Heuristic
http://www.nicolascoolman.fr/hijacker-babsolution/ =>PUP.Optional.BabSolution
http://www.nicolascoolman.fr/adware-megasearch/ =>PUP.Optional.MegaSearch
http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.WinterWeb
http://www.nicolascoolman.fr/pup-greenerweb/ =>PUP.Optional.GreenerWeb
http://www.nicolascoolman.fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup
http://www.nicolascoolman.fr/rogue-pcspeedmaximizer/ =>PUP.Optional.PCSpeedMaximizer
http://www.nicolascoolman.fr/pup-saveclicker/ =>PUP.Optional.SaveClicker
http://www.nicolascoolman.fr/blog =>PUP.Optional.FLVPlayer
http://www.nicolascoolman.fr/trojan-sprotector/ =>Trojan.SProtector
http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock
http://www.nicolascoolman.fr/blog =>PUP.Optional.ChromaticBrowser
http://www.nicolascoolman.fr/blog =>PUP.Optional.Torch
http://www.nicolascoolman.fr/pup-advancedsystemprotector/ =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/pup-browsersafeguard/ =>PUP.Optional.BrowserSafeguard
http://www.nicolascoolman.fr/blog =>PUP.Optional.Linkury
http://www.nicolascoolman.fr/blog =>PUP.Optional.PricePeep
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam

~ End of the scan, 174932 items in 306 seconds (1241)(0)()

Publicité


Signaler le contenu de ce document

Publicité