cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.10.2.147 Par Nicolas Coolman (2015/10/02)
~ Démarré par HP_COMPAQ (Administrator) (2015/10/05 15:24:46)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\HP_COMPAQ\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\HP_COMPAQ\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v45.0.2454.101
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : OK

---\\ Surveillance de Logiciels (2) - 3s
Adobe Flash Player 19 PPAPI
Adobe Reader XI

---\\ Logiciels de partage P2P (1) - 3s
NewProduct µTorrent vµTorrent

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2069.736 MB (26% free)
~ System Restore: Activé (Enable)
~ System drive C: has 9 GB free of 78 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HP
~ User Name: HP_COMPAQ
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 9 GB free of 78 GB (System)
~ Drive E: has 25 GB free of 74 GB

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.D76A076ADB74F8132924E498D63123A2] - (.Microsoft Corporation - DNS Client API DLL.) () -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Processus lancés (45) - 7s
[MD5.5AAD17D8D4DBB1457D4BE6AF30BC3E20] - (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe [1015808] [PID.1836] ©
[MD5.F6158734F1E24C6C510155CF0D363911] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\program files\Real\realplayer\Update\realsched.exe [295512] [PID.1880] ©
[MD5.8EAF53527D3E8439DD82B1CA43443936] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe [134656] [PID.1916] ©
[MD5.8EA6E15586B1063AB1190B082DB0995D] - (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe [166912] [PID.1988] ©
[MD5.187B4E045DDB3B3FAD5C714A65420C1D] - (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe [135680] [PID.1996] ©
[MD5.B274C20BB8E7A9D27F147C1F87B05D26] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe [843480] [PID.2016] ©
[MD5.34084D25BE6F48D072AA54DE630438FD] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [334896] [PID.120] ©
[MD5.496DB4918FA5F915885D7B599409D463] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [243712] [PID.164] ©
[MD5.355F7F79B8D35062DF09E47C572D811A] - (.MOSHOUSHURUFA.COM Inc. - MOSHOU PINYIN INPUT.) -- C:\Program Files\MoshouInput\mospimyim.exe [857320] [PID.176]
[MD5.2A3FB4C98F139038E23330D2439DB8A4] - (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe [138096] [PID.284] ©
[MD5.840292ED8F679578D0C360751E9CF7C2] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3511744] [PID.324] ©
[MD5.7B6CB5C60E549B746FA8DEEE82C5BB53] - (...) -- C:\Documents and Settings\HP_COMPAQ\Application Data\ACEStream\engine\ace_engine.exe [23984] [PID.436]
[MD5.96D72308E9DC5D46DD82BCD191A3F9A2] - (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\HP_COMPAQ\Application Data\uTorrent\uTorrent.exe [4605776] [PID.632]
[MD5.8020FF8F7DD88B2A2AB1BEC99D20BF55] - (...) -- C:\Documents and Settings\HP_COMPAQ\Windows\Intel_Driver.exe [335872] [PID.932]
[MD5.36A9ACC51A3C72A3AFC7A05959CF499E] - (.Copyright (C) 2000 - ADIMON MFC Application.) -- C:\Program Files\Menara\dslmon.exe [839680] [PID.1204]
[MD5.09B1747D1576FE7E5ECE2201C8F0936B] - (.Dropbox, Inc. - Dropbox.) -- C:\Documents and Settings\HP_COMPAQ\Application Data\Dropbox\bin\Dropbox.exe [36710768] [PID.248] ©
[MD5.9D0DAA2E185CD216F9866527C4142578] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824] [PID.1776] ©
[MD5.175F6E6CA634F0A33558B9320FBFFB29] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files\BlueStacks\HD-UpdaterService.exe [786136] [PID.2004] ©
[MD5.312ADFC49AD9F85E8E89359F5F7E49C4] - (...) -- C:\Program Files\Network LookOut Administrator Pro\bin\NLAgentProSvc.exe [1323648] [PID.2264]
[MD5.96EFEC24346A8EB1157E80523079ADDC] - (...) -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056] [PID.2464]
[MD5.360959BBD4F451E1AB811F4304232766] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2568120] [PID.2828] ©
[MD5.061681C3F1AE9E3295867F487F83D35D] - (.Copyright © 2015 - Hallaj FUD.) -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Temp\Isas.exe [375808] [PID.2920]
[MD5.0B11900E004CF41D503AC629B620ABD9] - (.Skype - Skype.) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\MSDCSC\msdcsc.exe [1319424] [PID.3364]
[MD5.3C1B607469AEF94A645412F47EC3FCBE] - (...) -- C:\Program Files\Network LookOut Administrator Pro\bin\NLAgentPro.exe [1560704] [PID.3992]
[MD5.207B16FA69F61D1895F8D8532F587E4B] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [263600] [PID.3096] ©
[MD5.2EFD41D42668FD68E371DCF606ECCFEC] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe [1048808] [PID.3248] =>PUP.Optional.CrossRider
[MD5.6542BB2AE0ABDDC6F4E34778A0B0406B] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\10\Plugin.exe [1001704] [PID.5484] =>PUP.Optional.CrossRider
[MD5.E1335ABD1D2EB942689842CB7C29E0E8] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\5\Plugin.exe [1282792] [PID.1116] =>PUP.Optional.CrossRider
[MD5.8BE1DB74127C4A8E1649DEF7BD51FCE8] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\7\Plugin.exe [990952] [PID.4672] =>PUP.Optional.CrossRider
[MD5.8BE1DB74127C4A8E1649DEF7BD51FCE8] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\7\Plugin.exe [990952] [PID.2136] =>PUP.Optional.CrossRider
[MD5.EAA0A6A574F6A0A6A73C621DF333B516] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\12\Plugin.exe [638184] [PID.3420] =>PUP.Optional.CrossRider
[MD5.ACB61E55335F2EF1994B017FBA4A5AFF] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\8\Plugin.exe [1246952] [PID.2600] =>PUP.Optional.CrossRider
[MD5.2433301E772912FB9F2281692D2B078A] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\3\Plugin.exe [1252072] [PID.3864] =>PUP.Optional.CrossRider
[MD5.B2CD9176DC4FA2BA01629360CF8238FA] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\2\Plugin.exe [1696488] [PID.2344] =>PUP.Optional.CrossRider
[MD5.EAA0A6A574F6A0A6A73C621DF333B516] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\12\Plugin.exe [638184] [PID.1952] =>PUP.Optional.CrossRider
[MD5.2433301E772912FB9F2281692D2B078A] - (...) -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\3\Plugin.exe [1252072] [PID.4688] =>PUP.Optional.CrossRider
[MD5.F297571227596C4D2887060F9B86FD93] - (...) -- C:\Program Files\Fichiers communs\b4bc9939-75e9-422b-af5c-653de35c4f4b\updater.exe [612584] [PID.4124]
[MD5.4AD3A0781947B429B08E99C2B5871DED] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\32.0.1948.69\opera.exe [901240] [PID.4792] ©
[MD5.68182A45592606ABB3069C9369FDA7EE] - (.Opera Software - Opera crash-reporter.) -- C:\Program Files\Opera\32.0.1948.69\opera_crashreporter.exe [507512] [PID.4564] ©
[MD5.4AD3A0781947B429B08E99C2B5871DED] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\32.0.1948.69\opera.exe [901240] [PID.5968] ©
[MD5.4AD3A0781947B429B08E99C2B5871DED] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\32.0.1948.69\opera.exe [901240] [PID.4152] ©
[MD5.4AD3A0781947B429B08E99C2B5871DED] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\32.0.1948.69\opera.exe [901240] [PID.2180] ©
[MD5.4AD3A0781947B429B08E99C2B5871DED] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\32.0.1948.69\opera.exe [901240] [PID.6016] ©
[MD5.4AD3A0781947B429B08E99C2B5871DED] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\32.0.1948.69\opera.exe [901240] [PID.4584] ©
[MD5.DD7DAC8A6913EB893372091E96871F95] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\HP_COMPAQ\Application Data\ZHP\ZHPDiag3.exe [1940992] [PID.4164] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (9) - 1s
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [idhngdhcfkoamngbedgpaokgjbnpdiji] RealDownloader
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [odfmmbegbdafpdnpgibobaoieembomib] {background:{scripts:[background.js]}content_scrip
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s
M0 - MFSP: prefs.js [HP_COMPAQ - 6vh0wwzf.default-1428661989031] http://google.com/
P2 - FPN: [HKCU] [@acestream.net/acestreamplugin,version=3.0.9] - (.Innovative Digital Technologies.) -- C:\Documents and Settings\HP_COMPAQ\Application Data\ACEStream\player\npace_plugin.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll ©
P2 - FPN: [HKLM] [@veetle.com/veetleCorePlugin,version=0.9.19] - (.Veetle Inc.) -- C:\Program Files\Veetle\plugins\npVeetle.dll
P2 - FPN: [HKLM] [@veetle.com/veetlePlayerPlugin,version=0.9.18] - (.Veetle Inc.) -- C:\Program Files\Veetle\Player\npvlc.dll

---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s
B2 - EXT: [{background:{scripts:[background.js]}content_scrip] C:\Documents and Settings\HP_COMPAQ\Application Data\Opera Software\Opera Stable\Extensions\odfmmbegbdafpdnpgibobaoieembomib

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.menara.ma
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Documents and Settings\HP_COMPAQ\Mes documents\MSDCSC\msdcsc.exe
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (22)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll ©
O2 - BHO: High Stairs - {45e60e41-85ee-4c01-9dac-1ecb9bf64179} . (...) -- C:\Program Files\High Stairs\Extensions\45e60e41-85ee-4c01-9dac-1ecb9bf64179.dll

---\\ Applications lancées au démarrage du système (47) - 1s
O4 - HKLM\..\Run: [SoundMAXPnP] . (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe ©
O4 - HKLM\..\Run: [IMJPMIG8.1] . (.Microsoft Corporation - Microsoft IME.) -- C:\WINDOWS\ime\imjp8_1\imjpmig.exe ©
O4 - HKLM\..\Run: [MSPY2002] . (...) -- C:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe ©
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe ©
O4 - HKLM\..\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\program files\Real\realplayer\Update\realsched.exe ©
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe ©
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe ©
O4 - HKLM\..\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe ©
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe ©
O4 - HKLM\..\Run: [mospimyim.exe] . (.MOSHOUSHURUFA.COM Inc. - MOSHOU PINYIN INPUT.) -- C:\Program Files\MoshouInput\mospimyim.exe
O4 - HKLM\..\Run: [PopUp Destroy] C:\Program Files\PopUp Destroy\Popup-Destroy.exe (.not file.)
O4 - HKLM\..\Run: [Malwarebytes Anti-Exploit] C:\Program Files\Malwarebytes Anti-Exploit\mbae.exe (.not file.)
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe ©
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe ©
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKCU\..\Run: [AceStream] . (...) -- C:\Documents and Settings\HP_COMPAQ\Application Data\ACEStream\engine\ace_engine.exe
O4 - HKCU\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe ©
O4 - HKCU\..\Run: [RGSC] E:\Games\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (.not file.)
O4 - HKCU\..\Run: [mospimyim.exe] . (.MOSHOUSHURUFA.COM Inc. - MOSHOU PINYIN INPUT.) -- C:\Program Files\MoshouInput\mospimyim.exe
O4 - HKCU\..\Run: [ctfmon] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKCU\..\Run: [ImeGuardCom] C:\Program Files\SogouInput\Components\SGImeGuard\1.0.0.27\SGImeGuard.exe (.not file.) =>PUP.Optional.Sogou
O4 - HKCU\..\Run: [AceWebException] C:\Documents and Settings\HP_COMPAQ\Application Data\AceWebExtension\updater\ace_web_extension.exe (.not file.)
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\HP_COMPAQ\Application Data\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [Intel_Driver.exe] . (...) -- C:\Documents and Settings\HP_COMPAQ\Windows\Intel_Driver.exe
O4 - HKCU\..\Run: [MicroUpdate] . (.Skype - Skype.) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\MSDCSC\msdcsc.exe
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [AceStream] . (...) -- C:\Documents and Settings\HP_COMPAQ\Application Data\ACEStream\engine\ace_engine.exe
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Dropbox\Update\DropboxUpdate.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [RGSC] E:\Games\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (.not file.)
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [mospimyim.exe] . (.MOSHOUSHURUFA.COM Inc. - MOSHOU PINYIN INPUT.) -- C:\Program Files\MoshouInput\mospimyim.exe
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [ctfmon] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [ImeGuardCom] C:\Program Files\SogouInput\Components\SGImeGuard\1.0.0.27\SGImeGuard.exe (.not file.) =>PUP.Optional.Sogou
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [AceWebException] C:\Documents and Settings\HP_COMPAQ\Application Data\AceWebExtension\updater\ace_web_extension.exe (.not file.)
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\HP_COMPAQ\Application Data\uTorrent\uTorrent.exe
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [Intel_Driver.exe] . (...) -- C:\Documents and Settings\HP_COMPAQ\Windows\Intel_Driver.exe
O4 - HKUS\S-1-5-21-1004336348-2049760794-682003330-1003\..\Run: [MicroUpdate] . (.Skype - Skype.) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\MSDCSC\msdcsc.exe

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (31) - 0s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Fichiers communs\Skype\Skype4COM.dll ©
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (9) - 0s
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc. - BlueStacks Service.) - C:\Program Files\BlueStacks\HD-Service.exe ©
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe ©
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files\BlueStacks\HD-UpdaterService.exe ©
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
O23 - Service: Network LookOut Agent (NetworkLookOutAgent) . (...) - C:\Program Files\Network LookOut Administrator Pro\bin\NLAgentProSvc.exe
O23 - Service: RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: Service Mgr HighStairs (Service Mgr HighStairs) . (...) - C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe =>PUP.Optional.HighStairs
O23 - Service: Update Mgr HighStairs (Update Mgr HighStairs) . (...) - C:\Program Files\Fichiers communs\b4bc9939-75e9-422b-af5c-653de35c4f4b\updater.exe =>PUP.Optional.HighStairs

---\\ Tâches planifiées en automatique (6) - 3s
[MD5.00000000000000000000000000000000] [APT] [Game_Booster_AutoUpdate] (...) -- C:\Program Files\IObit\Game Booster 3\AutoUpdate.exe (.not file.) [0]
[MD5.675DE4EC2D88A6D68C39C662A3204596] [APT] [RealDownloaderRealUpgradeLogonTaskS-1-5-21-1004336348-2049760794-682003330-1003] (.RealNetworks, Inc..) -- C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [187984] ©
[MD5.2A356FA2650E30E139F0476979548BF6] [APT] [RealPlayerRealUpgradeLogonTaskS-1-5-21-1004336348-2049760794-682003330-1003] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\realupgrade.exe [187984] ©
O39 - APT: Game_Booster_AutoUpdate - (...) -- C:\WINDOWS\Tasks\Game_Booster_AutoUpdate.job [286]
O39 - APT: RealDownloaderRealUpgradeLogonTaskS-1-5-21-1004336348-2049760794-682003330-1003 - (.RealNetworks, Inc..) -- C:\WINDOWS\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1004336348-2049760794-682003330-1003.job [308] ©
O39 - APT: RealPlayerRealUpgradeLogonTaskS-1-5-21-1004336348-2049760794-682003330-1003 - (.RealNetworks, Inc..) -- C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1004336348-2049760794-682003330-1003.job [286] ©

---\\ Logiciels installés (79) - 14s
O42 - Logiciel: Windows Driver Package - ACER Incorporated (qcusbser) Ports (10/13/2009 2. - (.ACER Incorporated.) [HKLM] -- 389D688A5C3B19C6F53C166D2E06DB4C08276507 ©
O42 - Logiciel: Windows Driver Package - ACER Incorporated (usbser) Modem (10/13/2009 5.1. - (.ACER Incorporated.) [HKLM] -- 6C3BDAA8B145DC21908710C164B879344CCD5B98 ©
O42 - Logiciel: Windows Driver Package - ACER Incorporated (qcusbser) Ports (10/13/2009 2. - (.ACER Incorporated.) [HKLM] -- 7D33A75C911F6D3FA5E51CF63EBFA8DA103E4288 ©
O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Flash Player 19 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI ©
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player ©
O42 - Logiciel: Algerian Newspapers - (...) [HKLM] -- Algerian Newspapers
O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKLM] -- Amazon Kindle ©
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM] -- BlueStacks App Player ©
O42 - Logiciel: Le Robert Collège - (.Le Robert.) [HKLM] -- CLGCD2011 ©
O42 - Logiciel: Crazy Birds - (.Media Contact LLC.) [HKLM] -- CrazyBirds_is1
O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome ©
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI ©
O42 - Logiciel: High Stairs - (.High Stairs.) [HKLM] -- High Stairs =>PUP.Optional.HighStairs
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 ©
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager ©
O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399 ©
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
O42 - Logiciel: Hotfix for Windows XP (KB958655-v2) - (.Microsoft Corporation.) [HKLM] -- KB958655-v2 ©
O42 - Logiciel: Collins English Dictionary And Thesaurus - (...) [HKLM] -- Lexicon 4.0
O42 - Logiciel: LG PC Suite - (.LG Electronics.) [HKLM] -- LG PC Suite ©
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 1.0 - FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft Help Viewer 1.0 Language Pack - FRA ©
O42 - Logiciel: MSN - (...) [HKLM] -- MSNINST
O42 - Logiciel: NewProduct µTorrent - (.BitTorrent Inc..) [HKLM] -- NewProduct µTorrent
O42 - Logiciel: Cambridge Advanced Learner's Dictionary - 3rd Edition - (...) [HKLM] -- NSIS_cald3
O42 - Logiciel: Opera Stable 32.0.1948.69 - (.Opera Software.) [HKLM] -- Opera 32.0.1948.69 ©
O42 - Logiciel: Oxford Wordpower - (.Oxford University Press.) [HKLM] -- Oxford Wordpower
O42 - Logiciel: Radio Maroc By Abdaoui 1.00 - (...) [HKLM] -- Radio Maroc By Abdaoui 1.00
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 16.0 ©
O42 - Logiciel: SopCast 3.8.3 - (.www.sopcast.com.) [HKLM] -- SopCast ©
O42 - Logiciel: SpongeBob SquarePants Bubble Rush! v1.3.1 - (...) [HKLM] -- SpongeBob SquarePants Bubble Rush!_is1
O42 - Logiciel: Super Hexagon - (.compiled by testncrash.) [HKLM] -- Super Hexagon_is1
O42 - Logiciel: Veetle TV - (.Veetle, Inc.) [HKLM] -- Veetle TV ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player ©
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 ©
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify ©
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: Microsoft WinUsb 2.0 - (.Microsoft Corporation.) [HKLM] -- winusb0200 ©
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 ©
O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 ©
O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC ©
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP ©
O42 - Logiciel: Youtube Downloader HD v. 2.9.9.21 - (.YoutubeDownloaderHD.com.) [HKLM] -- Youtube Downloader HD_is1 ©
O42 - Logiciel: YouWave for Android - (.YouWave Inc..) [HKLM] -- YouWave
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1 ©
O42 - Logiciel: Zombie Shooter - (.Media Contact LLC.) [HKLM] -- Zombie Shooter_is1
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} ©
O42 - Logiciel: Skype™ 6.21 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} ©
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} ©
O42 - Logiciel: Pro Evolution Soccer 2010 - (.KONAMI.) [HKLM] -- {283FFB23-8751-4B08-ACB8-5E0F8BCF7727} ©
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} ©
O42 - Logiciel: SimpleTV 0.4.5 b2 - (.SergeyVS.) [HKLM] -- {290A2821-B1F8-4565-B49A-24F349A5B5CB}_is1
O42 - Logiciel: LG United Mobile Drivers - (.LG Electronics.) [HKLM] -- {4DE95ED9-0A29-4C4F-8463-35857CF9BA36} ©
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM] -- {59E4543A-D49D-4489-B445-473D763C79AF} ©
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ©
O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM] -- {63A361D2-AF63-4C24-85CC-C54DB4863646} ©
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} ©
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM] -- {7593F934-4D78-49E7-8C7E-81130B1A4B32} ©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: ZedTV version 2.6.4 - (.zedsoft.) [HKLM] -- {7B4E06B9-2FA4-4F3E-85C5-1DCF1BA4B999}_is1
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Microsoft Windows XP Media Center SDK - (.Microsoft.) [HKLM] -- {8E5E7E92-9E38-415C-BEE8-616C303427F8} ©
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} ©
O42 - Logiciel: Kit de Connexion MENARA - (...) [HKLM] -- {AB25E068-C7A2-482F-A3BC-588A5869844D}
O42 - Logiciel: Adobe Reader 9.5.4 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A95000000001} ©
O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: RealDownloader - (.RealNetworks, Inc..) [HKLM] -- {C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox ©
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU] -- PhotoFiltre 7
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: XBMC - (.Team XBMC.) [HKCU] -- XBMC ©

---\\ HKCU & HKLM Software Keys (260) - 14s
HKLM\SOFTWARE\"charlie_installer"/n
HKLM\SOFTWARE\"echo_installer"/n
HKLM\SOFTWARE\abScroll (c) 2005
HKLM\SOFTWARE\AcerDLToolsConfig
HKLM\SOFTWARE\ACEStream
HKLM\SOFTWARE\Activision
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\Amazon
HKLM\SOFTWARE\Analog Devices
HKLM\SOFTWARE\Andrea Electronics
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\Blimey! Games
HKLM\SOFTWARE\BlueStacks
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\ChrisTV Online
HKLM\SOFTWARE\ChrisTV_Online
HKLM\SOFTWARE\Chromium
HKLM\SOFTWARE\Chromodo
HKLM\SOFTWARE\COMODO
HKLM\SOFTWARE\ComodoGroup
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\Dayterium
HKLM\SOFTWARE\Debug
HKLM\SOFTWARE\Dropbox
HKLM\SOFTWARE\DT Soft
HKLM\SOFTWARE\EA Games
HKLM\SOFTWARE\Earth Resource Mapping
HKLM\SOFTWARE\ej-technologies
HKLM\SOFTWARE\Electronic Arts
HKLM\SOFTWARE\ESRI
HKLM\SOFTWARE\FLEXlm License Manager
HKLM\SOFTWARE\FunPause
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GlarySoft
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HighStairs =>PUP.Optional.HighStairs
HKLM\SOFTWARE\IDM
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\IncrediMail
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\IO3O
HKLM\SOFTWARE\IObit
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\KasperskyLab
HKLM\SOFTWARE\Kaydara
HKLM\SOFTWARE\KONAMI
HKLM\SOFTWARE\KONAMIWE9
HKLM\SOFTWARE\LG Electronics
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Lingea
HKLM\SOFTWARE\LiveTV_
HKLM\SOFTWARE\LogMeInRescueCallingCard
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Macrovision
HKLM\SOFTWARE\magnet
HKLM\SOFTWARE\Malwarebytes Anti-Exploit
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\mamverifier =>Toolbar.Mamverifier
HKLM\SOFTWARE\MediaFire
HKLM\SOFTWARE\Menara
HKLM\SOFTWARE\MOVAVI
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NCH Software
HKLM\SOFTWARE\NCH Swift Sound
HKLM\SOFTWARE\NewBlue
HKLM\SOFTWARE\NSIS_cald3
HKLM\SOFTWARE\Nutzwerk
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Origin Games
HKLM\SOFTWARE\OUP
HKLM\SOFTWARE\Pandora.TV
HKLM\SOFTWARE\Prog
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Python
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Reason
HKLM\SOFTWARE\Reg
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RichFX
HKLM\SOFTWARE\rising
HKLM\SOFTWARE\RisingRepire
HKLM\SOFTWARE\sagem
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\SiteFinder =>PUP.Optional.ShoppingReport
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SogouComponents
HKLM\SOFTWARE\SogouInput
HKLM\SOFTWARE\SopCast
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\TeamViewer
HKLM\SOFTWARE\TechCity
HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\TuneUp
HKLM\SOFTWARE\Veetle
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro
HKLM\SOFTWARE\WIBU-SYSTEMS
HKLM\SOFTWARE\Win7zip
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Xing Technology Corp.
HKCU\SOFTWARE\****************************************************************************************************
HKCU\SOFTWARE\1a86cf1e2076acfbe7ff66356ff4239a =>PUP.Optional.CrossRider
HKCU\SOFTWARE\270d2a0037f1d4c8cb53865250574eae =>PUP.Optional.CrossRider
HKCU\SOFTWARE\489e0672ff15db0fe74a0f4c4882602b =>PUP.Optional.CrossRider
HKCU\SOFTWARE\4shared
HKCU\SOFTWARE\9jh31HH
HKCU\SOFTWARE\9z24qb33P0FMesAr7HVDRNEXwEo
HKCU\SOFTWARE\abScroll (c) 2005
HKCU\SOFTWARE\AC3filter
HKCU\SOFTWARE\ACEStream
HKCU\SOFTWARE\Ada99
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\Ahusoft
HKCU\SOFTWARE\ALLCinema
HKCU\SOFTWARE\AlterGeo
HKCU\SOFTWARE\Amazon
HKCU\SOFTWARE\Analog Devices
HKCU\SOFTWARE\Anuman Interactive
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Badoo
HKCU\SOFTWARE\Binary Noise
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BrowserTemp
HKCU\SOFTWARE\BZwO5q9jL55eBBFv
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\ChrisTV Online
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\ComodoGroup
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DC3_FEXEC =>Trojan.Fynloski
HKCU\SOFTWARE\Digital River
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\DreamMultimedia
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\DropboxUpdate
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\EA Sports
HKCU\SOFTWARE\Earth Resource Mapping
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Elecard
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\epsxe
HKCU\SOFTWARE\ESRI
HKCU\SOFTWARE\ExtractNow
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Genymobile
HKCU\SOFTWARE\GetData
HKCU\SOFTWARE\Glarysoft
HKCU\SOFTWARE\Glaz.TV
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HakaTeam
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IncrediMail
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\InterVideo
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\KasperskyLabSetup
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Le_Robert
HKCU\SOFTWARE\LG Electronics
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Lingea
HKCU\SOFTWARE\LiveTV_
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\LogMeInRescueCallingCard
HKCU\SOFTWARE\LowRegistry
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Malavida
HKCU\SOFTWARE\MarBit
HKCU\SOFTWARE\MediaFire
HKCU\SOFTWARE\mixlr
HKCU\SOFTWARE\Monitored
HKCU\SOFTWARE\MoshouInput
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\NATATA eBook
HKCU\SOFTWARE\NCH Software
HKCU\SOFTWARE\NCH Swift Sound
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewBlue
HKCU\SOFTWARE\Nutzwerk
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\OUP
HKCU\SOFTWARE\Pcsx
HKCU\SOFTWARE\PdfToWordConverterSoftware
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Polipo
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Reason
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\Safe Software Inc.
HKCU\SOFTWARE\SCS Software
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\settings
HKCU\SOFTWARE\SimpleTV by SergeyVS#3
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\SOFT32
HKCU\SOFTWARE\SoftLogica
HKCU\SOFTWARE\SogouInput
HKCU\SOFTWARE\SogouInput.ppup
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Telltale Games
HKCU\SOFTWARE\TENCENT =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\TheLiveTvSoftware
HKCU\SOFTWARE\ToMMTi-Systems
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\Ulead
HKCU\SOFTWARE\Ulead Systems
HKCU\SOFTWARE\undefined
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\URSoft
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Veetle
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\Win7zip
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\XBMC
HKCU\SOFTWARE\Yandex
HKCU\SOFTWARE\YouWave Android
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Macromedia
HKCU\SOFTWARE\AppDataLow\Software\RealNetworks

---\\ Contenu des dossiers Programmes (371) - 15s
O43 - CFD: 2015/09/02 14:58:25 - [] D -- C:\Program Files\141CB8D2-1441052302-11DE-BBDA-81C1B3C50024 =>PUP.Optional.CrossRider
O43 - CFD: 2015/08/31 20:44:42 - [] D -- C:\Program Files\Activision
O43 - CFD: 2014/11/26 14:15:08 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2013/04/10 16:08:47 - [] D -- C:\Program Files\Adobe(2)
O43 - CFD: 2013/01/25 23:20:35 - [] D -- C:\Program Files\Ahead
O43 - CFD: 2012/08/16 17:33:25 - [] D -- C:\Program Files\Algerian Newspapers
O43 - CFD: 2012/07/03 12:16:13 - [] D -- C:\Program Files\Alwil Software
O43 - CFD: 2014/03/25 16:15:24 - [] D -- C:\Program Files\Amazon
O43 - CFD: 2012/04/30 11:24:14 - [] D -- C:\Program Files\Analog Devices
O43 - CFD: 2015/04/12 11:43:27 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 2015/02/18 11:02:04 - [0] D -- C:\Program Files\AVAST Software
O43 - CFD: 2015/09/21 12:23:40 - [] D -- C:\Program Files\BitTorrent Inc
O43 - CFD: 2015/05/09 22:16:58 - [] D -- C:\Program Files\BlueStacks
O43 - CFD: 2014/05/21 18:11:27 - [] D -- C:\Program Files\booddanet
O43 - CFD: 2014/02/20 14:45:55 - [] D -- C:\Program Files\Cambridge
O43 - CFD: 2015/04/25 15:56:37 - [] D -- C:\Program Files\CDBurnerXP
O43 - CFD: 2012/06/23 00:52:47 - [] D -- C:\Program Files\CodeMeter
O43 - CFD: 2015/08/31 22:14:16 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2012/09/26 11:32:26 - [] D -- C:\Program Files\Company
O43 - CFD: 2012/04/30 09:26:33 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 2015/08/31 21:35:36 - [0] D -- C:\Program Files\Cricket Masters Unleashed
O43 - CFD: 2012/05/01 10:04:14 - [] D -- C:\Program Files\DAEMON Tools Lite
O43 - CFD: 2014/01/15 17:12:22 - [0] D -- C:\Program Files\Daossoft RAR Password Recovery
O43 - CFD: 2015/07/10 00:25:00 - [] D -- C:\Program Files\DIFX
O43 - CFD: 2012/05/03 11:08:22 - [] D -- C:\Program Files\Direct x
O43 - CFD: 2015/07/24 16:45:29 - [] D -- C:\Program Files\directx
O43 - CFD: 2013/09/28 11:05:24 - [] D -- C:\Program Files\DivX
O43 - CFD: 2013/10/25 20:04:13 - [] D -- C:\Program Files\Dropbox
O43 - CFD: 2012/10/18 20:05:11 - [] D -- C:\Program Files\ESRI
O43 - CFD: 2014/01/15 20:35:48 - [] D -- C:\Program Files\ExtractNow
O43 - CFD: 2015/10/03 11:10:51 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2012/10/29 16:23:10 - [] D -- C:\Program Files\FME
O43 - CFD: 2014/11/10 17:46:13 - [] D -- C:\Program Files\GameTop.com
O43 - CFD: 2014/09/06 13:50:44 - [] D -- C:\Program Files\GetData
O43 - CFD: 2015/08/31 22:47:25 - [] D -- C:\Program Files\Glamorous Balance
O43 - CFD: 2015/10/03 11:33:21 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/10/03 11:10:56 - [] D -- C:\Program Files\High Stairs =>PUP.Optional.HighStairs
O43 - CFD: 2014/09/06 16:01:46 - [0] D -- C:\Program Files\IDM
O43 - CFD: 2015/09/10 22:02:25 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/02/19 15:18:20 - [] D -- C:\Program Files\Intelore
O43 - CFD: 2013/07/26 19:57:03 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 2014/04/09 20:12:24 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/09/02 15:02:22 - [] D -- C:\Program Files\IPvFoo
O43 - CFD: 2015/05/13 14:31:07 - [] D -- C:\Program Files\Java
O43 - CFD: 2015/07/24 17:12:34 - [] D -- C:\Program Files\KONAMI
O43 - CFD: 2013/01/16 16:25:54 - [] D -- C:\Program Files\Le Robert
O43 - CFD: 2015/07/21 14:27:10 - [] D -- C:\Program Files\LG Electronics
O43 - CFD: 2014/02/09 08:14:22 - [] D -- C:\Program Files\Lingea
O43 - CFD: 2015/10/05 10:44:00 - [0] D -- C:\Program Files\Malwarebytes Anti-Exploit
O43 - CFD: 2013/04/10 22:51:07 - [] D -- C:\Program Files\Menara
O43 - CFD: 2013/04/10 22:51:05 - [] D -- C:\Program Files\Menara(2)
O43 - CFD: 2012/05/06 10:50:21 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2014/09/15 20:36:12 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 2012/04/30 09:28:47 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2015/07/31 02:10:56 - [] D -- C:\Program Files\Microsoft Games for Windows - LIVE
O43 - CFD: 2013/01/26 11:14:41 - [] D -- C:\Program Files\Microsoft Help Viewer
O43 - CFD: 2012/04/30 18:46:02 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2013/01/26 11:14:40 - [] D -- C:\Program Files\Microsoft SDKs
O43 - CFD: 2014/07/24 14:22:58 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2012/04/30 18:46:01 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2013/01/26 11:15:39 - [] D -- C:\Program Files\Microsoft Visual Studio 10.0
O43 - CFD: 2012/05/19 03:46:17 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2013/01/26 11:15:11 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2015/09/01 02:28:39 - [] D -- C:\Program Files\MoshouInput
O43 - CFD: 2012/05/06 10:25:18 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/09/20 13:06:31 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2014/09/06 10:38:25 - [] D -- C:\Program Files\Mozilla Firefox(2).bak
O43 - CFD: 2015/04/12 11:47:02 - [] D -- C:\Program Files\Mozilla Firefox(3).bak
O43 - CFD: 2012/05/01 17:37:42 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2012/05/16 03:40:34 - [] D -- C:\Program Files\MSN
O43 - CFD: 2012/04/30 09:26:17 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2012/10/19 16:24:02 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2012/05/16 21:53:29 - [] D -- C:\Program Files\NCH Software
O43 - CFD: 2012/04/30 09:27:29 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2012/10/19 00:44:55 - [] D -- C:\Program Files\Network LookOut Administrator Pro
O43 - CFD: 2015/01/19 02:41:39 - [0] D -- C:\Program Files\NewBlue
O43 - CFD: 2015/08/31 21:37:42 - [0] D -- C:\Program Files\NiceOffFers
O43 - CFD: 2015/01/16 14:39:54 - [] D -- C:\Program Files\NSIS Uninstall Information
O43 - CFD: 2012/04/30 09:26:24 - [] D -- C:\Program Files\Online Services
O43 - CFD: 2015/10/05 12:04:01 - [] D -- C:\Program Files\Opera
O43 - CFD: 2012/05/06 10:25:44 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2013/11/24 10:27:05 - [] D -- C:\Program Files\Oxford
O43 - CFD: 2015/02/25 15:37:25 - [0] D -- C:\Program Files\PathModule
O43 - CFD: 2014/06/26 19:22:50 - [] D -- C:\Program Files\PhotoFiltre 7
O43 - CFD: 2015/10/03 11:41:09 - [] D -- C:\Program Files\PopUp Destroy
O43 - CFD: 2013/03/14 23:39:39 - [] D -- C:\Program Files\Project64 1.6
O43 - CFD: 2012/09/26 11:32:26 - [] D -- C:\Program Files\radioMaroc
O43 - CFD: 2015/02/19 20:05:43 - [] D -- C:\Program Files\RAR Password Unlocker
O43 - CFD: 2014/09/21 14:28:48 - [] D -- C:\Program Files\Real
O43 - CFD: 2014/03/28 18:41:35 - [] D -- C:\Program Files\RealNetworks
O43 - CFD: 2015/04/08 19:23:01 - [] D -- C:\Program Files\Reason
O43 - CFD: 2012/05/01 17:37:35 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2012/11/15 16:45:37 - [] D -- C:\Program Files\SecurityKISS Tunnel
O43 - CFD: 2013/08/31 19:38:21 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2015/08/31 21:13:17 - [0] D -- C:\Program Files\Share on Google Plus
O43 - CFD: 2012/09/16 13:57:23 - [] D -- C:\Program Files\SimpleTV
O43 - CFD: 2014/10/23 08:35:36 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2013/05/26 15:26:44 - [0] D -- C:\Program Files\softendo.com
O43 - CFD: 2013/11/10 18:00:35 - [] D -- C:\Program Files\SopCast
O43 - CFD: 2012/08/05 04:49:51 - [] D -- C:\Program Files\SpongeBob
O43 - CFD: 2014/11/29 17:34:09 - [] D -- C:\Program Files\Super Hexagon
O43 - CFD: 2015/02/17 18:41:52 - [0] D -- C:\Program Files\SystemEnterprise
O43 - CFD: 2015/10/03 11:07:01 - [] D -- C:\Program Files\SystemRequirementsLab
O43 - CFD: 2015/08/31 22:46:40 - [0] D -- C:\Program Files\TampaEdit
O43 - CFD: 2015/02/03 17:03:06 - [] D -- C:\Program Files\TeamViewer
O43 - CFD: 2014/09/06 13:51:13 - [] D -- C:\Program Files\The KMPlayer
O43 - CFD: 2015/02/21 21:09:07 - [0] D -- C:\Program Files\ToolMaker
O43 - CFD: 2015/04/12 11:49:15 - [0] D -- C:\Program Files\TurboSys
O43 - CFD: 2012/04/30 09:33:17 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2015/04/12 11:54:18 - [] D -- C:\Program Files\Veetle
O43 - CFD: 2013/06/05 20:20:37 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2012/05/18 03:39:32 - [] D -- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 2015/01/22 11:32:02 - [] D -- C:\Program Files\Windows Media Components
O43 - CFD: 2015/07/31 02:11:50 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2012/04/30 09:26:12 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2012/04/30 09:27:51 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 2012/04/30 09:39:00 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2014/09/10 19:42:08 - [] D -- C:\Program Files\XBMC
O43 - CFD: 2012/04/30 09:28:47 - [] D -- C:\Program Files\xerox
O43 - CFD: 2015/01/16 01:40:24 - [] D -- C:\Program Files\Youtube Downloader HD
O43 - CFD: 2015/08/26 13:15:38 - [] D -- C:\Program Files\YouWave Android
O43 - CFD: 2015/07/28 19:36:52 - [] D -- C:\Program Files\ZedTV
O43 - CFD: 2015/09/01 10:50:59 - [] D -- C:\Program Files\ZHPFix
O43 - CFD: 2015/07/25 01:36:56 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2013/05/26 15:30:53 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ArcGIS
O43 - CFD: 2015/05/09 22:16:58 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\BlueStacks
O43 - CFD: 2014/02/20 14:48:16 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Cambridge
O43 - CFD: 2014/02/09 08:14:36 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Collins English Dictionary And Thesaurus
O43 - CFD: 2015/09/04 13:47:46 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Comodo
O43 - CFD: 2012/05/01 10:04:16 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DAEMON Tools Lite
O43 - CFD: 2015/08/31 21:16:22 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2014/11/10 17:46:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\GameTop.com
O43 - CFD: 2015/10/03 11:43:35 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 2012/07/20 12:25:37 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 2015/05/13 14:28:40 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 2012/04/30 09:26:39 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2015/08/20 14:15:13 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\KONAMI
O43 - CFD: 2013/01/16 16:26:20 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Le Robert Collège
O43 - CFD: 2015/07/21 14:28:13 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LG PC Suite
O43 - CFD: 2013/04/10 22:51:07 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Menara
O43 - CFD: 2013/09/14 03:01:24 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 2014/07/24 04:02:03 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2013/01/26 21:22:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Visual Studio 2010 Express
O43 - CFD: 2012/04/30 09:28:41 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2013/11/24 10:32:52 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Oxford
O43 - CFD: 2015/08/20 13:53:05 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PESEdit.com 2013 Patch
O43 - CFD: 2012/10/19 00:48:55 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Real
O43 - CFD: 2014/09/21 14:29:01 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\RealNetworks
O43 - CFD: 2015/04/21 18:18:02 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\rtmpGUI_Attilla
O43 - CFD: 2012/09/16 13:57:23 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SimpleTV
O43 - CFD: 2014/10/23 08:35:38 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 2012/08/05 04:49:54 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SpongeBob
O43 - CFD: 2014/11/29 17:34:11 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Super Hexagon
O43 - CFD: 2015/04/21 18:18:02 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TOP TV
O43 - CFD: 2014/05/10 12:52:44 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2012/04/30 09:39:00 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2015/01/16 01:40:23 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Youtube Downloader HD
O43 - CFD: 2015/08/26 13:15:39 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\YouWave Android
O43 - CFD: 2015/07/28 19:36:52 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZedTV
O43 - CFD: 2015/09/01 10:49:41 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZHP
O43 - CFD: 2013/04/11 01:10:30 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2012/07/03 12:16:13 - [] D -- C:\Documents and Settings\All Users\Application Data\Alwil Software
O43 - CFD: 2015/04/12 11:43:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple
O43 - CFD: 2015/01/19 02:43:31 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 2015/10/05 11:51:18 - [] D -- C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b
O43 - CFD: 2015/05/09 22:17:13 - [] D -- C:\Documents and Settings\All Users\Application Data\BlueStacks
O43 - CFD: 2015/10/03 11:30:22 - [] D -- C:\Documents and Settings\All Users\Application Data\BlueStacksSetup
O43 - CFD: 2012/06/09 16:39:15 - [] D -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
O43 - CFD: 2012/06/19 02:38:11 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 2012/06/23 01:11:46 - [] D -- C:\Documents and Settings\All Users\Application Data\CodeMeter
O43 - CFD: 2014/11/11 15:04:56 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 2015/04/12 11:53:01 - [] D -- C:\Documents and Settings\All Users\Application Data\Comodo
O43 - CFD: 2015/04/12 11:54:21 - [] D -- C:\Documents and Settings\All Users\Application Data\Comodo Downloader
O43 - CFD: 2015/01/22 10:45:41 - [] D -- C:\Documents and Settings\All Users\Application Data\CyberLink
O43 - CFD: 2012/05/01 10:37:07 - [] D -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
O43 - CFD: 2012/11/16 11:20:00 - [] D -- C:\Documents and Settings\All Users\Application Data\DatacardService
O43 - CFD: 2013/09/28 14:54:28 - [0] D -- C:\Documents and Settings\All Users\Application Data\Downloada Keeper
O43 - CFD: 2015/06/16 02:59:33 - [] D -- C:\Documents and Settings\All Users\Application Data\Dropbox
O43 - CFD: 2013/01/28 12:52:00 - [] SHD -- C:\Documents and Settings\All Users\Application Data\DSS
O43 - CFD: 2012/10/18 18:44:07 - [] D -- C:\Documents and Settings\All Users\Application Data\ESRI
O43 - CFD: 2012/10/18 18:54:44 - [] D -- C:\Documents and Settings\All Users\Application Data\FLEXnet
O43 - CFD: 2015/01/16 14:26:12 - [] D -- C:\Documents and Settings\All Users\Application Data\install_clap
O43 - CFD: 2015/04/21 17:05:54 - [] D -- C:\Documents and Settings\All Users\Application Data\IObit
O43 - CFD: 2015/08/11 18:50:43 - [] D -- C:\Documents and Settings\All Users\Application Data\jibenjijppliimdgjhpjodcnmnmfafhd
O43 - CFD: 2015/09/14 15:26:42 - [] D -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
O43 - CFD: 2015/08/20 13:50:45 - [] D -- C:\Documents and Settings\All Users\Application Data\KONAMI
O43 - CFD: 2013/01/16 16:26:20 - [] D -- C:\Documents and Settings\All Users\Application Data\Le Robert
O43 - CFD: 2012/10/18 18:54:45 - [] D -- C:\Documents and Settings\All Users\Application Data\Macrovision
O43 - CFD: 2015/09/02 14:01:12 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2015/10/04 22:29:28 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes Anti-Exploit
O43 - CFD: 2012/06/07 19:03:01 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 2015/02/19 10:43:18 - [0] D -- C:\Documents and Settings\All Users\Application Data\MFAData
O43 - CFD: 2015/08/01 22:40:44 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2015/09/10 23:42:49 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 2015/08/31 22:14:29 - [] D -- C:\Documents and Settings\All Users\Application Data\MoshouInput
O43 - CFD: 2012/05/16 21:13:56 - [] D -- C:\Documents and Settings\All Users\Application Data\NCH Software
O43 - CFD: 2015/01/16 15:07:32 - [] D -- C:\Documents and Settings\All Users\Application Data\Norton
O43 - CFD: 2015/01/16 14:23:42 - [] D -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
O43 - CFD: 2013/03/12 21:31:06 - [] D -- C:\Documents and Settings\All Users\Application Data\Nutzwerk
O43 - CFD: 2015/05/13 14:31:37 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 2013/01/28 13:41:15 - [] D -- C:\Documents and Settings\All Users\Application Data\Origin
O43 - CFD: 2015/01/17 11:08:05 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 2015/04/21 17:05:51 - [] D -- C:\Documents and Settings\All Users\Application Data\ProductData =>PUP.Optional.Generic
O43 - CFD: 2014/06/02 09:53:22 - [0] D -- C:\Documents and Settings\All Users\Application Data\ProgDVB
O43 - CFD: 2014/09/21 14:28:40 - [] D -- C:\Documents and Settings\All Users\Application Data\Real
O43 - CFD: 2014/03/28 18:41:34 - [] D -- C:\Documents and Settings\All Users\Application Data\RealNetworks
O43 - CFD: 2015/04/12 11:54:21 - [0] D -- C:\Documents and Settings\All Users\Application Data\Shared Space
O43 - CFD: 2014/10/23 08:35:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2013/09/28 11:02:35 - [] D -- C:\Documents and Settings\All Users\Application Data\SummerSoft
O43 - CFD: 2014/10/12 11:05:37 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2015/01/22 10:57:03 - [0] D -- C:\Documents and Settings\All Users\Application Data\SUPPORTDIR
O43 - CFD: 2015/04/21 18:41:06 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 2014/11/11 15:18:12 - [] D -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
O43 - CFD: 2012/12/19 20:40:50 - [] D -- C:\Documents and Settings\All Users\Application Data\Ubisoft
O43 - CFD: 2015/02/23 16:11:09 - [] D -- C:\Documents and Settings\All Users\Application Data\Ulead Systems
O43 - CFD: 2015/09/02 11:26:10 - [] D -- C:\Documents and Settings\All Users\Application Data\update
O43 - CFD: 2012/05/06 11:11:59 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2013/10/18 12:50:35 - [] SHD -- C:\Documents and Settings\All Users\Application Data\Windows Update
O43 - CFD: 2012/07/31 04:27:32 - [] D -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 2015/04/21 17:04:02 - [0] D -- C:\Documents and Settings\All Users\Application Data\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic
O43 - CFD: 2015/09/03 00:52:00 - [0] SHD -- C:\Documents and Settings\All Users\Application Data\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 2013/04/11 00:50:54 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2013/04/10 22:52:36 - [] D -- C:\Program Files\Fichiers communs\Adobe(2)
O43 - CFD: 2015/04/12 11:43:43 - [] D -- C:\Program Files\Fichiers communs\Apple
O43 - CFD: 2015/10/05 12:52:32 - [] D -- C:\Program Files\Fichiers communs\b4bc9939-75e9-422b-af5c-653de35c4f4b
O43 - CFD: 2014/05/15 18:38:53 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 2013/01/28 12:51:01 - [] HD -- C:\Program Files\Fichiers communs\EAInstaller
O43 - CFD: 2014/02/04 16:16:09 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2015/04/21 17:03:49 - [] D -- C:\Program Files\Fichiers communs\IObit
O43 - CFD: 2015/05/13 14:29:16 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 2013/11/24 10:32:44 - [] D -- C:\Program Files\Fichiers communs\Lingea Shared
O43 - CFD: 2012/10/18 18:34:01 - [] D -- C:\Program Files\Fichiers communs\Macrovision Shared
O43 - CFD: 2013/01/26 11:14:40 - [0] D -- C:\Program Files\Fichiers communs\Merge Modules
O43 - CFD: 2014/02/15 13:43:23 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2012/04/30 09:27:26 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2015/01/16 14:41:45 - [] D -- C:\Program Files\Fichiers communs\NewBlue
O43 - CFD: 2012/04/30 11:19:58 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2012/10/19 00:49:03 - [] D -- C:\Program Files\Fichiers communs\Real
O43 - CFD: 2012/04/30 09:27:29 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2014/10/23 08:35:36 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 2012/04/30 11:19:55 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2012/07/11 04:03:06 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2012/05/18 03:38:10 - [] D -- C:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 2012/10/19 00:49:04 - [] D -- C:\Program Files\Fichiers communs\xing shared
O43 - CFD: 2015/10/03 17:49:53 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\.ACEStream
O43 - CFD: 2013/02/07 00:37:09 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\.Torrent Stream
O43 - CFD: 2015/02/03 20:56:07 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\ACEStream
O43 - CFD: 2014/06/30 20:26:47 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Adobe
O43 - CFD: 2012/04/30 09:41:03 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Ahead
O43 - CFD: 2015/04/21 17:04:10 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Apple Computer
O43 - CFD: 2014/02/20 14:48:24 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\cald3
O43 - CFD: 2012/06/19 02:38:11 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Canneverbe Limited
O43 - CFD: 2015/01/17 01:27:45 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\CyberLink
O43 - CFD: 2015/10/03 11:30:25 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\DAEMON Tools Lite
O43 - CFD: 2015/09/27 15:33:47 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\dclogs
O43 - CFD: 2014/08/08 03:32:50 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\DiskDefrag
O43 - CFD: 2015/10/04 23:08:33 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\DMCache
O43 - CFD: 2013/12/08 13:21:25 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\DreamsFromThePast
O43 - CFD: 2015/10/05 10:45:51 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Dropbox
O43 - CFD: 2015/09/16 19:27:19 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\dvdcss
O43 - CFD: 2014/08/18 18:21:12 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\DVDVideoSoft
O43 - CFD: 2012/11/08 17:30:28 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\ESRI
O43 - CFD: 2014/08/08 03:35:57 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\GlarySoft
O43 - CFD: 2013/01/10 17:42:07 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Google
O43 - CFD: 2015/09/27 13:02:56 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\gtk-2.0
O43 - CFD: 2013/12/25 21:28:07 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\HTML Executable
O43 - CFD: 2014/09/07 10:45:37 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Identities
O43 - CFD: 2015/10/03 14:27:14 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\IDM
O43 - CFD: 2015/04/21 17:05:44 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\IObit
O43 - CFD: 2012/05/06 10:48:06 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Leadertech
O43 - CFD: 2015/07/21 14:34:22 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\LG Electronics
O43 - CFD: 2012/05/16 21:54:34 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Macromedia
O43 - CFD: 2015/05/18 15:29:39 - [] SD -- C:\Documents and Settings\HP_COMPAQ\Application Data\Microsoft
O43 - CFD: 2015/08/31 22:14:30 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\MoshouInput
O43 - CFD: 2012/11/18 17:08:46 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\MOVAVI
O43 - CFD: 2014/08/18 18:22:38 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Mozilla
O43 - CFD: 2013/11/05 10:49:35 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\MP3 Quality Modifier
O43 - CFD: 2012/05/16 21:13:39 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\NCH Software
O43 - CFD: 2014/09/06 23:25:22 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Opera Software
O43 - CFD: 2013/01/28 12:33:09 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Origin
O43 - CFD: 2012/09/06 15:31:04 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Oxford Wordpower Arabic
O43 - CFD: 2012/08/16 17:07:55 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Participatory Culture Foundation
O43 - CFD: 2014/01/15 17:18:49 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Philipp Winterberg
O43 - CFD: 2014/06/26 19:40:00 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\PhotoFiltre 7
O43 - CFD: 2015/04/21 16:38:27 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\ProductData
O43 - CFD: 2014/09/21 14:29:24 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Real
O43 - CFD: 2014/03/28 18:42:05 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\RealNetworks
O43 - CFD: 2012/10/29 16:02:24 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Safe Software
O43 - CFD: 2012/08/09 16:05:27 - [] RHD -- C:\Documents and Settings\HP_COMPAQ\Application Data\SecuROM
O43 - CFD: 2015/05/20 14:49:01 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\shamela
O43 - CFD: 2015/09/03 19:29:57 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\SimpleTV V03
O43 - CFD: 2015/10/04 01:12:23 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Skype
O43 - CFD: 2015/09/04 21:57:44 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\SogouPY.users =>PUP.Optional.Sogou
O43 - CFD: 2012/08/26 14:28:04 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\StreamTorrent
O43 - CFD: 2012/12/14 23:19:26 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Sun
O43 - CFD: 2015/02/03 14:13:04 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\TeamViewer
O43 - CFD: 2014/11/25 21:50:08 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Thinstall
O43 - CFD: 2015/02/14 15:30:04 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\TopCMM
O43 - CFD: 2012/09/11 22:24:25 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\tor
O43 - CFD: 2013/02/07 00:37:09 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\TorrentStream
O43 - CFD: 2013/08/13 22:56:34 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\TrickySoftware
O43 - CFD: 2014/11/25 22:36:46 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\TuneUp Software
O43 - CFD: 2012/12/19 20:40:50 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Ubisoft
O43 - CFD: 2015/01/22 21:02:46 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Ulead Systems
O43 - CFD: 2014/09/07 00:49:29 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Update
O43 - CFD: 2015/04/21 18:36:11 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\URSoft
O43 - CFD: 2015/10/05 15:24:58 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\uTorrent
O43 - CFD: 2015/10/05 11:05:00 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\vlc
O43 - CFD: 2012/04/30 09:42:42 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\WinRAR
O43 - CFD: 2015/08/20 00:39:53 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\XBMC
O43 - CFD: 2015/08/31 13:17:09 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\Youtube Downloader HD
O43 - CFD: 2015/10/05 15:25:04 - [] D -- C:\Documents and Settings\HP_COMPAQ\Application Data\ZHP
O43 - CFD: 2015/09/12 15:36:11 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Adobe
O43 - CFD: 2013/11/18 21:38:57 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Amazon
O43 - CFD: 2013/12/06 00:52:33 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Anuman Interactive
O43 - CFD: 2012/07/31 04:26:10 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Apple
O43 - CFD: 2015/01/16 14:45:25 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Apple Computer
O43 - CFD: 2015/05/09 22:15:15 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Bluestacks
O43 - CFD: 2014/06/04 15:43:35 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\BlueStacksSetup
O43 - CFD: 2015/08/31 21:15:07 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Buzz Image
O43 - CFD: 2014/02/23 00:52:09 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\cache
O43 - CFD: 2014/02/20 14:48:24 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\cald3
O43 - CFD: 2015/08/22 21:43:58 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Chromium
O43 - CFD: 2015/09/04 13:47:57 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Comodo
O43 - CFD: 2015/01/17 01:26:13 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\CyberLink
O43 - CFD: 2014/12/03 16:10:15 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 2015/06/16 02:59:33 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Dropbox
O43 - CFD: 2014/11/11 13:04:41 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\ERW
O43 - CFD: 2012/10/18 20:05:13 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\ESRI
O43 - CFD: 2014/01/15 17:28:17 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\ExtractNow
O43 - CFD: 2014/08/20 13:38:50 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Facebook
O43 - CFD: 2014/06/02 15:54:41 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Genymobile
O43 - CFD: 2015/07/31 00:22:19 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Google
O43 - CFD: 2013/03/26 18:40:21 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Identities
O43 - CFD: 2015/09/02 13:48:20 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\iexplorer
O43 - CFD: 2015/07/21 14:28:12 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\LG Electronics
O43 - CFD: 2015/09/02 15:21:43 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\LiveTV_
O43 - CFD: 2015/09/11 18:50:08 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Microsoft
O43 - CFD: 2012/04/30 18:43:53 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Microsoft Help
O43 - CFD: 2015/04/25 17:13:34 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\mixlr
O43 - CFD: 2012/04/30 09:40:01 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Mozilla
O43 - CFD: 2015/08/22 21:43:58 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Nichrome
O43 - CFD: 2014/09/06 23:25:27 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Opera Software
O43 - CFD: 2015/08/31 20:58:22 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Package Cache
O43 - CFD: 2012/05/06 11:15:12 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\PCHealth
O43 - CFD: 2015/07/31 12:32:54 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Rockstar Games
O43 - CFD: 2014/11/29 17:50:28 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\SKIDROW
O43 - CFD: 2014/05/09 14:46:12 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Skype
O43 - CFD: 2015/01/02 22:34:20 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Smart_PC_Soft
O43 - CFD: 2012/12/07 01:23:30 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\SportPlayer
O43 - CFD: 2014/10/12 21:49:34 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Sun
O43 - CFD: 2012/06/14 23:31:29 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Super Internet TV
O43 - CFD: 2015/08/22 22:57:02 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Temp
O43 - CFD: 2014/11/25 21:50:08 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Thinstall
O43 - CFD: 2014/11/11 15:17:43 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\TuneUp Software
O43 - CFD: 2015/08/31 23:00:33 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Unity
O43 - CFD: 2014/06/02 11:30:58 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 2015/08/22 21:43:58 - [] D -- C:\Documents and Settings\HP_COMPAQ\Local Settings\Application Data\Xpom
O43 - CFD: 2012/05/06 11:11:06 - [] RD -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2012/07/21 15:09:50 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Accessories
O43 - CFD: 2015/02/03 20:54:11 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Ace Stream Media
O43 - CFD: 2013/11/18 21:38:57 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Amazon
O43 - CFD: 2014/02/20 14:48:16 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Cambridge
O43 - CFD: 2015/10/03 13:31:05 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Dropbox
O43 - CFD: 2015/10/03 13:32:03 - [] RD -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2012/07/20 12:25:37 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 2014/06/26 19:22:50 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\PhotoFiltre 7
O43 - CFD: 2013/11/10 18:00:35 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\SopCast
O43 - CFD: 2015/04/21 18:18:01 - [0] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Startup
O43 - CFD: 2012/04/30 09:39:00 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2013/06/30 21:16:27 - [] D -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\XBMC

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©
O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll ©

---\\ Enumération des clés StartupReg (4) - 1s
O53 - SMSR:HKLM\...\startupreg\c7192e982641757f14f66356bb4cf303 [Key] . (...) -- C:\Documents and Settings\HP_COMPAQ\Trojan.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O53 - SMSR:HKLM\...\startupreg\PHIME2002A [Key] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE ©
O53 - SMSR:HKLM\...\startupreg\PHIME2002ASync [Key] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE ©

---\\ Liste des pilotes du système (55) - 4s
O58 - SDL:2007/05/24 13:50:26 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\ADIHdAud.sys [306688] ©
O58 - SDL:2007/05/18 08:20:24 A . (.Andrea Electronics Corporation - Audio Noise Filtering Driver (32-bit).) -- C:\WINDOWS\System32\drivers\aeaudio.sys [94848] ©
O58 - SDL:2001/08/23 17:00:08 A . (.Broadcom Corporation - Pilote NDIS5.1 Broadcom NetXtreme Gigabit E.) -- C:\WINDOWS\System32\drivers\b57xp32.sys [97248] ©
O58 - SDL:2001/08/28 13:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2001/08/28 13:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/13 18:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/13 18:05:14 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2001/08/28 13:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2015/08/20 11:20:45 A . (.Phoenix Technologies - DriverAgent Direct I/O for 32-bit Windows.) -- C:\WINDOWS\System32\drivers\DrvAgent32.sys [31832] ©
O58 - SDL:2012/05/01 10:04:26 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\dtsoftbus01.sys [242240] ©
O58 - SDL:2008/11/13 12:49:36 A . (.DVBLink - DVBLink Capture Filter.) -- C:\WINDOWS\System32\drivers\dvblinkcap.sys [17456]
O58 - SDL:2008/11/13 12:49:36 A . (.DVBLink - DVBLink Capture Filter 2.) -- C:\WINDOWS\System32\drivers\dvblinkcap2.sys [17456]
O58 - SDL:2008/11/13 12:49:36 A . (.DVBLink - DVBLink Tuner Filter.) -- C:\WINDOWS\System32\drivers\dvblinktun.sys [17584]
O58 - SDL:2008/11/13 12:49:36 A . (.DVBLink - DVBLink Tuner Filter 2.) -- C:\WINDOWS\System32\drivers\dvblinktun2.sys [17584]
O58 - SDL:2015/04/21 17:12:00 A . (.Intel Corporation - Intel(R) Network Adapter NDIS 5.2 deseriali.) -- C:\WINDOWS\System32\drivers\e1e5132.sys [254336] ©
O58 - SDL:2006/03/02 18:55:04 RA . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\e4ldr.sys [63555]
O58 - SDL:2006/05/04 18:20:20 RA . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\e4usbaw.sys [114616]
O58 - SDL:2009/03/18 18:35:40 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\WINDOWS\System32\drivers\hamachi.sys [26176] ©
O58 - SDL:2008/04/13 08:36:06 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2015/04/21 17:08:45 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECI.sys [45184] ©
O58 - SDL:2015/04/21 17:01:09 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [23840]
O58 - SDL:2012/07/16 22:09:50 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- C:\WINDOWS\System32\drivers\idmtdi.sys [109384] ©
O58 - SDL:2007/01/23 14:13:26 A . (.Infineon Technologies AG - Infineon Trusted Platform Module.) -- C:\WINDOWS\System32\drivers\ifxtpm.sys [36608]
O58 - SDL:2015/04/21 17:09:27 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [1730272] ©
O58 - SDL:2015/01/26 09:22:04 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetdiag.sys [24576] ©
O58 - SDL:2015/01/26 09:23:46 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetmodem.sys [29696] ©
O58 - SDL:2001/08/28 13:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2001/08/28 13:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2001/08/28 13:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2001/08/28 13:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2008/04/13 08:39:16 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120]
O58 - SDL:2011/07/01 11:46:40 A . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [26624] ©
O58 - SDL:2001/08/28 13:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2014/03/26 20:24:40 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [204064] ©
O58 - SDL:2013/02/20 18:30:38 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp.sys [104720] ©
O58 - SDL:2014/03/26 20:23:04 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [104736] ©
O58 - SDL:2001/08/28 13:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2005/09/19 12:58:08 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\adiusbaw.sys [126489]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2006/05/04 18:20:20 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\e4usbaw.sys [114616]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/13 08:50:56 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2001/08/28 13:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/13 08:49:52 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/13 08:49:44 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/13 08:49:40 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/13 08:49:44 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/13 08:49:42 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 110s
O61 - LFC: 2015/09/27 15:33:04 N . (.Skype.) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\MSDCSC\msdcsc.exe [1319424]
O61 - LFC: 2015/10/03 11:10:26 A . (..) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\Downloads\The_Sims_3_PC_Free_Full_Iso_ [1].exe [301794]
O61 - LFC: 2015/10/03 11:18:41 A . (..) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\Downloads\Programs\PopUp Destroy.exe [2864801]
O61 - LFC: 2015/10/03 11:10:04 A . (.Software Generic Prog.) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\Downloads\Programs\The_Sims_3_PC_Free_Full_Iso_.exe [1021488]
O61 - LFC: 2015/10/05 10:44:35 A . (..) -- C:\Documents and Settings\HP_COMPAQ\Menu Démarrer\Programmes\Démarrage\1a86cf1e2076acfbe7ff66356ff4239a.exe [375808]
O61 - LFC: 2015/10/02 00:07:40 A . (..) -- C:\Documents and Settings\HP_COMPAQ\Application Data\Dropbox\bin\EnterpriseDataAdapter.dll [166416]

---\\ Associations Shell Spawning (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (13) - 0s
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©

---\\ Recherche d'infection sur les navigateurs (3) - 6s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} - (Yahoo! Search) - http://fr.search.yahoo.com/
O69 - SBI: SearchScopes [HKCR] [DefaultScope] - (Web Search) - http://search.certified-toolbar.com?si=38268&bs=true&tid=77&q={searchTerms} =>PUP.Optional.CertifiedToolbar

---\\ Enumère les fichiers Crack & Keygen (1) - 63s
O82 - LFC: 2015/02/18 09:50:30 AC . (.http://yourfile-downloader.com.) -- C:\Documents and Settings\HP_COMPAQ\Mes documents\Downloads\Programs\Keygen_Para_Winthruster_downloader.exe [4185320] =>.Crack,Keygen

---\\ Enumère les services démarrés par Svchost (40) - 1s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] ©
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [96768] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (13) - 12s

SS - Demand [2015/09/22 17:17:33] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SS - Auto [2014/11/19 15:35:20] [ 409304] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-Service.exe ©
SR - Auto [2014/11/19 15:35:58] [ 388824] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe ©
SR - Auto [2014/11/19 15:38:02] [ 786136] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-UpdaterService.exe ©
SR - Auto [2012/07/19 17:18:38] [ 2568120] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe ©
SS - Demand [2012/10/18 18:34:01] [ 867080] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe ©
SS - Auto [2015/10/03 11:33:20] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/10/03 11:33:20] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SR - Auto [2012/10/19 00:42:10] [ 1323648] Network LookOut Agent (NetworkLookOutAgent) . (...) - C:\Program Files\Network LookOut Administrator Pro\bin\NLAgentProSvc.exe
SR - Auto [2013/08/14 16:19:22] [ 39056] RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
SR - Auto [2015/10/05 11:51:18] [ 1048808] Service Mgr HighStairs (Service Mgr HighStairs) . (...) - C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe =>PUP.Optional.HighStairs
SR - Auto [2015/10/05 12:52:32] [ 612584] Update Mgr HighStairs (Update Mgr HighStairs) . (...) - C:\Program Files\Fichiers communs\b4bc9939-75e9-422b-af5c-653de35c4f4b\updater.exe =>PUP.Optional.HighStairs

---\\ Scan Additionnel (31) - 0s
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\10\Plugin.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\5\Plugin.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\7\Plugin.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\12\Plugin.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\8\Plugin.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\3\Plugin.exe =>PUP.Optional.CrossRider
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\2\Plugin.exe =>PUP.Optional.CrossRider
HKLM\SOFTWARE\HighStairs =>PUP.Optional.HighStairs
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b =>PUP.Optional.HighStairs
C:\Program Files\Fichiers communs\b4bc9939-75e9-422b-af5c-653de35c4f4b =>PUP.Optional.HighStairs
HKLM\SYSTEM\CurrentControlSet\Services\Service Mgr HighStairs =>PUP.Optional.HighStairs
C:\Documents and Settings\All Users\Application Data\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe =>PUP.Optional.HighStairs
HKLM\SYSTEM\CurrentControlSet\Services\Update Mgr HighStairs =>PUP.Optional.HighStairs
C:\Program Files\Fichiers communs\b4bc9939-75e9-422b-af5c-653de35c4f4b\updater.exe =>PUP.Optional.HighStairs
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\High Stairs =>PUP.Optional.HighStairs
HKLM\SOFTWARE\mamverifier =>Toolbar.Mamverifier
HKLM\SOFTWARE\SiteFinder =>PUP.Optional.ShoppingReport
HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro
HKCU\SOFTWARE\1a86cf1e2076acfbe7ff66356ff4239a =>PUP.Optional.CrossRider
HKCU\SOFTWARE\270d2a0037f1d4c8cb53865250574eae =>PUP.Optional.CrossRider
HKCU\SOFTWARE\489e0672ff15db0fe74a0f4c4882602b =>PUP.Optional.CrossRider
HKCU\SOFTWARE\DC3_FEXEC =>Trojan.Fynloski
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\TENCENT =>PUP.Optional.TencentAddressBar
C:\Program Files\141CB8D2-1441052302-11DE-BBDA-81C1B3C50024 =>PUP.Optional.CrossRider
C:\Program Files\High Stairs =>PUP.Optional.HighStairs
C:\Documents and Settings\All Users\Application Data\ProductData =>PUP.Optional.Generic
C:\Documents and Settings\All Users\Application Data\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic
C:\Documents and Settings\HP_COMPAQ\Application Data\SogouPY.users =>PUP.Optional.Sogou

---\\ Récapitulatif des éléments trouvées sur votre station (12) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/hijacker-browsers/ =>PUP.Optional.Browser
http://www.nicolascoolman.fr/pup-sogou/ =>PUP.Optional.Sogou
http://www.nicolascoolman.fr/blog =>PUP.Optional.HighStairs
http://www.nicolascoolman.fr/blog =>Toolbar.Mamverifier
http://www.nicolascoolman.fr/adware-shoppingreport/ =>PUP.Optional.ShoppingReport
http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.WdsManPro
http://www.nicolascoolman.fr/trojan-fynloski/ =>Trojan.Fynloski
http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar

~ End of the scan, 73661 items in 255 seconds (1168)(1)()

Publicité


Signaler le contenu de ce document

Publicité