cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.10.10.148 Par Nicolas Coolman (2015/10/10)
~ Démarré par Morgan (Administrator) (2015/10/14 06:43:01)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Morgan\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Morgan\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 41.0.1 (x86 fr) v41.0.1
MSIE: Internet Explorer v11.0.9600.18059

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (1) - 1s
Windows Defender W7 (Activate)

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 19 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 63 Stepping 2, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 16600.612 MB (83% free)
~ System Restore: Activé (Enable)
~ System drive C: has 165 GB free of 244 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: FREEMACHINE
~ User Name: Morgan
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 165 GB free of 244 GB (System)
~ Drive D: has 1538 GB free of 2097 GB
~ Drive E: has GB free of 7 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (26) - 0s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] ©
[MD5.BD06D875FB79E92DAF724C91DE743AFA] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2487808] ©
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] ©
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] ©
[MD5.DE61AFF4060E7EF76B030885C7D939D1] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [357888] © =>Hijacker.Jabuticaba.X
[MD5.F1DCB357ACAAA06B78CDEA530560DA84] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] © =>Hijacker.Jabuticaba.X
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] ©
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] ©
[MD5.ACB6782973BD93760D597FC7BB37E692] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] ©
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] ©
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] ©
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] ©
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] ©
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] ©
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] ©

---\\ Processus lancés (44) - 2s
[MD5.6B245B7F96F901891636814B5A7A9088] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.5.) -- C:\Windows\system32\nvvsvc.exe [938800] [PID.992] ©
[MD5.C368FAF3084E3978462159F1DDAFF54F] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [417400] [PID.1016] ©
[MD5.7876CB89775B67347797E04775B2FAF9] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [632048] [PID.1636] ©
[MD5.D3C40989B164358F5BAA11EB7F605390] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376] [PID.1692] ©
[MD5.E42505363945956ECB5D38A4EB21CB39] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\system32\IProsetMonitor.exe [260360] [PID.1760] ©
[MD5.930AE35B57C33F361AF045D220229063] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688] [PID.1816] ©
[MD5.B2C3D31934FAFA20EE8ED1977651E871] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816] [PID.1940] ©
[MD5.BC49E8BDBC6C1B161FDDB350CE423366] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [154864] [PID.1156] ©
[MD5.C3FFB098C24A82B61E1818C3BB978B48] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176] [PID.2116] ©
[MD5.11AFDF4FC4B0906CEBD98D672F438939] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7575344] [PID.2404] ©
[MD5.648061F9712FA520B47F0291EAD1F732] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1252984] [PID.3020] ©
[MD5.6B245B7F96F901891636814B5A7A9088] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.5.) -- C:\Windows\system32\nvvsvc.exe [938800] [PID.3028] ©
[MD5.3B21300676CD2FCF13D0E6BDE1CC6A09] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21983024] [PID.3468] ©
[MD5.FEDF59A44767480267C5615C46F0FBA5] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512] [PID.3916] ©
[MD5.983DB56152EC98FDDD43987A23971533] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448176] [PID.4028] ©
[MD5.7B214267AD189EF67170228EAF549E6F] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [4876528] [PID.2224] ©
[MD5.215F76642FC1C3988EBC29A1DCEF917F] - (.Copyright (C) 2007 - HsMgr Application.) -- C:\Windows\SysWOW64\ExMgr.exe [204800] [PID.3224]
[MD5.022756278320918052752CDC9261379C] - (.CopyRight © ASUSTek Computer Inc. 2013 - ASUS Phoebus.) -- C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe [2384384] [PID.3980] ©
[MD5.35B5C11A892B5C9C4CFEBA528573FDF7] - (.Valve Corporation - Steam Client Bootstrapper.) -- D:\Programmes\Steam\Steam.exe [2900560] [PID.3960] ©
[MD5.5707FD4D98EE906361ADB2819D1E8D39] - (.GameRanger Technologies - GameRanger.) -- C:\Users\Morgan\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe [1792664] [PID.3908] ©
[MD5.EE864CD35936E4AAD8120321907DA8F5] - (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508656] [PID.2016] ©
[MD5.A34F491D7BF77F9628319A1A14063D13] - (.ROCCAT GmbH - Kone XTD Optical Monitor Application.) -- D:\Programmes\ROCCAT\KoneXTDOpticalMonitor.exe [552960] [PID.3704]
[MD5.F916BA0DA28A4B4F7B1ADE76EB42F088] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552] [PID.3804] ©
[MD5.FEFF60CA0FBC86A043495FA79581CEA9] - (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1206648] [PID.4544] ©
[MD5.075D93A7094E1BCBDE3A2D8EBA803745] - (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1165688] [PID.4676] ©
[MD5.F6234C4C494D411DEE452483C866EFC8] - (.Motorola Solutions, Inc. - Bluetooth Media Service.) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1706360] [PID.5076] ©
[MD5.2A4BB03CB3E07015449D89D3A980226F] - (.Valve Corporation - Steam Client WebHelper.) -- D:\Programmes\Steam\bin\steamwebhelper.exe [1833040] [PID.5268] ©
[MD5.E44E78AD19D1E5B14184D480EC369356] - (.Cmedia Electronics Inc. - EX Audio Service.) -- C:\Windows\system\ATLOISAService.exe [512000] [PID.5292]
[MD5.1C9259F0B27C55B7028D2AFBE96A9B45] - (.Cmedia Electronics Inc - Monitor Service.) -- C:\Windows\system\MonitorService.exe [650752] [PID.5436]
[MD5.A50EBBF5CCC4D74B37D88503A52C72A8] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [838224] [PID.5460] ©
[MD5.D3F4701007AC79F81492BCBA4EBBE45A] - (.GOG.com - GOG Galaxy.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [7744056] [PID.5772] ©
[MD5.C4120F4FCB936911C42870F5D277FAA6] - (.GOG.com - GalaxyClient Helper Application.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe [1492536] [PID.5696] ©
[MD5.C4120F4FCB936911C42870F5D277FAA6] - (.GOG.com - GalaxyClient Helper Application.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe [1492536] [PID.5804] ©
[MD5.C4120F4FCB936911C42870F5D277FAA6] - (.GOG.com - GalaxyClient Helper Application.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe [1492536] [PID.5500] ©
[MD5.CB46168FFDEA91E2B3435E51BB436558] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216] [PID.6648] ©
[MD5.2545A3C12E99CAA24F9367D7F5A80D83] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592] [PID.6932] ©
[MD5.D524B034148F14C60F1CA66D267EE56A] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232] [PID.6556] ©
[MD5.2749D828991C160D1D8E7A06A0A95D93] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584] [PID.3812] ©
[MD5.9C30978597D52AD8EA319BABE6112AAE] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [405976] [PID.6616] ©
[MD5.601C233CDC2422AD7244D423ED8DFB50] - (.Mozilla Corporation - Firefox.) -- D:\Programmes\Firefox\firefox.exe [377000] [PID.3288] ©
[MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- D:\Programmes\Firefox\plugin-container.exe [278184] [PID.2784] ©
[MD5.C8D98A82C89895912E8936046C6B7EDD] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_207.exe [3426504] [PID.7056] ©
[MD5.C8D98A82C89895912E8936046C6B7EDD] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_207.exe [3426504] [PID.5304] ©
[MD5.1D45319619579DDA7DE8DE9BB1E3079E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Morgan\Downloads\ZHPDiag3.exe [1943040] [PID.3228] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 0s
M0 - MFSP: prefs.js [Morgan - wca0u3gz.default] https://www.malwarebytes.org/restorebrowser//?type=hp&ts=1444784454&z=ccbff7865733c8576b7ae14g4zdz4zbmcbez2ofo1b&from=ima&uid=ST4000DX001-1CE168_Z301BASBXXXXZ301BASB
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_207.dll ©
P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=3] - (.The Software Group.) -- C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore
P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=9] - (.The Software Group.) -- C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll ©

---\\ Applications lancées au démarrage du système (23) - 0s
O4 - HKLM\..\Run: [IntelPROSet] . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe ©
O4 - HKLM\..\Run: [BTMTrayAgent] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ©
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe ©
O4 - HKLM\..\Run: [PheobusEX] . (.Copyright (C) 2007 - HsMgr Application.) -- C:\Windows\SysWOW64\ExMgr.exe
O4 - HKLM\..\Run: [GamecomSound] . (.CopyRight © ASUSTek Computer Inc. 2013 - ASUS Phoebus.) -- C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe ©
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ©
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ©
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Programmes\DAEMON Tools Lite\DTLite.exe ©
O4 - HKCU\..\Run: [GalaxyClient] . (.GOG.com - GOG Galaxy.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe ©
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- D:\Programmes\Steam\Steam.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Dolby Home Theater v4] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe ©
O4 - HKLM\..\Wow6432Node\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [RoccatKoneXTDOptical] . (.ROCCAT GmbH - Kone XTD Optical Monitor Application.) -- D:\Programmes\ROCCAT\KoneXTDOpticalMonitor.EXE
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ©
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-1104989661-2907608435-2406173968-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Programmes\DAEMON Tools Lite\DTLite.exe ©
O4 - HKUS\S-1-5-21-1104989661-2907608435-2406173968-1000\..\Run: [GalaxyClient] . (.GOG.com - GOG Galaxy.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe ©
O4 - HKUS\S-1-5-21-1104989661-2907608435-2406173968-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- D:\Programmes\Steam\Steam.exe ©

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.10 109.0.66.20
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.10 109.0.66.20
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.10 109.0.66.20
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10

---\\ Protocole additionnel (20) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©

---\\ Liste des services NT non Microsoft et non désactivés (15) - 0s
O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe ©
O23 - Service: Bluetooth Media Service (Bluetooth Media Service) . (.Motorola Solutions, Inc. - Bluetooth Media Service.) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe ©
O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe ©
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe ©
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\system32\IProsetMonitor.exe ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe ©
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.5.) - C:\Windows\system32\nvvsvc.exe ©
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe ©
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe ©

---\\ Tâches planifiées en automatique (19) - 4s
[MD5.00000000000000000000000000000000] [APT] [9E07OMZu] (...) -- C:\Users\Morgan\AppData\Roaming\9E07OMZu.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.541F7A3298A5AA2BA0E6B35172D3D51F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.00000000000000000000000000000000] [APT] [IgpLDox098Q] (...) -- C:\Users\Morgan\AppData\Roaming\IgpLDox098Q.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [SoftwareUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.) [0] =>PUP.Optional.Boxore
[MD5.00000000000000000000000000000000] [APT] [{1A853579-5C2B-43A9-83A1-F4B1478385D5}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{45E2E2AF-75DD-47FB-B1C9-6FC6FD38C3EB}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{668BEEC5-F55B-477F-955B-8A7D8969CAFD}] (...) -- D:\Programmes\Rogue Legacy\RogueLegacy.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{96AC852B-1ABB-4590-A681-F5407D5CA95C}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{99A8710F-BFC7-418C-8CFD-BFFDEAD7130A}] (...) -- D:\Jeux\Diablo 2\D2Patch_112a_JeuxVideo.com_13748.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{E87B1F7D-EC2E-47E7-B5F1-345D73AEE238}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{EC2BC208-8F09-4164-9B84-EDCA60576138}] (...) -- D:\Jeux\Diablo 2\D2Patch_112a_JeuxVideo.com_13748.exe (.not file.) [0]
O39 - APT: 9E07OMZu - (...) -- C:\Windows\Tasks\9E07OMZu.job [992] =>PUP.Optional.CrossRider
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: IgpLDox098Q - (...) -- C:\Windows\Tasks\IgpLDox098Q.job [998] =>PUP.Optional.CrossRider
O39 - APT: SoftwareUpdateTaskMachineUA - (...) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job [918] =>PUP.Optional.Boxore
O39 - APT: 9E07OMZu - (...) -- C:\Windows\System32\Tasks\9E07OMZu [4026] =>PUP.Optional.CrossRider
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] ©
O39 - APT: IgpLDox098Q - (...) -- C:\Windows\System32\Tasks\IgpLDox098Q [4032] =>PUP.Optional.CrossRider
O39 - APT: SoftwareUpdateTaskMachineUA - (...) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA [3914] =>PUP.Optional.Boxore

---\\ Logiciels installés (48) - 4s
O42 - Logiciel: Intel(R) Network Connections 19.1.51.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {243B5B47-6A9C-4D51-8CA4-8D9C0308D02F} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} ©
O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {62DE858A-A2A5-452F-B067-C5F104358AD6} ©
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {98841A35-1CBE-4EA3-BFF5-F3E3AD894666} ©
O42 - Logiciel: NVIDIA Pilote 3D Vision 358.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision ©
O42 - Logiciel: NVIDIA Pilote graphique 358.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA GeForce Experience 2.5.15.46 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB ©
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {BB193400-CE40-4598-8391-FE63EC46BFF4} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {EAF826C0-245E-4D02-9D51-BA4C98717EAE} ©
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {F43C7651-A7CB-49EF-8AF4-40630849FF29} ©
O42 - Logiciel: Intel(R) Network Connections 19.1.51.0 - (.Intel.) [HKLM][64Bits] -- {FD42EE05-18F9-459F-935D-770E75B3BEE5} ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net ©
O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins ©
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ©
O42 - Logiciel: Fallout 2 - (...) [HKLM][64Bits] -- Fallout 2
O42 - Logiciel: Freemake Video Converter version 4.1.6 - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Converter_is1 ©
O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone ©
O42 - Logiciel: Mozilla Firefox 41.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.1 (x86 fr) ©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo ©
O42 - Logiciel: Dying Light Update v1.6.1 - (...) [HKLM][64Bits] -- RHlpbmdMaWdodA==_is1
O42 - Logiciel: Far Cry 4 - (...) [HKLM][64Bits] -- RmFyQ3J5NA==_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam ©
O42 - Logiciel: Terraria - (.Re-Logic.) [HKLM][64Bits] -- Steam App 105600 ©
O42 - Logiciel: Marvel Heroes 2015 - (.Gazillion Entertainment.) [HKLM][64Bits] -- Steam App 226320
O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 ©
O42 - Logiciel: The Walking Dead Season 2 - (...) [HKLM][64Bits] -- The Walking Dead Season 2_is1
O42 - Logiciel: The Wolf Among Us Episode 5 - (...) [HKLM][64Bits] -- The Wolf Among Us Episode 5_is1
O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {21de8cfa-6d1e-4bb2-bbe2-0bc64e82d547} ©
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} ©
O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} ©
O42 - Logiciel: GOG Galaxy - (.GOG.com.) [HKLM][64Bits] -- {7258BA11-600C-430E-A759-27E2C691A335}_is1 ©
O42 - Logiciel: Software Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: ROCCAT Kone XTD Optical Mouse Driver - (.Roccat GmbH.) [HKLM][64Bits] -- {AD43B296-FE63-42C0-AA39-D8759B905420}
O42 - Logiciel: Dolby Home Theater v4 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B26438B4-BF51-49C3-9567-7F14A5E40CB9} ©
O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {d370215a-d003-43ae-a3b6-1028af64d5a1} ©
O42 - Logiciel: ASUS Phoebus Audio Sound Card - (.ASUS Phoebus.) [HKLM][64Bits] -- {F07DD099-4BB2-44E9-8E64-FE9B781E8C02}
O42 - Logiciel: Dying Light - (.Warner Bros Games.) [HKLM][64Bits] -- {F7B2E17E-4A27-4CFB-A7AC-210A6DD083BC}_is1
O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU][64Bits] -- GameRanger ©
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (100) - 4s
HKLM\SOFTWARE\Wow6432Node\Activision
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\ASUS Phoebus Audio Sound Card
HKLM\SOFTWARE\Wow6432Node\Battle.net
HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins
HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\DownloadCenter
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\Enterbrain
HKLM\SOFTWARE\Wow6432Node\EVP
HKLM\SOFTWARE\Wow6432Node\Freemake
HKLM\SOFTWARE\Wow6432Node\futuremark
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\GOG.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Interplay
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lavasoft
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\re-logic
HKLM\SOFTWARE\Wow6432Node\ROCCAT
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\THQ
HKLM\SOFTWARE\Wow6432Node\TOSHIBA
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\Wizards of the Coast
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\Yahoo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\9E07OMZu
HKCU\SOFTWARE\Alex Feinman
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Battle.net
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\C-Media
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CoGenMedia
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\Dolby
HKCU\SOFTWARE\DownloadCenter
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\Enterbrain
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\Futuremark
HKCU\SOFTWARE\GameRanger
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GOG.com
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IgpLDox098Q
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\Oddworld Inhabitants, Inc.
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\ROCCAT
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\Telltale Games
HKCU\SOFTWARE\Terraria
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\Warner Bros. Interactive Entertainment
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wizards of the Coast
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\WTools
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\__SP__browser_name__SP__
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programmes (172) - 3s
O43 - CFD: 2015/10/14 04:56:04 - [] D -- C:\Program Files (x86)\03000200-1444783211-0500-0006-000700080009 =>PUP.Optional.CrossRider
O43 - CFD: 2015/10/13 13:12:59 - [] D -- C:\Program Files (x86)\Battle.net
O43 - CFD: 2015/10/03 17:52:12 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 2014/10/19 17:55:41 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 2015/10/14 03:01:14 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2014/10/19 19:00:27 - [] D -- C:\Program Files (x86)\Dolby Home Theater v4
O43 - CFD: 2015/09/17 23:59:28 - [] D -- C:\Program Files (x86)\GalaxyClient
O43 - CFD: 2015/10/14 04:07:36 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/10/14 04:27:18 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/10/14 03:11:11 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/10/14 05:50:24 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/10/10 19:33:16 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/10/14 05:36:51 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/10/10 19:49:17 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/10/14 03:07:37 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/10/14 02:38:18 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2015/02/22 11:42:37 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/05/05 10:58:59 - [0] D -- C:\Program Files (x86)\Webutation
O43 - CFD: 2014/10/20 03:16:43 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/10 03:17:24 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/10/14 05:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/10/19 23:35:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/10/19 19:00:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Phoebus
O43 - CFD: 2015/10/03 17:16:07 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 2015/09/16 11:18:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Isle
O43 - CFD: 2014/11/03 18:48:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2014/10/19 19:00:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
O43 - CFD: 2015/09/27 01:43:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 3 Game of the Year Edition
O43 - CFD: 2015/06/17 00:33:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 2015/10/14 02:57:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/10/03 16:31:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
O43 - CFD: 2015/09/27 01:53:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
O43 - CFD: 2014/10/19 18:10:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/09/27 01:53:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
O43 - CFD: 2015/10/10 19:33:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2014/11/22 03:45:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic 2015
O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/10/03 17:30:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mephisto
O43 - CFD: 2015/10/10 19:49:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/10/14 02:18:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
O43 - CFD: 2015/10/03 18:33:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT
O43 - CFD: 2015/10/03 16:55:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker VX Ace
O43 - CFD: 2015/06/17 03:40:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker VX.Ace
O43 - CFD: 2014/10/20 03:16:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2014/11/03 20:55:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2011/04/12 11:28:08 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/10/03 17:03:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Season 2
O43 - CFD: 2015/10/03 17:05:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Wolf Among Us Episode 5
O43 - CFD: 2015/02/22 12:06:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2014/10/20 03:48:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/06/14 01:19:34 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 2015/09/27 01:51:48 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2015/08/22 04:57:18 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2015/05/29 10:43:03 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/05/04 09:24:43 - [] D -- C:\ProgramData\CODEX
O43 - CFD: 2014/11/03 19:24:41 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/10/14 04:56:04 - [] D -- C:\ProgramData\FaceLift
O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/06/17 00:34:01 - [] D -- C:\ProgramData\Freemake
O43 - CFD: 2015/05/27 13:14:48 - [] D -- C:\ProgramData\GOG.com
O43 - CFD: 2014/10/19 18:09:18 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/05/05 14:21:02 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2014/10/19 21:20:19 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/10/14 02:41:04 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/10/14 06:15:25 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/05/29 10:43:36 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/10/10 19:33:22 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/09/29 03:07:31 - [] D -- C:\ProgramData\Orbit
O43 - CFD: 2015/10/14 02:17:55 - [] D -- C:\ProgramData\Origin
O43 - CFD: 2015/10/03 08:56:22 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/05/18 23:20:39 - [] D -- C:\ProgramData\RELOADED
O43 - CFD: 2014/10/19 17:55:52 - [] D -- C:\ProgramData\Roaming
O43 - CFD: 2014/10/21 04:03:25 - [] D -- C:\ProgramData\ROCCAT
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2014/11/04 20:02:50 - [] D -- C:\ProgramData\Steam
O43 - CFD: 2014/10/20 03:12:16 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/10/14 02:17:28 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 2015/06/17 00:33:47 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared
O43 - CFD: 2015/10/03 18:32:48 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2014/10/19 18:10:56 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 2015/10/10 19:33:09 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/10/14 04:56:04 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2014/10/19 18:09:19 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/10/14 02:44:29 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2014/10/20 19:47:04 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/10/03 18:58:13 - [] D -- C:\Users\Morgan\AppData\Roaming\.minecraft
O43 - CFD: 2014/10/19 21:21:11 - [] D -- C:\Users\Morgan\AppData\Roaming\Adobe
O43 - CFD: 2015/10/01 18:18:43 - [] D -- C:\Users\Morgan\AppData\Roaming\Battle.net
O43 - CFD: 2014/11/03 19:58:54 - [] D -- C:\Users\Morgan\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2015/07/04 02:07:09 - [] D -- C:\Users\Morgan\AppData\Roaming\dvdcss
O43 - CFD: 2015/10/03 16:55:40 - [] D -- C:\Users\Morgan\AppData\Roaming\Enterbrain
O43 - CFD: 2015/09/18 20:17:48 - [] D -- C:\Users\Morgan\AppData\Roaming\Fallout2
O43 - CFD: 2015/09/28 19:34:09 - [] D -- C:\Users\Morgan\AppData\Roaming\GameRanger
O43 - CFD: 2015/05/05 22:15:14 - [] D -- C:\Users\Morgan\AppData\Roaming\IcoFX
O43 - CFD: 2014/10/19 17:36:53 - [] D -- C:\Users\Morgan\AppData\Roaming\Identities
O43 - CFD: 2014/10/19 17:55:58 - [] D -- C:\Users\Morgan\AppData\Roaming\Intel
O43 - CFD: 2014/10/19 18:10:13 - [] D -- C:\Users\Morgan\AppData\Roaming\Intel Corporation
O43 - CFD: 2014/10/20 03:56:06 - [] D -- C:\Users\Morgan\AppData\Roaming\java
O43 - CFD: 2014/10/19 21:21:11 - [] D -- C:\Users\Morgan\AppData\Roaming\Macromedia
O43 - CFD: 2011/04/12 11:28:08 - [0] D -- C:\Users\Morgan\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/10/14 02:39:03 - [] SD -- C:\Users\Morgan\AppData\Roaming\Microsoft
O43 - CFD: 2014/10/19 17:47:53 - [] D -- C:\Users\Morgan\AppData\Roaming\Mozilla
O43 - CFD: 2015/05/28 00:10:39 - [] D -- C:\Users\Morgan\AppData\Roaming\NVIDIA
O43 - CFD: 2015/10/14 03:07:34 - [0] D -- C:\Users\Morgan\AppData\Roaming\Opera Software
O43 - CFD: 2015/10/10 19:22:44 - [] D -- C:\Users\Morgan\AppData\Roaming\Origin
O43 - CFD: 2014/10/21 15:27:35 - [] D -- C:\Users\Morgan\AppData\Roaming\Rogue Legacy
O43 - CFD: 2014/11/22 03:48:28 - [] D -- C:\Users\Morgan\AppData\Roaming\Steam
O43 - CFD: 2015/10/10 19:33:03 - [] D -- C:\Users\Morgan\AppData\Roaming\Sun
O43 - CFD: 2015/03/11 01:13:51 - [] D -- C:\Users\Morgan\AppData\Roaming\uTorrent
O43 - CFD: 2015/10/14 05:32:18 - [] D -- C:\Users\Morgan\AppData\Roaming\vlc
O43 - CFD: 2015/10/14 04:22:16 - [] D -- C:\Users\Morgan\AppData\Roaming\WinBatch
O43 - CFD: 2014/10/20 03:48:57 - [] D -- C:\Users\Morgan\AppData\Roaming\WinRAR
O43 - CFD: 2015/10/14 04:56:05 - [] D -- C:\Users\Morgan\AppData\Roaming\WTools
O43 - CFD: 2015/10/14 06:43:08 - [] D -- C:\Users\Morgan\AppData\Roaming\ZHP
O43 - CFD: 2014/10/19 21:20:44 - [0] D -- C:\Users\Morgan\AppData\Local\Adobe
O43 - CFD: 2014/10/19 17:36:49 - [0] SHD -- C:\Users\Morgan\AppData\Local\Application Data
O43 - CFD: 2015/10/14 02:16:48 - [] D -- C:\Users\Morgan\AppData\Local\Battle.net
O43 - CFD: 2015/09/27 01:56:38 - [] D -- C:\Users\Morgan\AppData\Local\Blizzard
O43 - CFD: 2015/09/27 01:51:53 - [] D -- C:\Users\Morgan\AppData\Local\Blizzard Entertainment
O43 - CFD: 2015/09/17 23:59:38 - [] D -- C:\Users\Morgan\AppData\Local\CEF
O43 - CFD: 2015/10/14 04:56:05 - [] D -- C:\Users\Morgan\AppData\Local\DeskBar
O43 - CFD: 2015/07/20 19:33:27 - [0] D -- C:\Users\Morgan\AppData\Local\Diagnostics
O43 - CFD: 2015/10/14 05:43:01 - [] D -- C:\Users\Morgan\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/10/03 16:03:39 - [0] SHD -- C:\Users\Morgan\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/10/03 16:03:39 - [0] SHD -- C:\Users\Morgan\AppData\Local\EmieSiteList
O43 - CFD: 2015/10/03 16:03:39 - [0] SHD -- C:\Users\Morgan\AppData\Local\EmieUserList
O43 - CFD: 2015/09/27 01:43:20 - [] D -- C:\Users\Morgan\AppData\Local\Fallout3
O43 - CFD: 2015/05/18 21:34:02 - [] D -- C:\Users\Morgan\AppData\Local\FalloutNV
O43 - CFD: 2015/09/27 17:00:19 - [] D -- C:\Users\Morgan\AppData\Local\Futuremark
O43 - CFD: 2015/05/28 00:10:39 - [] D -- C:\Users\Morgan\AppData\Local\GalaxyCommunicationService
O43 - CFD: 2014/10/19 17:36:49 - [0] SHD -- C:\Users\Morgan\AppData\Local\Historique
O43 - CFD: 2015/10/14 02:59:29 - [] D -- C:\Users\Morgan\AppData\Local\Installer =>PUP.Optional.InstallPedia
O43 - CFD: 2014/10/19 21:21:11 - [] D -- C:\Users\Morgan\AppData\Local\Macromedia
O43 - CFD: 2015/10/14 02:47:03 - [] D -- C:\Users\Morgan\AppData\Local\Microsoft
O43 - CFD: 2014/10/19 17:47:54 - [] D -- C:\Users\Morgan\AppData\Local\Mozilla
O43 - CFD: 2014/10/21 03:56:47 - [] D -- C:\Users\Morgan\AppData\Local\NVIDIA
O43 - CFD: 2014/10/21 03:55:54 - [] D -- C:\Users\Morgan\AppData\Local\NVIDIA Corporation
O43 - CFD: 2015/10/14 03:07:34 - [0] D -- C:\Users\Morgan\AppData\Local\Opera Software
O43 - CFD: 2014/10/20 21:12:52 - [] D -- C:\Users\Morgan\AppData\Local\Programs
O43 - CFD: 2015/05/24 21:47:13 - [] D -- C:\Users\Morgan\AppData\Local\SKIDROW
O43 - CFD: 2015/05/06 10:56:10 - [] D -- C:\Users\Morgan\AppData\Local\Steam
O43 - CFD: 2015/10/14 06:42:57 - [] D -- C:\Users\Morgan\AppData\Local\Temp
O43 - CFD: 2015/10/14 02:40:45 - [0] D -- C:\Users\Morgan\AppData\Local\Tempfolder
O43 - CFD: 2014/10/19 17:36:49 - [0] SHD -- C:\Users\Morgan\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/08/26 04:01:16 - [] D -- C:\Users\Morgan\AppData\Local\VirtualStore
O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/10/14 05:51:28 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/09/16 11:18:48 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black Isle
O43 - CFD: 2015/06/17 00:33:47 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 2015/10/14 04:07:46 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/10/14 05:51:28 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/09/27 16:57:04 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/10/20 03:48:42 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll ©

---\\ Liste des pilotes du système (61) - 3s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] ©
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2014/03/26 12:37:38 A . (.Motorola Solutions, Inc. - Bluetooth Auxiliary Driver.) -- C:\Windows\System32\drivers\btmaux.sys [140600] ©
O58 - SDL:2014/04/18 17:34:38 A . (.Motorola Solutions, Inc. - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\btmhsf.sys [1423160] ©
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2013/07/17 09:00:58 A . (.C-Media Electronics Inc. - C-Media High Definition Audio Function Driv.) -- C:\Windows\System32\drivers\CMHDAudioV64.sys [67584]
O58 - SDL:2014/11/03 18:48:19 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064] ©
O58 - SDL:2014/03/14 05:23:30 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1d62x64.sys [487704] ©
O58 - SDL:2014/03/11 10:13:50 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1r62x64.sys [487704] ©
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] ©
O58 - SDL:2013/04/22 02:06:34 A . (.Intel Corporation - NDIS 6.1 Advanced Networking Services..) -- C:\Windows\System32\drivers\iANSW60e.sys [163400] ©
O58 - SDL:2014/05/28 10:10:20 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [672104] ©
O58 - SDL:2014/05/28 10:10:20 A . (.Intel Corporation - Intel(R) Rapid Storage Technology Filter dr.) -- C:\Windows\System32\drivers\iaStorF.sys [28008] ©
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] ©
O58 - SDL:2014/05/09 09:27:38 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) -- C:\Windows\System32\drivers\ibtusb.sys [192456] ©
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2014/02/26 02:31:20 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\Windows\System32\drivers\iqvw64e.sys [34568] ©
O58 - SDL:2015/06/26 17:12:37 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [31528] ©
O58 - SDL:2015/06/26 17:13:33 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [403752] ©
O58 - SDL:2015/06/30 12:44:27 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [814376] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2014/05/04 01:04:06 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\Netwsw02.sys [3438048] ©
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2015/10/03 07:06:17 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [204648] ©
O58 - SDL:2015/10/03 07:06:17 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11114616] ©
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] ©
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] ©
O58 - SDL:2015/10/03 07:06:17 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [50472] ©
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2013/05/19 02:02:52 A . (.Scarlet.Crush Productions - Scp Virtual Bus Driver.) -- C:\Windows\System32\drivers\ScpVBus.sys [39168]
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2014/09/30 17:47:28 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [129312] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (9) - 4s
O61 - LFC: 2015/10/14 02:46:05 A . (..) -- C:\Users\Morgan\AppData\Roaming\Mozilla\Firefox\Profiles\wca0u3gz.default\CertUtils\certutil.exe [102400]
O61 - LFC: 2015/10/14 02:46:05 A . (..) -- C:\Users\Morgan\AppData\Roaming\Mozilla\Firefox\Profiles\wca0u3gz.default\CertUtils\sqlite3.dll [484864]
O61 - LFC: 2015/10/13 07:30:36 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5972783]
O61 - LFC: 2015/10/13 21:25:43 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\Packages\00007fe5\DAO.20054851.exe [6611928]
O61 - LFC: 2015/10/13 21:25:44 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\Packages\00007fdc\CoProc update.20053184.exe [588512]
O61 - LFC: 2015/10/10 21:22:47 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\Packages\00007fa2\DRS update.20028384.exe [353304]
O61 - LFC: 2015/10/06 22:32:40 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\drs\update.bin [1308024]
O61 - LFC: 2015/10/14 02:59:27 A . (.Copyright (C) 2014.) -- C:\Users\Morgan\AppData\Local\Installer\Install_8528\brakietut_tutbl_setup.exe [1165312]
O61 - LFC: 2015/10/14 02:59:27 A . (.Copyright (C) 2014.) -- C:\Users\Morgan\AppData\Local\Installer\Install_22106\brakietut_tutbl_setup.exe [1165312]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- D:\Programmes\Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- D:\Programmes\Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- D:\Programmes\Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- D:\Programmes\Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (10) - 3s
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.alias", "mystartsearch"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico"); =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.name", "mystartsearch"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.ptid", "ima"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.uid", "ST4000DX001-1CE168_Z301BASBXXXXZ301BASB"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1444784454&z=ccbff7865733c8576b7ae14g4z[...] =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("extensions.enabledAddons", "defsearchp%40gmail.com:1.0.0.1039,deskCutv2%40gmail.com:0.0.10,%7B972ce4c6-7e08-4474-a285-3[...] =>PUP.Optional.DeskCut
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2607104] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ©

---\\ Liste des exceptions du parefeu Windows (24) - 1s
O87 - FAEL: "{8E903B53-0C01-4623-949E-87A2B38CF7C9}" [In-None-P6-TRUE] .(...) -- C:\Program Files\ma-config.com\MaConfigAgent.exe (.not file.)
O87 - FAEL: "{89583DD2-C344-4C9D-BA9C-46F8766A317C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ma-config.com\MaConfigAgent.exe (.not file.)
O87 - FAEL: "{EDDE62CF-1755-42EE-8B07-77A88232A647}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Morgan\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{4A0FC395-8FB8-425E-846C-19AF05BB14A7}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Morgan\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{A1FAAD6C-22E9-45F9-9218-143F9315C9B9}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
O87 - FAEL: "{5DF302A4-13BD-4B31-AA6C-0169BAAAEBB1}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
O87 - FAEL: "{A3A26535-2643-44AA-ABEE-5228CE9F4981}" [In-None-P6-FALSE] .(...) -- D:\Jeux\Call of Duty Black Ops II\t6zm.exe (.not file.)
O87 - FAEL: "{65FF35BF-2755-497E-A47D-085DCB1A741D}" [In-None-P17-FALSE] .(...) -- D:\Jeux\Call of Duty Black Ops II\t6zm.exe (.not file.)
O87 - FAEL: "TCP Query User{39081EAC-0861-4421-B322-A096567EA961}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{8EE4CB4E-8E2A-4DB5-A311-1F4F85984B7A}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe (.not file.)
O87 - FAEL: "{E99A4297-2D53-4574-96AF-79B3E40A824B}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2015.exe
O87 - FAEL: "{50DACE3A-DB75-4DE1-ABEF-0E9F9DCB97A6}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2015.exe
O87 - FAEL: "{26B67BA6-6B38-4295-934C-65F00AE39595}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Hearthstone\Hearthstone.exe
O87 - FAEL: "{5F38164C-2A2E-400F-83F5-A6DE55564B03}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Hearthstone\Hearthstone.exe
O87 - FAEL: "{499955CC-7DEB-4320-8632-B986108D9106}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\3DMarkLauncher.exe (.not file.)
O87 - FAEL: "{E30AC94E-D9AF-4397-8B30-2AD4C4BBB39F}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\3DMarkLauncher.exe (.not file.)
O87 - FAEL: "{09D025A8-C7BC-4911-A4BC-664F7175CFB7}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x86\3DMark.exe (.not file.)
O87 - FAEL: "{E66E95FF-6EA6-4E56-B0D4-AC758FEB5DAC}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x86\3DMark.exe (.not file.)
O87 - FAEL: "{39FB8B13-124E-4605-9F85-2F22B5C90C76}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x64\3DMark.exe (.not file.)
O87 - FAEL: "{4D8E86AC-C26D-4648-94AB-EBF1215FF9B2}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x64\3DMark.exe (.not file.)
O87 - FAEL: "TCP Query User{1045002C-BF75-43B8-A5EC-DC1CAAEA3F51}D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe" [In-None-P6-TRUE] .(...) -- D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe (.not file.)
O87 - FAEL: "UDP Query User{64DF0DC9-04B7-4BE1-9031-AE8A4504A7B9}D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe" [In-None-P17-TRUE] .(...) -- D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe (.not file.)
O87 - FAEL: "{266CFF23-FFCC-4FA6-914E-A11C6217E8B4}" [In-None-P17-TRUE] .(...) -- C:\Users\Morgan\AppData\Local\BrowserAir\Application\BrowserAir.exe (.not file.) =>PUP.Optional.BrowserAir
O87 - FAEL: "{3FDD0CC5-4E9A-4B73-B1ED-94E62C80EBC6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\MyBrowser\MyBrowser\Application\mybrowser.exe (.not file.)

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (24) - 14s

SS - Demand [2015/10/14 05:52:02] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Demand [2013/10/01 10:42:48] [ 650752] ATLMonitorService (ATLMonitorService) . (.Cmedia Electronics Inc.) - C:\Windows\system\MonitorService.exe
SR - Demand [2013/10/25 06:31:48] [ 512000] ATLOISAService (ATLOISAService) . (.Cmedia Electronics Inc..) - C:\Windows\system\ATLOISAService.exe
SR - Auto [2014/03/26 12:36:30] [ 1206648] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe ©
SR - Auto [2014/03/26 12:36:54] [ 1706360] Bluetooth Media Service (Bluetooth Media Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe ©
SR - Auto [2014/03/26 12:37:04] [ 1165688] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe ©
SR - Auto [2014/01/17 18:37:08] [ 632048] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe ©
SS - Demand [2015/10/05 14:00:11] [ 1616440] GalaxyClientService (GalaxyClientService) . (.GOG.com.) - C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe ©
SS - Demand [2015/10/05 14:00:08] [ 6952504] GalaxyCommunication (GalaxyCommunication) . (.GOG.com.) - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe ©
SR - Auto [2015/10/04 10:24:14] [ 1155376] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
SR - Auto [2014/05/28 10:10:36] [ 16232] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
SS - Demand [2014/05/13 14:31:14] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe ©
SR - Auto [2014/03/11 16:31:58] [ 260360] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\system32\IProsetMonitor.exe ©
SR - Auto [2014/06/24 16:08:20] [ 154584] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [2014/06/24 16:08:20] [ 405976] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Demand [2014/01/17 18:37:30] [ 284912] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ©
SR - Auto [2015/10/04 10:24:16] [ 1872688] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
SR - Auto [2015/10/04 10:24:10] [ 5568816] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe ©
SR - Auto [2015/10/03 04:49:54] [ 938800] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe ©
SR - Auto [2014/01/17 18:36:42] [ 154864] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe ©
SR - Demand [2015/10/09 01:02:16] [ 838224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe ©
SR - Auto [2015/10/03 04:18:14] [ 417400] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©
SR - Auto [2014/01/17 18:37:48] [ 3816176] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe ©

---\\ Scan Additionnel (18) - 0s
C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore
HKCU\SOFTWARE\9E07OMZu =>PUP.Optional.CrossRider
HKCU\SOFTWARE\IgpLDox098Q =>PUP.Optional.CrossRider
C:\Windows\Tasks\9E07OMZu.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\IgpLDox098Q.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job =>PUP.Optional.Boxore
C:\Windows\System32\Tasks\9E07OMZu =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\IgpLDox098Q =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
C:\Program Files (x86)\03000200-1444783211-0500-0006-000700080009 =>PUP.Optional.CrossRider
C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\Software =>PUP.Optional.Boxore
C:\Users\Morgan\AppData\Local\Installer =>PUP.Optional.InstallPedia

---\\ Récapitulatif des éléments trouvées sur votre station (13) - 0s
http://www.nicolascoolman.fr/blog =>Hijacker.Jabuticaba.X
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/pup-optional-dailypcclean/ =>PUP.Optional.DailyPCClean
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxComputerCleaner
http://www.nicolascoolman.fr/adware-installpedia/ =>PUP.Optional.InstallPedia
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut
http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserAir

~ End of the scan, 21180 items in 48 seconds (780)(0)()

Publicité


Signaler le contenu de ce document

Publicité