cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.10.30.158 Par Nicolas Coolman (2015/10/29)
~ Démarré par bouroi (Administrator) (2015/11/01 00:06:44)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\bouroi\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\bouroi\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows Se7en Titan, 32-bit (Build 7600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 41.0.2 (x86 fr) v41.0.2
MSIE: Internet Explorer v8.0.7600.16385

---\\ Informations sur les produits Windows (9) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
~ Windows Partial Key : HYRR2
Windows License : OK
~ Windows Remaining Initializations Number : 1
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 19s
Kaspersky Internet Security v15.0.2.396
Windows Defender W7 (Activate)

---\\ Logiciels d'optimisation (1) - 19s
CCleaner v5.10

---\\ Surveillance de Logiciels (1) - 19s
Adobe Flash Player 19 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 16 Model 2 Stepping 3, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 784.888 MB (6% free)
~ System Restore: Activé (Enable)
~ System drive C: has 48 GB free of 99 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BOUROI-PC
~ User Name: bouroi
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 11s
~ Drive C: has 48 GB free of 99 GB (System)
~ Drive D: has 32 GB free of 70 GB
~ Drive E: has 51 GB free of 68 GB

---\\ Etat du Centre de Sécurité Windows (13) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoResolveSearch: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 4s
[MD5.9BA1F2C5A3F98D85921456295A3C4A20] - 31/10/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2614272] ©
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] ©
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] ©
[MD5.78B9ADA2BC8946AF7B17678E0D07A773] - 21/12/2010 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [981504] ©
[MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - 28/10/2009 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [285696] ©
[MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - 14/07/2009 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193024] ©
[MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 14/07/2009 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [269824] ©
[MD5.5DD0F25A9EE8254AE139FB1EBD7BE641] - 30/06/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] ©
[MD5.DDC040FDB01EF1712A6B13E52AFB104C] - 14/07/2009 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] ©
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] ©
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] ©
[MD5.BA6E70AA0E6091BC39DE29477D866A77] - 14/07/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] ©
[MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - 27/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] ©
[MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] ©
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] ©
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] ©
[MD5.F1B6AA08497EA86CA6EF6F7A08B0BFB8] - 27/02/2010 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123392] ©
[MD5.DD52A733BF4CA5AF84562A5E2F963B91] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] ©
[MD5.3795DCD21F740EE799FB7223234215AF] - 14/07/2009 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1210432] ©
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] ©
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] ©
[MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133120] ©
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] ©
[MD5.CB39E896A2A83702D1737BFD402B3542] - 14/07/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74240] ©
[MD5.59F06B4968E58BC83DFC56CA4517960E] - 06/09/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245616] ©

---\\ Processus lancés (22) - 3s
[MD5.753FB1124BDEFAC4BE71F20783FC3BA2] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCService.exe [911648] [PID.864] ©
[MD5.25C5A4FF9378D8981F03CE1321E5DB4D] - (.IOBit - Advanced SystemCare Ultimate Service.) -- C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe [660768] [PID.928] ©
[MD5.2870CE9BFD6BA66FB0FFC6D11C9E41A7] - (.Arcai.com - Arp Intelligent Protection Service.) -- C:\Program Files\netcut\services\aips.exe [262144] [PID.1424] ©
[MD5.F21FA9E662E8AE8A8DA26BEA193C709C] - (.IObit - IObit Malware Fighter Service.) -- C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [882464] [PID.1704] ©
[MD5.9C7C876ACB9B707ECD08BD434C46A4D3] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe [194000] [PID.1924] ©
[MD5.1CEA2C2C9658D84A8E5E1207E1780E8C] - (.Arcai.com - NetCut Arp Spoof Application.) -- C:\Program Files\netcut\netcut.exe [897024] [PID.2328] ©
[MD5.028E9DF30FCECB3F98D78D6EBA613F8E] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [14688512] [PID.2496] ©
[MD5.9C967DE1D2513B14A2B84F3597B272C3] - (.Onexite inc - مواقيت الصلاة لولايات الجزائر.) -- C:\Program Files\mawakitt\Adan.exe [8565760] [PID.2504]
[MD5.68736FF20A479E0A5555EEB65ADC4A39] - (.IObit - Advanced SystemCare Ultimate Tray.) -- C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe [2596640] [PID.2524] ©
[MD5.3DDC1784EA5963EFBDF5D528D53820B4] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3911248] [PID.2544] ©
[MD5.77C01F1850E55373280A1B865D824F58] - (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\bouroi\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008] [PID.2596] ©
[MD5.9673485626808B1BB6B30D7F388A93FC] - (...) -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Little transparency.exe [402263] [PID.2608]
[MD5.1DC0CC580B6149CE24782B65384F34BD] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6495144] [PID.2712] ©
[MD5.70AF0E844C9A684236B96E582D2B2E61] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe [192768] [PID.2992] ©
[MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.3112] ©
[MD5.363006ED1B459555B27D74A4B7EE4673] - (.IObit - IObit Malware Fighter.) -- C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [5889824] [PID.3252] ©
[MD5.6C0138F04CE2936E81B634B5F163D2E8] - (.IObit - IObit Malware Fighter Tips.) -- C:\Program Files\IObit\IObit Malware Fighter\IMFTips.exe [2062112] [PID.4036] ©
[MD5.23D0E41260FEA8B4BC35E9623560CB3A] - (.IObit - IObit Uninstaller 5 UninstallMontior.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe [260896] [PID.2648] ©
[MD5.14DCA74CB34502CA919966F31FBB8B0D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [377000] [PID.4844] ©
[MD5.91EADE0A0A24664F75955377EDF2E4E2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [278184] [PID.2476] ©
[MD5.0140C2A5996C9A29D6504D81AC01913B] - (.Greatis Software - Detects Rootkits in background.) -- C:\Program Files\UnHackMe\hackmon.exe [596240] [PID.5088]
[MD5.0C9ED96644A1A39C420DE030F447DDF0] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\bouroi\Desktop\ZHPDiag3.exe [1961984] [PID.3152] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (12) - 3s
P2 - EXT FILE: (...) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\autopagerfixed@mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\firefox@zenmate.com.xpi
P2 - EXT FILE: (...) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\ipinfo@hidemyass.com.xpi
P2 - EXT FILE: (...) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\jid1-f3mYMbCpz2AZYl@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\jid1-rs90nxQtPi3Asg@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\s3google@translator.xpi
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\bouroi\AppData\Roaming\Mozilla\Firefox\Profiles\49c1sc50.default-1427406204834\extensions\iobitascsurfingprotection@iobit.com ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_19_0_0_226.dll ©
P2 - FPN: [HKLM] [@kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098] - (.kaspersky.com.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com ©
P2 - FPN: [HKLM] [@kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5] - (.kaspersky.com.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com ©
P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E] - (.kaspersky.com.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.globasearch.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (32)

---\\ Browser Helper Object de navigateur (BHO) (10) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll ©
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} . (.IObit - Uninstall for explorer.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer.dll ©
O2 - BHO: VirtualKeyboardBrowserHelperObject - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll ©
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.9.0\bin\ssv.dll ©
O2 - BHO: ContentBlockerBrowserHelperObject - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll ©
O2 - BHO: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} . (.Adblock - Helps you remove browser ads!.) -- C:\Program Files\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll
O2 - BHO: Safe Money Plugin - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll ©
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} . (.IObit - Advanced SystemCare 8 ASCPlugin_Protection.) -- C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll ©
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.9.0\bin\jp2ssv.dll ©

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 0xE80D9009CA1D3F44924326FF581438AF - [HKCU]{09900DE8-1DCA-443F-9243-26FF581438AF} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (15) - 1s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe ©
O4 - HKLM\..\Run: [مواقيت الصلاة] . (.Onexite inc - مواقيت الصلاة لولايات الجزائر.) -- C:\Program Files\mawakitt\Adan.exe
O4 - HKLM\..\Run: [IObit Malware Fighter] . (.IObit - IObit Malware Fighter.) -- C:\Program Files\IObit\IObit Malware Fighter\IMF.exe ©
O4 - HKCU\..\Run: [Advanced SystemCare Ultimate] . (.IObit - Advanced SystemCare Ultimate Tray.) -- C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe ©
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\bouroi\AppData\Local\Microsoft\BingSvc\BingSvc.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-185543580-3310933861-293528809-1000\..\Run: [Advanced SystemCare Ultimate] . (.IObit - Advanced SystemCare Ultimate Tray.) -- C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe ©
O4 - HKUS\S-1-5-21-185543580-3310933861-293528809-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKUS\S-1-5-21-185543580-3310933861-293528809-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKUS\S-1-5-21-185543580-3310933861-293528809-1000\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\bouroi\AppData\Local\Microsoft\BingSvc\BingSvc.exe ©

---\\ Raccourcis Global Startup (3) - 9s
O4 - GS\Quicklaunch [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Quicklaunch [bouroi]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Quicklaunch [Invité]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (26) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} . (.Belarc, Inc. - Belarc VoilaX Control.) -- C:\Program Files\Belarc\BelarcAdvisor\System\BAVoilaX.dll
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (6) - 1s
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCService.exe ©
O23 - Service: Arp Intelligent Protection Service (AIPS) . (.Arcai.com - Arp Intelligent Protection Service.) - C:\Program Files\netcut\services\aips.exe ©
O23 - Service: AdvancedSystemCareAntivirus (ASCAntivirusSrv) . (.IOBit - Advanced SystemCare Ultimate Service.) - C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe ©
O23 - Service: Kaspersky Anti-Virus Service 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe ©
O23 - Service: IMF Service (IMFservice) . (.IObit - IObit Malware Fighter Service.) - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe ©
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe ©

---\\ Logiciels installés (50) - 15s
O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Advanced SystemCare Ultimate 8 - (.IObit.) [HKLM] -- Advanced SystemCare Ultimate_is1 ©
O42 - Logiciel: Any Video Converter Ultimate 5.8.2 - (.Any-Video-Converter.com.) [HKLM] -- Any Video Converter Ultimate_is1
O42 - Logiciel: Belarc Advisor 8.4 - (.Belarc Inc..) [HKLM] -- Belarc Advisor ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner ©
O42 - Logiciel: Cheat Engine 6.1 - (.Dark Byte.) [HKLM] -- Cheat Engine 6.1_is1 ©
O42 - Logiciel: Driver Booster 2.4 - (.IObit.) [HKLM] -- Driver Booster_is1 ©
O42 - Logiciel: Hard Disk Low Level Format Tool 4.40 - (.HDDGURU.) [HKLM] -- Hard Disk Low Level Format Tool_is1 ©
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142} ©
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager ©
O42 - Logiciel: IObit Malware Fighter 3 - (.IObit.) [HKLM] -- IObit Malware Fighter_is1 ©
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM] -- IObit Surfing Protection_is1 ©
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM] -- IObitUninstall ©
O42 - Logiciel: Letters from Nowhere 2 - (.GameTop Pte. Ltd..) [HKLM] -- Letters from Nowhere 2_is1
O42 - Logiciel: LingvoSoft Talking Dictionary 2006 (French<->Arabic) for Windows - (...) [HKLM] -- LingvoSoft Talking Dictionary 2006 (French<->Arabic) for Windows
O42 - Logiciel: mawakitt 5.2.0.0 - (.مواقيت الصلاة لولايات الجزائر.) [HKLM] -- mawakitt 5.2.0.0
O42 - Logiciel: Mozilla Firefox 41.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 41.0.2 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService ©
O42 - Logiciel: NetCut 2.1.4 - (.arcai.com.) [HKLM] -- NetCut_is1 ©
O42 - Logiciel: 1.0 - (.Okdo Software, Inc..) [HKLM] -- Okdosoft OCR Language Pack - Arabic_is1
O42 - Logiciel: 1.0 - (.Okdo Software, Inc..) [HKLM] -- Okdosoft OCR Language Pack - French_is1
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 ©
O42 - Logiciel: Smart Defrag 4 - (.IObit.) [HKLM] -- Smart Defrag 4_is1 ©
O42 - Logiciel: Speccy - (.Piriform.) [HKLM] -- Speccy ©
O42 - Logiciel: SuperCopier2 - (...) [HKLM] -- SuperCopier2
O42 - Logiciel: Super Motocross Africa - (.GameHitZone.com.) [HKLM] -- SuperMotocrossAfrica_is1
O42 - Logiciel: UnHackMe 7.80 release - (.Greatis Software, LLC..) [HKLM] -- UnHackMe_is1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player ©
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst ©
O42 - Logiciel: WinRAR 4.11 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver ©
O42 - Logiciel: Xilisoft Convertisseur Vidéo Ultimate - (.Xilisoft.) [HKLM] -- Xilisoft Convertisseur Vidéo Ultimate
O42 - Logiciel: YoWindow - (.RepkaSoft.) [HKLM] -- yowindow ©
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {02FECEE0-16B2-43DB-BC3B-C844477FC142} ©
O42 - Logiciel: Java 7 Update 72 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F03217072FF} ©
O42 - Logiciel: Java 9 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83219000F0} ©
O42 - Logiciel: Corel PDF Fusion - (.Corel Corporation.) [HKLM] -- {2D769EF2-E9FE-4AC6-8990-15C39E1D68BF} ©
O42 - Logiciel: 4Videosoft Blu-ray Player 6.1.82 - (.4Videosoft Studio.) [HKLM] -- {35920572-E9B4-4607-BFB5-BFC3965BA546}_is1 ©
O42 - Logiciel: CueClub - (...) [HKLM] -- {39D7BD4A-5BE7-11D4-9D68-0020781864F1}
O42 - Logiciel: Freedom Fighters [by eXtreme] (remove only) - (...) [HKLM] -- {5E5F77A4-5547-4BB3-83AF-A7FB706E63E6}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Quranflash Desktop الإصدار 1.2 - (.Vijua, Inc..) [HKLM] -- {628E798A-4A77-46F8-9E3D-5A5D6377323E}}_is1
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: CyberLink MediaShow 6 - (.CyberLink Corp..) [HKLM] -- {8FCCB703-3FBF-49e7-A43F-A81E27D9B07E} ©
O42 - Logiciel: Corel PDF Fusion Addins - (.Corel Corporation.) [HKLM] -- {91CDC66B-B362-4247-957D-7C0D321F374E} ©
O42 - Logiciel: Cam Wizard - (.Ledset Software.) [HKLM] -- {964EE990-D3CA-43A6-AB4F-530FEBA09046}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {96EB95A2-5245-4EA2-B6EA-B8BA2FBF64C4} ©
O42 - Logiciel: Architecte 3D Ultimate - (.Avanquest Software.) [HKLM] -- {A552CCF8-51D3-49D9-AD30-A939626F2299} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: QQ影音3.9 - (.腾讯科技(深圳)有限公司.) [HKCU] -- QQPlayer

---\\ HKCU & HKLM Software Keys (121) - 15s
HKLM\SOFTWARE\ADSRemoval
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\Arcai
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\Avanquest
HKLM\SOFTWARE\Belarc
HKLM\SOFTWARE\Bigasoft
HKLM\SOFTWARE\Bulldog
HKLM\SOFTWARE\CoreCodec
HKLM\SOFTWARE\Corel
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\Dolby
HKLM\SOFTWARE\DTS
HKLM\SOFTWARE\Electronic Arts
HKLM\SOFTWARE\Fortemedia
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GPL Ghostscript
HKLM\SOFTWARE\Greatis
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\IObit
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\KasperskyLab
HKLM\SOFTWARE\Knowles
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Mail.Ru
HKLM\SOFTWARE\MediaShow_Upgrade
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\MSC-Soft
HKLM\SOFTWARE\Nahimic
HKLM\SOFTWARE\Nuance
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\PopCap
HKLM\SOFTWARE\Real
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\repkasoft
HKLM\SOFTWARE\SiteSee
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\SoundResearch
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\vLite
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\WinLicense
HKLM\SOFTWARE\WinPcap
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Xilisoft
HKCU\SOFTWARE\4Videosoft Studio
HKCU\SOFTWARE\6C2F3F40
HKCU\SOFTWARE\AlphaSkins
HKCU\SOFTWARE\Anvsoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Arcai.com
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\ATI Technologies Inc.
HKCU\SOFTWARE\Avanquest
HKCU\SOFTWARE\Belarc
HKCU\SOFTWARE\Bigasoft
HKCU\SOFTWARE\Bluetooth Driver Installer
HKCU\SOFTWARE\Bmupd
HKCU\SOFTWARE\CatalinaGroup
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\CherryPlayer
HKCU\SOFTWARE\CoreAAC
HKCU\SOFTWARE\Corel
HKCU\SOFTWARE\cybelsoft
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\Drivers
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Engelmann Media
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Greatis
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mirillis
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PUSH Entertainment
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Regrun
HKCU\SOFTWARE\repkasoft
HKCU\SOFTWARE\RocketDock
HKCU\SOFTWARE\SMADΔV
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\System32
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\txn
HKCU\SOFTWARE\Win
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Xilisoft
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Mail.Ru

---\\ Contenu des dossiers Programmes (250) - 14s
O43 - CFD: 14/10/2015 - [] D -- C:\Program Files\4Videosoft Studio
O43 - CFD: 19/12/2014 - [] D -- C:\Program Files\Anvisoft
O43 - CFD: 20/08/2015 - [] D -- C:\Program Files\Anvsoft
O43 - CFD: 09/12/2014 - [] D -- C:\Program Files\Avanquest
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Belarc
O43 - CFD: 16/10/2015 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 15/11/2014 - [] D -- C:\Program Files\Cheat Engine 6.1
O43 - CFD: 25/07/2015 - [0] D -- C:\Program Files\CherryPlayer
O43 - CFD: 18/08/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 17/12/2014 - [] D -- C:\Program Files\Corel
O43 - CFD: 12/01/2015 - [] D -- C:\Program Files\CyberLink
O43 - CFD: 17/10/2015 - [0] D -- C:\Program Files\DAUM
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 06/02/2015 - [] D -- C:\Program Files\Engelmann Media
O43 - CFD: 04/10/2014 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 24/10/2014 - [0] D -- C:\Program Files\Freedom Factory Studios
O43 - CFD: 11/02/2015 - [0] D -- C:\Program Files\FreeTime
O43 - CFD: 20/09/2015 - [] D -- C:\Program Files\GameHitZone.com
O43 - CFD: 11/06/2015 - [] D -- C:\Program Files\GameTop.com
O43 - CFD: 02/10/2015 - [] D -- C:\Program Files\Google
O43 - CFD: 18/08/2015 - [] D -- C:\Program Files\HDDGURU LLF Tool
O43 - CFD: 10/10/2014 - [] D -- C:\Program Files\HSPA USB Modem
O43 - CFD: 12/01/2015 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files\IO3O LLC
O43 - CFD: 17/04/2015 - [] D -- C:\Program Files\IObit
O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\Java
O43 - CFD: 11/02/2015 - [] D -- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 20/04/2015 - [] D -- C:\Program Files\Kaspersky Lab
O43 - CFD: 12/01/2015 - [] D -- C:\Program Files\LingvoSoft
O43 - CFD: 04/10/2014 - [] D -- C:\Program Files\ma-config.com
O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\mawakitt
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 09/02/2015 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 16/10/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 16/10/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 22/08/2015 - [] D -- C:\Program Files\netcut
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Okdo Document Converter Professional
O43 - CFD: 21/04/2015 - [] D -- C:\Program Files\Okdosoft OCR Language Pack - Arabic
O43 - CFD: 21/04/2015 - [] D -- C:\Program Files\Okdosoft OCR Language Pack - French
O43 - CFD: 17/10/2014 - [] D -- C:\Program Files\Quranflash Desktop
O43 - CFD: 20/07/2015 - [] D -- C:\Program Files\Real
O43 - CFD: 05/10/2014 - [] D -- C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 28/11/2010 - [] D -- C:\Program Files\RocketDock
O43 - CFD: 13/02/2015 - [] D -- C:\Program Files\Siteken Games
O43 - CFD: 18/08/2015 - [] D -- C:\Program Files\Speccy
O43 - CFD: 11/10/2014 - [] D -- C:\Program Files\SuperCopier2
O43 - CFD: 06/09/2015 - [] D -- C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\UnHackMe
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 06/10/2014 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 04/10/2014 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\WinPcap
O43 - CFD: 05/10/2014 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 18/08/2015 - [] D -- C:\Program Files\Xilisoft
O43 - CFD: 07/11/2014 - [] D -- C:\Program Files\YoWindow
O43 - CFD: 14/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Videosoft
O43 - CFD: 23/12/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 29/11/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 15/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 8
O43 - CFD: 20/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft
O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\arcai.com
O43 - CFD: 09/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avanquest
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cam Wizard
O43 - CFD: 26/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 15/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.1
O43 - CFD: 26/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CherryPlayer
O43 - CFD: 17/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PDF Fusion
O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink MediaShow
O43 - CFD: 17/10/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum
O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2
O43 - CFD: 07/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Engelmann Media
O43 - CFD: 09/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
O43 - CFD: 30/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freedom Fighters
O43 - CFD: 20/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHitZone.com
O43 - CFD: 29/11/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 11/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameTop.com
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Low Level Format Tool
O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 24/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
O43 - CFD: 18/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 20/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LingvoSoft
O43 - CFD: 04/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 08/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 11/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyRealGames.com
O43 - CFD: 27/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 17/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quranflash Desktop
O43 - CFD: 20/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealGames
O43 - CFD: 28/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock
O43 - CFD: 28/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sexy Chicks
O43 - CFD: 27/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4
O43 - CFD: 05/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
O43 - CFD: 20/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 28/11/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titan-Se7en™
O43 - CFD: 31/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
O43 - CFD: 10/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
O43 - CFD: 05/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft
O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YoWindow
O43 - CFD: 07/09/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
O43 - CFD: 14/10/2015 - [] D -- C:\ProgramData\4Videosoft Studio
O43 - CFD: 19/12/2014 - [] D -- C:\ProgramData\Anvisoft
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 09/12/2014 - [0] D -- C:\ProgramData\Avanquest
O43 - CFD: 04/10/2014 - [0] HD -- C:\ProgramData\AVP11
O43 - CFD: 11/01/2015 - [] D -- C:\ProgramData\Baidu
O43 - CFD: 04/10/2014 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 17/12/2014 - [] D -- C:\ProgramData\Corel
O43 - CFD: 17/12/2014 - [0] D -- C:\ProgramData\Corel PDF Fusion
O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 06/02/2015 - [] D -- C:\ProgramData\Engelmann Media
O43 - CFD: 04/10/2014 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 05/10/2014 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 18/09/2015 - [] D -- C:\ProgramData\IObit
O43 - CFD: 31/10/2015 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 20/04/2015 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files
O43 - CFD: 10/10/2014 - [] D -- C:\ProgramData\Kristanix Games
O43 - CFD: 07/02/2015 - [0] D -- C:\ProgramData\Licenses
O43 - CFD: 04/10/2014 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 04/10/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 20/07/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 16/10/2014 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 05/11/2014 - [] D -- C:\ProgramData\Mirillis
O43 - CFD: 04/10/2014 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 05/10/2014 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 31/10/2015 - [] D -- C:\ProgramData\ProductData =>PUP.Optional.Generic
O43 - CFD: 09/12/2014 - [] D -- C:\ProgramData\Punch! Software
O43 - CFD: 31/10/2015 - [0] D -- C:\ProgramData\RegRun
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 20/11/2014 - [] D -- C:\ProgramData\Sun
O43 - CFD: 13/08/2015 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 06/09/2015 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Xilisoft
O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\YoWindow
O43 - CFD: 19/10/2014 - [0] D -- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
O43 - CFD: 19/10/2014 - [] D -- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
O43 - CFD: 19/10/2014 - [] D -- C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424}
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 20/07/2015 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 05/03/2015 - [] D -- C:\Program Files\Common Files\IObit
O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 17/12/2014 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 03/12/2014 - [] D -- C:\Program Files\Common Files\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 21/05/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\.oit
O43 - CFD: 04/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Adobe
O43 - CFD: 03/10/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Anvsoft
O43 - CFD: 19/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Apple Computer
O43 - CFD: 29/05/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Awem
O43 - CFD: 14/05/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Bigasoft Total Video Converter 4
O43 - CFD: 12/01/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\CyberLink
O43 - CFD: 16/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\desktop.quranflash
O43 - CFD: 31/10/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\DMCache
O43 - CFD: 31/07/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\DownloadNinja
O43 - CFD: 06/02/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Engelmann Media
O43 - CFD: 20/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\FarmUp_realore_en
O43 - CFD: 23/06/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\hexrace-bdbe5bf528092de05a8922fc65d77242
O43 - CFD: 04/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Identities
O43 - CFD: 31/10/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\IDM
O43 - CFD: 16/08/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\IObit
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\bouroi\AppData\Roaming\Media Center Programs
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Media Player Classic
O43 - CFD: 11/06/2015 - [] SD -- C:\Users\bouroi\AppData\Roaming\Microsoft
O43 - CFD: 06/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Million
O43 - CFD: 05/11/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Mirillis
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Mozilla
O43 - CFD: 06/06/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\NevoSoft Games
O43 - CFD: 14/03/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\ProductData
O43 - CFD: 09/12/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Punch! Software
O43 - CFD: 13/02/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\quickclick
O43 - CFD: 17/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\QuranflashProxy
O43 - CFD: 07/09/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 23/06/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\tetrixultimate-ac9d881291c31e08d74262a5a050987f
O43 - CFD: 06/09/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\USBSafelyRemove
O43 - CFD: 05/12/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\uTorrent
O43 - CFD: 21/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Video Wallpaper
O43 - CFD: 17/10/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\vlc
O43 - CFD: 24/10/2014 - [0] D -- C:\Users\bouroi\AppData\Roaming\WebExtend
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\WinRAR
O43 - CFD: 18/08/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Xilisoft
O43 - CFD: 21/04/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\YCanPDF
O43 - CFD: 10/05/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\YoWindow
O43 - CFD: 01/11/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\ZHP
O43 - CFD: 12/06/2015 - [0] D -- C:\Users\bouroi\AppData\Local\Adobe
O43 - CFD: 04/10/2014 - [0] SHD -- C:\Users\bouroi\AppData\Local\Application Data
O43 - CFD: 22/10/2015 - [] D -- C:\Users\bouroi\AppData\Local\CatalinaGroup
O43 - CFD: 24/07/2015 - [] D -- C:\Users\bouroi\AppData\Local\CherryPlayer
O43 - CFD: 12/01/2015 - [] D -- C:\Users\bouroi\AppData\Local\Cyberlink
O43 - CFD: 25/10/2015 - [] D -- C:\Users\bouroi\AppData\Local\Diagnostics
O43 - CFD: 24/10/2015 - [] D -- C:\Users\bouroi\AppData\Local\ElevatedDiagnostics
O43 - CFD: 27/07/2015 - [] D -- C:\Users\bouroi\AppData\Local\Google
O43 - CFD: 04/10/2014 - [0] SHD -- C:\Users\bouroi\AppData\Local\Historique
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Local\Macromedia
O43 - CFD: 04/10/2014 - [] D -- C:\Users\bouroi\AppData\Local\Mail.Ru
O43 - CFD: 31/10/2015 - [] D -- C:\Users\bouroi\AppData\Local\Microsoft
O43 - CFD: 22/10/2014 - [] D -- C:\Users\bouroi\AppData\Local\Microsoft Games
O43 - CFD: 15/10/2014 - [0] D -- C:\Users\bouroi\AppData\Local\Microsoft Help
O43 - CFD: 07/02/2015 - [] D -- C:\Users\bouroi\AppData\Local\Mirillis
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Local\Mozilla
O43 - CFD: 11/06/2015 - [] D -- C:\Users\bouroi\AppData\Local\Oberon Games
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Local\Programs
O43 - CFD: 01/11/2015 - [] D -- C:\Users\bouroi\AppData\Local\Temp
O43 - CFD: 04/10/2014 - [0] SHD -- C:\Users\bouroi\AppData\Local\Temporary Internet Files
O43 - CFD: 17/10/2015 - [] D -- C:\Users\bouroi\AppData\Local\VirtualStore
O43 - CFD: 04/10/2015 - [] D -- C:\Users\bouroi\AppData\Local\WindowsUpdate
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 05/10/2014 - [] RD -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 30/05/2015 - [0] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freedom Fighters
O43 - CFD: 20/09/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameHitZone.com
O43 - CFD: 28/09/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 23/08/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 12/01/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LingvoSoft
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 11/02/2015 - [0] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mirillis
O43 - CFD: 13/02/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Siteken Games
O43 - CFD: 30/11/2014 - [] RD -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 11/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2
O43 - CFD: 05/10/2014 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 06/09/2015 - [] D -- C:\Users\bouroi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件

---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 0s
O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll ©
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll ©
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll ©

---\\ Enumération des clés StartupReg (1) - 1s
O53 - SMSR:HKLM\...\startupreg\CorelCreatorClient [Key] . (.Global Graphics Software Ltd. - gDocCreator Client application.) -- C:\Program Files\Corel\Corel PDF Fusion\CorelCreatorClient.exe

---\\ Liste des pilotes du système (87) - 8s
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] ©
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] ©
O58 - SDL:2014/11/20 14:27:55 A . (.Advanced Micro Devices Inc. - AMD miniIDE Driver.) -- C:\Windows\System32\drivers\amdide.sys [11944] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79952] ©
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [23616] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] ©
O58 - SDL:2014/10/05 01:26:35 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [4450816] ©
O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] ©
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [1131008] ©
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] ©
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] ©
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] ©
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] ©
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] ©
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] ©
O58 - SDL:2015/01/07 20:45:51 A . (.IVT Corporation. - Bluetooth USB Device Driver.) -- C:\Windows\System32\drivers\btcusb.sys [36616]
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] ©
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] ©
O58 - SDL:2015/06/22 23:07:52 A . (.Kaspersky Lab UK Ltd - Cryptographic Module.) -- C:\Windows\System32\drivers\cm_km_w.sys [197864] ©
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] ©
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] ©
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] ©
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] ©
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] ©
O58 - SDL:2015/01/07 20:33:55 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO32.SYS [23840]
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332352] ©
O58 - SDL:2015/06/12 03:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [123968] ©
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] ©
O58 - SDL:2015/06/22 23:11:50 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [153784] ©
O58 - SDL:2015/06/22 23:11:50 A . (.Kaspersky Lab ZAO - Virtual Disk fre_wnet_x86.) -- C:\Windows\System32\drivers\kldisk.sys [54640] ©
O58 - SDL:2015/06/22 23:08:53 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x86].) -- C:\Windows\System32\drivers\klflt.sys [128728] ©
O58 - SDL:2015/06/29 13:14:55 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x86].) -- C:\Windows\System32\drivers\klhk.sys [44208] ©
O58 - SDL:2015/10/05 19:47:39 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klif.sys [692920] ©
O58 - SDL:2015/06/22 23:11:57 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\Windows\System32\drivers\klim6.sys [34160] ©
O58 - SDL:2015/06/22 23:09:24 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x8.) -- C:\Windows\System32\drivers\klkbdflt.sys [36208] ©
O58 - SDL:2015/06/22 23:09:28 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klmouflt.sys [35696] ©
O58 - SDL:2015/06/22 23:11:58 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) -- C:\Windows\System32\drivers\klpd.sys [23920] ©
O58 - SDL:2015/06/22 23:11:58 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- C:\Windows\System32\drivers\kltdi.sys [54328] ©
O58 - SDL:2015/06/22 23:11:59 A . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\Windows\System32\drivers\klwtp.sys [72560] ©
O58 - SDL:2015/10/05 19:47:40 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) -- C:\Windows\System32\drivers\kneps.sys [157240] ©
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] ©
O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] ©
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] ©
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] ©
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] ©
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] ©
O58 - SDL:2007/10/28 20:21:54 A . (.Marvell Semiconductor, Inc - ExtSta NDIS 6.0 driver.) -- C:\Windows\System32\drivers\MRVW24B.sys [310016]
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] ©
O58 - SDL:2010/06/25 18:07:14 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35088] ©
O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117312] ©
O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [142416] ©
O58 - SDL:2015/10/31 23:54:20 A . (.Greatis Software - Partizan - Rootkit detector.) -- C:\Windows\System32\drivers\Partizan.sys [40304]
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] ©
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] ©
O58 - SDL:2015/10/16 10:32:55 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [730352] ©
O58 - SDL:2015/10/16 10:21:56 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3616000] ©
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2009/07/13 23:02:53 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSGB6.sys [48128] ©
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] ©
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] ©
O58 - SDL:2014/06/04 15:17:30 A . (.IObit - SmartDefrag Driver.) -- C:\Windows\System32\drivers\SmartDefragDriver.sys [18624] ©
O58 - SDL:2014/10/04 22:10:32 A . (...) -- C:\Windows\System32\drivers\sptd.sys [420920]
O58 - SDL:2013/10/31 18:32:04 A . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\Windows\System32\drivers\ssmdrv.sys [28520]
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] ©
O58 - SDL:2014/12/01 10:18:42 A . (.Nanjing Tongxiang Network Technology Co.,LTD - TX WiFi NAT Driver.) -- C:\Windows\System32\drivers\txwifinat.sys [31152]
O58 - SDL:2015/10/09 14:02:18 A . (.Greatis Software, LLC. - UnHackMe Kernel Driver.) -- C:\Windows\System32\drivers\UnHackMeDrv.sys [12800]
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] ©
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] ©
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 18s
O61 - LFC: 2015/10/31 22:50:42 A . (..) -- C:\Users\bouroi\Desktop\RogueKiller.exe [18965064]
O61 - LFC: 2015/10/31 23:16:54 A . (.Greatis Software, LLC..) -- C:\Users\bouroi\Desktop\unhackme-giveaway.exe [19994648]
O61 - LFC: 2015/10/27 10:48:08 A . (.Greatis Software, LLC..) -- C:\Users\bouroi\Desktop\Nouveau dossier (4)\unhackme-giveaway.exe [19994648]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (3) - 15s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {944D8CD4-CB17-423B-84D7-F691D9FB4271} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {FFEBBF0A-C22C-4172-89FF-45215A135AC7} [DefaultScope] - (Поиск@Mail.Ru) - http://go.mail.ru/

---\\ Enumère les services démarrés par Svchost (33) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168448] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [591360] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [667136] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473088] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [285184] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [241664] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [543232] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [589312] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [497152] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [46592] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [162816] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [749056] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [99328] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] ©

---\\ Liste des exceptions du parefeu Windows (15) - 3s
O87 - FAEL: "{CBA96F27-02A5-4E19-B6B0-A8D152599C75}" [In-None-P6-TRUE] .(.版权所有 (C) 2008 Tencent - QQDeskUpdate.) -- C:\Program Files\Tencent\QQPlayer\QQDeskUpdate.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{91CA6196-2587-4FFA-9EB4-A1FC207AD85D}" [In-None-P17-TRUE] .(.版权所有 (C) 2008 Tencent - QQDeskUpdate.) -- C:\Program Files\Tencent\QQPlayer\QQDeskUpdate.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{59FD69C5-2334-4F02-BEB1-393D93240B66}" [In-None-P6-TRUE] .(.腾讯科技(深圳)有限公司 - QQ影音.) -- C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{BEB196C4-C643-465B-80F3-74278F6304B4}" [In-None-P17-TRUE] .(.腾讯科技(深圳)有限公司 - QQ影音.) -- C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{1D4B9656-50CE-4E42-B1E0-CD41EDC850B4}" [In-None-P17-TRUE] .(.Tencent Ltd. - QQ影音工具箱.) -- C:\Program Files\Tencent\QQPlayer\QPToolbox.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{229C1556-10E7-4B65-89E4-DE4823155B01}" [In-None-P6-TRUE] .(.Tencent - QQ影音在线升级程序.) -- C:\Program Files\Tencent\QQPlayer\QPUp.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{A79748C7-0EAE-4ABD-B8F7-33536C56594B}" [In-None-P17-TRUE] .(.Tencent - QQ影音在线升级程序.) -- C:\Program Files\Tencent\QQPlayer\QPUp.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{C0A418E2-D13B-4A5D-B170-5BC54A1C8FBE}" [In-None-P6-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\Program Files\Common Files\Tencent\QQDownload\118\Tencentdl.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{07B92706-B5B3-4739-B384-55DA5E85F5BF}" [In-None-P17-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\Program Files\Common Files\Tencent\QQDownload\118\Tencentdl.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{B0B70F57-C7C0-4F76-A2D2-F95E4BD4C91F}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Tencent\QQPlayer\Statistics.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{B59D328E-0BEA-420D-8DDE-F72E05F24F93}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Tencent\QQPlayer\Statistics.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{1C87CC72-6FAD-46B9-BF3F-929C6CBE8EB3}" [In-None-P6-TRUE] .(.Tencent - 腾讯视频下载器.) -- C:\Program Files\Tencent\QQPlayer\loader\QQLiveDownloader.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{54A0E8E2-38ED-46A6-A7B9-D9564CF66ADE}" [In-None-P17-TRUE] .(.Tencent - 腾讯视频下载器.) -- C:\Program Files\Tencent\QQPlayer\loader\QQLiveDownloader.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{79351956-FBC4-44C0-8D9E-F061D49B3DBD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Tencent\QQPlayer\loader\QQPCDownload8880463.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{6C4373E3-7C95-4F53-A862-A68C034623F2}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Tencent\QQPlayer\loader\QQPCDownload8880463.exe =>PUP.Optional.TencentAddressBar

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (13) - 73s

SS - Demand [18/10/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [22/11/2014] [ 911648] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCService.exe ©
SR - Auto [28/07/2011] [ 262144] Arp Intelligent Protection Service (AIPS) . (.Arcai.com.) - C:\Program Files\netcut\services\aips.exe ©
SR - Auto [11/06/2015] [ 660768] AdvancedSystemCareAntivirus (ASCAntivirusSrv) . (.IOBit.) - C:\Program Files\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe ©
SS - Demand [05/10/2014] [ 733184] (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe ©
SR - Auto [22/06/2015] [ 194000] Kaspersky Anti-Virus Service 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe ©
SS - Demand [14/04/2011] [ 73728] CorelCreatorMessages (CorelCreatorMessages) . (.Global Graphics Software Ltd.) - C:\Windows\System32\CorelCreatorMessages.exe
SR - Auto [17/07/2015] [ 882464] IMF Service (IMFservice) . (.IObit.) - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe ©
SS - Auto [29/07/2015] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe ©
SS - Demand [12/09/2010] [ 251248] Ma-Config Service (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-config.com\maconfservice.exe ©
SS - Demand [15/10/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe ©
SS - Demand [25/06/2010] [ 117264] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.CACE Technologies, Inc..) - C:\Program Files\WinPcap\rpcapd.exe ©

---\\ Recherche de clés de registre Tracing (6) - 4s
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerApp_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerApp_RASMANCS =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerSetup_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerSetup_RASMANCS =>PUP.Optional.FLVPlayer

---\\ Scan Additionnel (22) - 0s
HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
C:\ProgramData\ProductData =>PUP.Optional.Generic
C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files\Common Files\Tencent =>PUP.Optional.TencentAddressBar
C:\Users\bouroi\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\QQDeskUpdate.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\QPToolbox.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\QPUp.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Common Files\Tencent\QQDownload\118\Tencentdl.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\Statistics.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\loader\QQLiveDownloader.exe =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent\QQPlayer\loader\QQPCDownload8880463.exe =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerApp_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerApp_RASMANCS =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerSetup_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Microsoft\Tracing\FlvPlayerSetup_RASMANCS =>PUP.Optional.FLVPlayer

---\\ Récapitulatif des éléments trouvées sur votre station (4) - 0s
http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.FLVPlayer
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup

~ End of the scan, 20650 items in 272 seconds (856)(0)

Publicité


Signaler le contenu de ce document

Publicité