cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.10.19.153 Par Nicolas Coolman (2015/10/19)
~ Démarré par Alain (Administrator) (2015/10/20 15:43:26)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Alain\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Alain\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10240)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v46.0.2490.71
MFIE: Mozilla Firefox 41.0.2 (x86 fr) v41.0.2
MSIE: Internet Explorer v11.0.10240.16431

---\\ Informations sur les produits Windows (3) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 4s
FirewallEngine v1.6.0.0
Windows Defender (Activate)

---\\ Logiciels de protection et autres (Superflus) (3) - 5s
Ad-Aware Antivirus v11.8.586.8535
Ad-Aware Security Add-on v3.8.0.11
AntispamEngine v2.4.4192.0

---\\ Surveillance de Logiciels (2) - 5s
Adobe Flash Player 19 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4121.524 MB (54% free)
~ System Restore: Activé (Enable)
~ System drive C: has 258 GB free of 313 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: ALAIN-PC
~ User Name: Alain
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 258 GB free of 313 GB (System)
~ Drive D: has 283 GB free of 285 GB

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304] ©
[MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392] ©
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312] ©
[MD5.E5D86250453B33900666D92ED1A92ABE] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2740224] ©
[MD5.6688FE37E767BA15F022B7E59E5E7EA6] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [579072] ©
[MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592] ©
[MD5.C287D0E32771E3222A444DC527A29477] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [680256] ©
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] ©
[MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888] ©
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512] ©
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] ©
[MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] ©
[MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] ©
[MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] ©
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] ©
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] ©
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] ©
[MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408] ©
[MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] ©
[MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768] ©
[MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] ©
[MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] ©
[MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576] ©
[MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] ©

---\\ Processus lancés (32) - 8s
[MD5.6D9FC1E7EA3C548F4D3455F0C3FEEF8C] - (.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) -- c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [169312] [PID.1644] ©
[MD5.656F06850D02BAED19F0E2E72B047CE2] - (.ABBYY - ABBYY network license server.) -- C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe [819976] [PID.1652] ©
[MD5.F6CEFEF46986DE02A3AE5D93AE32B5DC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1668] ©
[MD5.FD1DF2402EACC938655F011508923A32] - (.Dassault Systèmes - DraftSight API Service.) -- C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [123392] [PID.1832]
[MD5.7C35C6865957289D9EFE6CC73F4AB2E1] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [844320] [PID.1984] ©
[MD5.816FD5A6F3C2F3D600900096632FC60E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe [1150496] [PID.2012] ©
[MD5.7548066DF68A8A1A56B043359F915F37] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe [354840] [PID.1100] ©
[MD5.AEE3AF3C697BCC2C10FE01464FE71CDD] - (...) -- C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe [712432] [PID.2064]
[MD5.70E3EB0CEF795D348F05E5A9B115F491] - (.NewTech Infosystems, Inc. - Backup Manager Module.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [62720] [PID.2436] ©
[MD5.E4DEBF8D1983712E5E3CF8A7D87D0ABD] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [237736] [PID.2624] ©
[MD5.0FE2FC59C0B9A3CA3EC2B18E1CCCF2DD] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.2768] ©
[MD5.70DDE3A86DBEB1D6C3C30AD687B1877A] - (.Acer - Acer Update Service.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [240160] [PID.2824] ©
[MD5.D3324E910C1781D78BDDE4784D4BEE8C] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3935912] [PID.4440] ©
[MD5.99FC5CBE42E2F2CBC47C1B990CAC3430] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [201384] [PID.4824] ©
[MD5.5AF1E9600E3FF841E522703A4993ED0C] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [186904] [PID.5808] ©
[MD5.0C4F4CFFA3A613D175BB25728514C0C4] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [828960] [PID.5848] ©
[MD5.D8EF04F75950915BDFA7587A22B24C29] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe [503864] [PID.5996] ©
[MD5.05CD57EA1BD2FBEFE617B815487C2144] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe [430112] [PID.5124] ©
[MD5.B56AD90DBE07BA1E8DDADAEE1607F118] - (...) -- C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTray.exe [9558752] [PID.4884]
[MD5.5AEA1DB5490429EEB0989A0CE2A52D5E] - (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe [262912] [PID.3928] ©
[MD5.C7A9C4FDCEA704A34A5997FE0A8A0A38] - (.Dritek System Inc. - Launch Manager Keyboard Application.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1194504] [PID.5556] ©
[MD5.D1A7A7D193A0DDBF31F53610DBA05CAC] - (.Lavasoft - Ad-Aware Browsing Protection and Anti-Phish.) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [559696] [PID.5296] ©
[MD5.5D18AD3ADA3023B11C1D374284DA3A48] - (.ABBYY. - ABBYY ScreenshotReader.) -- C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe [925960] [PID.4476]
[MD5.63E9C23A386FFFA84B5E03BFF9B628F0] - (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096] [PID.6212] ©
[MD5.9F0ACAA725CF5A391AF7E2067AE45746] - (.Nuance Communications, Inc. - PdfCreateHook Application.) -- C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe [636192] [PID.6220] ©
[MD5.3D853EA1CF42040D2E0123174797C81F] - (.Chicony - traybar.) -- C:\Program Files (x86)\Video Web Camera\traybar.exe [630784] [PID.6508] ©
[MD5.DB109DA005B6FE2A350C5DD7CA768DFD] - (.Brother Industries, Ltd. - BrYNCSvc.) -- C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240] [PID.6516] ©
[MD5.7B9E61C4B1EB7E6F8A07B3A3763CDEBC] - (.Lavasoft - Search Protection.) -- C:\ProgramData\Search Protection\SearchProtection.exe [949512] [PID.6580] ©
[MD5.94866E9A193120260840B2E3B551E434] - (.Chicony - Video Web Camera.) -- C:\Program Files (x86)\Video Web Camera\CEC_MAIN.exe [2913792] [PID.6704] ©
[MD5.C0FB6E2E3601EB3B92A1B1ABA790C8E5] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1001.16470.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [12288] [PID.5340] ©
[MD5.52788B29906492FD76043720540DE15E] - (.Microsoft Inc. - Solitaire.) -- C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.4.9241.0_x64__8wekyb3d8bbwe\Solitaire.exe [16896] [PID.5052]
[MD5.D0066FBB3BA6C522B6185D0A1E3AF0E8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Alain\ZHPDiag3.exe [1958400] [PID.5128] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 1s
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [hakpajgggjjcjmidfbnnncnbaihjneaj] (Orphean)
G2 - GCE: Preference [User Data\Default] [lfffjahnfbocnaooecgijfnbpcfekoik] SecureSearch
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (13) - 4s
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\extensions\firefox@ghostery.com.xpi
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\extensions\info@youtube-mp3.org.xpi
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\extensions\puzzle@internauta1024a.pl.xpi
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\extensions\{869eaa8e-27d4-4a31-bc79-773154814090}.xpi
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\searchplugins\Astromenda.xml =>PUP.Optional.Astromenda
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\searchplugins\Mysearchdial.xml =>PUP.Optional.MySearchDial
P2 - EXT FILE: (...) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\searchplugins\yahoo-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\adawaretb.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Lavasoft Limited - Ad-Aware Security Add-on.) -- C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c} ©
P2 - FPN: [HKCU] [@talk.google.com/O3DPlugin] - (.Copyright 2007 Google Inc. All rights reserved..) -- C:\Users\Alain\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: Ad-Aware Security Add-on [64Bits] - {6c97a91e-4524-4019-86af-2aa2d567bf5c} . (.© 2014 Lavasoft - Ad-Aware Security Add-on Link Library.) -- C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll ©
O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll ©

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: Ad-Aware Security Add-on - [HKLM]{6c97a91e-4524-4019-86af-2aa2d567bf5c} . (.© 2014 Lavasoft - Ad-Aware Security Add-on Link Library.) -- C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll

---\\ Applications lancées au démarrage du système (30) - 3s
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe ©
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe ©
O4 - HKLM\..\Run: [Acer ePower Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe ©
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe (.not file.)
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe (.not file.)
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe (.not file.)
O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe ©
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ©
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe ©
O4 - HKCU\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe ©
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\OneDrive.exe ©
O4 - HKLM\..\Wow6432Node\Run: [BackupManagerTray] . (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe ©
O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager Keyboard Application.) -- C:\Program Files (x86)\Launch Manager\LManager.exe ©
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- c:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Ad-Aware Browsing Protection] . (.Lavasoft - Ad-Aware Browsing Protection and Anti-Phish.) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Bonus.SSR.FR11] . (.ABBYY. - ABBYY ScreenshotReader.) -- C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe
O4 - HKLM\..\Wow6432Node\Run: [ControlCenter4] . (.Brother Industries, Ltd. - ControlCenter Launcher.) -- C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe ©
O4 - HKLM\..\Wow6432Node\Run: [BrStsMon00] . (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe ©
O4 - HKLM\..\Wow6432Node\Run: [TomTomHOME.exe] . (.TomTom - TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME\TomTomHOME.exe ©
O4 - HKLM\..\Wow6432Node\Run: [PDFHook] . (.Nuance Communications, Inc. - PdfCreateHook Application.) -- C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe ©
O4 - HKLM\..\Wow6432Node\Run: [PDF5 Registry Controller] . (.Nuance Communications, Inc. - PDF Converter Registry Controller.) -- C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Camera Assistant Software] . (.Chicony - traybar.) -- C:\Program Files (x86)\Video Web Camera\traybar.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Search Protection] . (.Lavasoft - Search Protection.) -- C:\ProgramData\Search Protection\SearchProtection.exe ©
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-21-734416267-605459743-1926979125-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ©
O4 - HKUS\S-1-5-21-734416267-605459743-1926979125-1001\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe ©
O4 - HKUS\S-1-5-21-734416267-605459743-1926979125-1001\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe ©
O4 - HKUS\S-1-5-21-734416267-605459743-1926979125-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\OneDrive.exe ©

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254

---\\ Protocole additionnel (28) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll ©
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll ©
O18 - Handler: mso-offdap11 [64Bits] - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (15) - 2s
O23 - Service: ABBYY FineReader 11 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.11.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe ©
O23 - Service: Adobe Active File Monitor V7 (AdobeActiveFileMonitor7.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe ©
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: DraftSight API Service (DraftSight API Service) . (.Dassault Systèmes - DraftSight API Service.) - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe ©
O23 - Service: GRegService (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - SolutionsFrameworkService.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe ©
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe ©
O23 - Service: Ad-Aware Service 11 (LavasoftAdAwareService11) . (...) - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe
O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc. - Backup Manager Module.) - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe ©
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ©
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe ©
O23 - Service: Updater Service (Updater Service) . (.Acer - Acer Update Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe ©
O23 - Service: @C:\Program Files (x86)\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (.not file.)

---\\ Tâches planifiées en automatique (18) - 5s
[MD5.2EED3542F86F77D56569504B37C8108A] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1045720] ©
[MD5.8C194A201698B4B4F77D974549819D1F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.00000000000000000000000000000000] [APT] [CreateChoiceProcessTask] (...) -- C:\Windows\System32\browserchoice.exe (.not file.) [0]
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.6611F0E57AA3223FA798BE3F6D1DF458] [APT] [MySearchDial] (...) -- C:\Users\Alain\AppData\Roaming\mysearchdial\UpdateProc\UpdateTask.exe [104960] =>PUP.Optional.MySearchDial
[MD5.FEB6B1801B4A8E24E7A4331381CCD803] [APT] [{318F96C9-124E-4660-9DA2-6B96EABBE299}] (.©2013 Dassault Systemes. All Rights Reserved.) -- C:\Program Files\Dassault Systemes\DraftSight\bin\DraftSight.exe [17431552]
[MD5.FEB6B1801B4A8E24E7A4331381CCD803] [APT] [{4B8610AB-A835-49B3-8850-A53E8D966E5E}] (.©2013 Dassault Systemes. All Rights Reserved.) -- C:\Program Files\Dassault Systemes\DraftSight\bin\DraftSight.exe [17431552]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1090] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1094] ©
O39 - APT: MySearchDial - (...) -- C:\WINDOWS\Tasks\MySearchDial.job [292] =>PUP.Optional.MySearchDial
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3972] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3976] ©
O39 - APT: CreateChoiceProcessTask - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [3646]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3920] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4152] ©
O39 - APT: MySearchDial - (...) -- C:\WINDOWS\System32\Tasks\MySearchDial [3342] =>PUP.Optional.MySearchDial

---\\ Logiciels installés (96) - 20s
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA ©
O42 - Logiciel: CutePDF Writer 3.0 - (.CutePDF.com.) [HKLM][64Bits] -- CutePDF Writer Installation ©
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- HDMI ©
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: AdAwareUpdater - (.Lavasoft.) [HKLM][64Bits] -- {18A24EC3-2BA0-4438-AA5C-A3CF81194D22} ©
O42 - Logiciel: Ad-Aware Antivirus - (.Lavasoft.) [HKLM][64Bits] -- {18A24EC3-2BA0-4438-AA5C-A3CF81194D22}_AdAwareUpdater ©
O42 - Logiciel: DraftSight x64 - (.Dassault Systèmes.) [HKLM][64Bits] -- {18D88174-BDBF-4BBF-B05C-3C75F609E44A}
O42 - Logiciel: PaperPort Anywhere 1.1.4269.39023 powered by OfficeDrop - (.OfficeDrop.) [HKLM][64Bits] -- {52357C6C-FE7F-4E8C-B045-EDE5146A1F9C}
O42 - Logiciel: AntimalwareEngine - (.Lavasoft.) [HKLM][64Bits] -- {6E5FAEC8-C3C1-44E8-B8DE-CE3F9568BF85} ©
O42 - Logiciel: FirewallEngine - (.Lavasoft.) [HKLM][64Bits] -- {877C7A27-7529-4B0C-BA7B-4D697E90DDC1} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM][64Bits] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E} ©
O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {96F70DF8-160F-4F9C-9B9E-2A9B439B4EB9} ©
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761. - (.Microsoft Corporation.) [HKLM][64Bits] -- {986E003C-E56D-5A47-110E-D3C81F0E8535} ©
O42 - Logiciel: ALPS Touch Pad Driver - (.Alps Electric.) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} ©
O42 - Logiciel: OnlineThreatsEngine - (.Lavasoft.) [HKLM][64Bits] -- {A8F67345-FA75-4E99-AEBA-DE9BFE708A49} ©
O42 - Logiciel: AntispamEngine - (.Lavasoft.) [HKLM][64Bits] -- {BA90CD7E-A788-4BF5-B2F4-E19237E04161} ©
O42 - Logiciel: AdAwareInstaller - (.Lavasoft.) [HKLM][64Bits] -- {C239D953-F683-4124-BD02-1ED1F353244D} ©
O42 - Logiciel: WinZip 18.5 - (.WinZip Computing, S.L. .) [HKLM][64Bits] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240E3} ©
O42 - Logiciel: WebFilteringEngine - (.Lavasoft.) [HKLM][64Bits] -- {CE5E1FC7-FD27-493F-A65F-23AD7ED9661D} ©
O42 - Logiciel: AvcEngine - (.Lavasoft.) [HKLM][64Bits] -- {D2D88581-957C-4F64-A145-B315D4E8F811} ©
O42 - Logiciel: Ad-Aware Security Add-on - (.Lavasoft.) [HKLM][64Bits] -- adawaretb ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Photoshop Elements 7 ©
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- Business Contact Manager ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM][64Bits] -- Identity Card ©
O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} ©
O42 - Logiciel: Packard Bell MyBackup - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93} ©
O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM][64Bits] -- LManager ©
O42 - Logiciel: Mozilla Firefox 41.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.2 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: Mysearchdial - (.Mysearchdial.) [HKLM][64Bits] -- mysearchdial =>PUP.Optional.MySearchDial
O42 - Logiciel: Packard Bell InfoCentre - (.Packard Bell.) [HKLM][64Bits] -- Packard Bell InfoCentre ©
O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM][64Bits] -- Packard Bell Registration ©
O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM][64Bits] -- Packard Bell Welcome Center ©
O42 - Logiciel: PackardBell ScreenSaver - (.PackardBell.) [HKLM][64Bits] -- PackardBell Screensaver ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} ©
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {0E09BE17-EDEA-42CA-8974-42A587F51510}
O42 - Logiciel: Video Web Camera - (.Chicony Electronics Co.,Ltd..) [HKLM][64Bits] -- {12A1B519-5934-4508-ADBD-335347B0DC87} ©
O42 - Logiciel: Brother MFL-Pro Suite MFC-J6710DW - (.Brother Industries, Ltd..) [HKLM][64Bits] -- {17795164-3BC1-4D4F-8ADA-65C895EBFC9A} ©
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} ©
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} ©
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} ©
O42 - Logiciel: Nero InfoTool Help - (.Nero AG.) [HKLM][64Bits] -- {20400dbd-e6db-45b8-9b6b-1dd7033818ec} ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} ©
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} ©
O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM][64Bits] -- {2348b586-c9ae-46ce-936c-a68e9426e214} ©
O42 - Logiciel: Menerga Psychrometric Chart 4.0 - (.Geometrico GmbH & Co. KG.) [HKLM][64Bits] -- {24F5D175-5EA1-419C-9A4F-275E8DBBA29E}
O42 - Logiciel: Nuance PDF Viewer Plus - (.Nuance Communications, Inc.) [HKLM][64Bits] -- {28656860-4728-433C-8AD4-D1A930437BC8}
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} ©
O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} ©
O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Fran - (.Microsoft Corporation.) [HKLM][64Bits] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62} ©
O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM][64Bits] -- {33cf58f5-48d8-4575-83d6-96f574e4d83a} ©
O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} ©
O42 - Logiciel: Nero StartSmart OEM - (.Nero AG.) [HKLM][64Bits] -- {4D43D635-6FDA-4fa5-AA9B-23CF73D058EA} ©
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3} ©
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {5179641A-DC14-3A2E-BD53-480D4136C368} ©
O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {5511C07D-A83C-45AD-92B6-42DF99729A3C} ©
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} ©
O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM][64Bits] -- {595a3116-40bb-4e0f-a2e8-d7951da56270} ©
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {69ca8988-1c6c-4285-b8af-db780a6e42af} ©
O42 - Logiciel: Backup Manager Basic - (.NewTech Infosystems.) [HKLM][64Bits] -- {72B776E5-4530-4C4B-9453-751DF87D9D93} ©
O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM][64Bits] -- {7748ac8c-18e3-43bb-959b-088faea16fb2} ©
O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} ©
O42 - Logiciel: Nero Express Help - (.Nero AG.) [HKLM][64Bits] -- {83202942-84b3-4c50-8622-b8c0aa2d2885} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM][64Bits] -- {869200db-287a-4dc0-b02b-2b6787fbcd4c} ©
O42 - Logiciel: DraftSight - (.Dassault Systèmes.) [HKLM][64Bits] -- {87A003CE-22FD-4952-9B0F-B98304A13427}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} ©
O42 - Logiciel: Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E} ©
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} ©
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {96D12EC9-720B-45FB-904C-36D6307A1C76} ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824157129} ©
O42 - Logiciel: Adobe Reader XI (11.0.13) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM][64Bits] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d} ©
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {BB05590A-6602-43F3-A400-77EA0976BC0A}
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {bd5ca0da-71ad-43da-b19e-6eee0c9adc9a} ©
O42 - Logiciel: HP Instant Printing 3 - (.Hewlett-Packard.) [HKLM][64Bits] -- {C7D866DF-4912-4323-9522-0C890BACD97F} ©
O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {CB6075D9-F912-40AE-BEA6-E590DA24F16B} ©
O42 - Logiciel: Nero DiscSpeed Help - (.Nero AG.) [HKLM][64Bits] -- {cc019e3f-59d2-4486-8d4b-878105b62a71} ©
O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM][64Bits] -- {dba84796-8503-4ff0-af57-1747dd9a166d} ©
O42 - Logiciel: Nero DriveSpeed Help - (.Nero AG.) [HKLM][64Bits] -- {e5c7d048-f9b4-4219-b323-8bdb01a2563d} ©
O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM][64Bits] -- {e8a80433-302b-4ff1-815d-fcc8eac482ff} ©
O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM][64Bits] -- {EE171732-BEB4-4576-887D-CB62727F01CA} ©
O42 - Logiciel: ABBYY FineReader 11 - (.ABBYY.) [HKLM][64Bits] -- {F1100000-0008-0000-0001-074957833700} ©
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {f4041dce-3fe1-4e18-8a9e-9de65231ee36} ©
O42 - Logiciel: BookScan&Whiteboard Suite - (.Reallusion.) [HKLM][64Bits] -- {F4933D9F-89CC-4CA9-B5B0-CF32968890C7} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM][64Bits] -- {fbcdfd61-7dcf-4e71-9226-873ba0053139} ©

---\\ HKCU & HKLM Software Keys (119) - 20s
HKLM\SOFTWARE\Wow6432Node\ABBYY
HKLM\SOFTWARE\Wow6432Node\Acer Incorporated
HKLM\SOFTWARE\Wow6432Node\Acro Software Inc
HKLM\SOFTWARE\Wow6432Node\adawaretb =>PUP.Optional.ToolbarCleaner
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\Audible
HKLM\SOFTWARE\Wow6432Node\Brother
HKLM\SOFTWARE\Wow6432Node\Brother Industries, Ltd.
HKLM\SOFTWARE\Wow6432Node\Canon
HKLM\SOFTWARE\Wow6432Node\Chicony Electronics Co.,Ltd.
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Dassault Systemes
HKLM\SOFTWARE\Wow6432Node\Digital River
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\GPL Ghostscript
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\Huawei technologies
HKLM\SOFTWARE\Wow6432Node\InstallCore =>Adware.InstallCore
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Lavasoft
HKLM\SOFTWARE\Wow6432Node\LogMeIn Rescue
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Macrovision
HKLM\SOFTWARE\Wow6432Node\MicroQuill
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\NewTech Infosystems
HKLM\SOFTWARE\Wow6432Node\Nico Mak Computing
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\Oberon Media
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OEM
HKLM\SOFTWARE\Wow6432Node\office
HKLM\SOFTWARE\Wow6432Node\OfficeDrop
HKLM\SOFTWARE\Wow6432Node\Packard Bell
HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\PowerDVD8_Upgrade
HKLM\SOFTWARE\Wow6432Node\Reallusion
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\ScanSoft
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sonic
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\TomTom
HKLM\SOFTWARE\Wow6432Node\Toolbar Cleaner =>PUP.Optional.ToolbarCleaner
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\Wistron
HKLM\SOFTWARE\Wow6432Node\ZEON
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\ABBYY
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\Acro Software Inc
HKCU\SOFTWARE\Ad-Aware Search Protection =>PUP.Optional.Spigot
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Alps
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Brother
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\CEC_CM_SW
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\Conexant
HKCU\SOFTWARE\Cyberlink
HKCU\SOFTWARE\Dassault Systemes
HKCU\SOFTWARE\FLEXnet
HKCU\SOFTWARE\Gladinet
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\InstallShield
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\mysearchdial =>PUP.Optional.MySearchDial
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\Nuance
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OEM
HKCU\SOFTWARE\OfficeDrop
HKCU\SOFTWARE\Reallusion
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\ScanSoft
HKCU\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SWActivation
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Veinge Musik och Data
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WinZip Computing
HKCU\SOFTWARE\Wistron
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Zeon
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\adawarebp =>PUP.Optional.ToolbarCleaner
HKCU\SOFTWARE\AppDataLow\Software\adawaretb =>PUP.Optional.ToolbarCleaner
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\Google
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar

---\\ Contenu des dossiers Programmes (250) - 24s
O43 - CFD: 2013/07/01 15:15:07 - [] D -- C:\Program Files (x86)\ABBYY FineReader 11
O43 - CFD: 2013/03/12 20:18:22 - [] D -- C:\Program Files (x86)\Acro Software
O43 - CFD: 2014/06/02 07:14:55 - [0] D -- C:\Program Files (x86)\adawaretb
O43 - CFD: 2013/03/25 15:51:17 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2013/03/12 20:18:30 - [] D -- C:\Program Files (x86)\AskPartnerNetwork =>Toolbar.AskBar
O43 - CFD: 2013/09/04 15:30:13 - [] D -- C:\Program Files (x86)\Brother
O43 - CFD: 2013/09/04 15:31:14 - [] D -- C:\Program Files (x86)\Browny02
O43 - CFD: 2015/08/06 09:02:17 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2013/03/12 20:15:02 - [] D -- C:\Program Files (x86)\Conduit
O43 - CFD: 2013/09/04 15:31:02 - [] D -- C:\Program Files (x86)\ControlCenter4
O43 - CFD: 2013/02/25 17:15:56 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/08/07 19:44:38 - [] D -- C:\Program Files (x86)\Dassault Systemes
O43 - CFD: 2013/03/01 18:34:44 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2013/03/12 20:19:01 - [] D -- C:\Program Files (x86)\GPLGS
O43 - CFD: 2015/01/16 19:48:03 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 2015/01/16 19:48:03 - [] D -- C:\Program Files (x86)\Hp
O43 - CFD: 2014/04/09 09:25:02 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2009/08/16 07:45:39 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/08/07 19:59:24 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2013/02/25 17:14:07 - [] D -- C:\Program Files (x86)\Launch Manager
O43 - CFD: 2014/06/02 07:14:55 - [] D -- C:\Program Files (x86)\Lavasoft
O43 - CFD: 2013/02/28 12:08:51 - [] D -- C:\Program Files (x86)\Menerga
O43 - CFD: 2013/02/25 17:28:31 - [] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2013/02/26 08:52:22 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2009/08/22 08:04:37 - [] D -- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
O43 - CFD: 2015/08/14 03:33:16 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2013/02/26 08:52:54 - [] D -- C:\Program Files (x86)\Microsoft Small Business
O43 - CFD: 2013/02/26 20:24:10 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2013/02/25 17:29:11 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2014/02/03 19:17:53 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 2013/02/25 17:20:51 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2014/02/03 19:18:13 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 2015/08/06 08:51:01 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/10/19 07:01:14 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/10/19 07:01:14 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/08/06 09:17:09 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2013/05/27 11:51:24 - [] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2014/04/29 19:30:52 - [] D -- C:\Program Files (x86)\Mysearchdial =>PUP.Optional.MySearchDial
O43 - CFD: 2009/08/16 08:00:40 - [] D -- C:\Program Files (x86)\Nero
O43 - CFD: 2009/08/22 08:23:52 - [] D -- C:\Program Files (x86)\NewTech Infosystems
O43 - CFD: 2009/08/16 07:53:24 - [] D -- C:\Program Files (x86)\NortonInstaller
O43 - CFD: 2013/05/28 07:53:17 - [] D -- C:\Program Files (x86)\Nuance
O43 - CFD: 2013/02/26 07:12:42 - [] D -- C:\Program Files (x86)\Packard Bell
O43 - CFD: 2015/05/25 07:16:15 - [] D -- C:\Program Files (x86)\Passware
O43 - CFD: 2013/06/12 16:36:28 - [] D -- C:\Program Files (x86)\Reallusion
O43 - CFD: 2009/08/16 07:46:13 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2015/08/06 09:17:09 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2013/03/12 20:14:51 - [] D -- C:\Program Files (x86)\SearchProtect =>PUP.Optional.SearchProtect
O43 - CFD: 2013/06/19 11:15:50 - [] D -- C:\Program Files (x86)\TomTom HOME
O43 - CFD: 2015/07/31 17:39:22 - [] D -- C:\Program Files (x86)\TomTom HOME 2
O43 - CFD: 2015/01/14 21:41:18 - [] D -- C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 2013/02/25 22:05:46 - [] D -- C:\Program Files (x86)\Toolbar Cleaner =>PUP.Optional.ToolbarCleaner
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2013/02/25 17:13:22 - [] D -- C:\Program Files (x86)\Video Web Camera
O43 - CFD: 2014/02/23 20:09:15 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2013/02/25 20:34:43 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2013/02/25 17:28:08 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive
O43 - CFD: 2015/08/06 08:51:02 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/08/06 08:51:02 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/10 13:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 11
O43 - CFD: 2015/10/02 03:31:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/08/06 09:02:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/08/06 08:51:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CutePDF
O43 - CFD: 2015/08/07 19:45:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dassault Systèmes
O43 - CFD: 2015/08/06 09:02:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
O43 - CFD: 2015/09/11 08:42:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Menerga
O43 - CFD: 2015/08/06 09:02:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/08/13 09:11:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/08/06 08:51:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\newfolder2
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 12
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 14
O43 - CFD: 2015/08/06 09:02:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support
O43 - CFD: 2015/04/29 07:08:17 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Passware
O43 - CFD: 2015/08/06 08:51:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reallusion
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/07/10 18:28:36 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/08/06 11:58:50 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2015/08/06 09:02:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
O43 - CFD: 2013/07/01 15:09:25 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 2015/10/19 07:06:10 - [] D -- C:\ProgramData\Ad-Aware Browsing Protection
O43 - CFD: 2013/03/27 15:16:15 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2013/03/12 20:18:22 - [] D -- C:\ProgramData\APN =>Toolbar.Ask
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2009/08/22 08:24:05 - [] D -- C:\ProgramData\BackupManager
O43 - CFD: 2014/02/26 21:09:11 - [] D -- C:\ProgramData\BitDefender
O43 - CFD: 2013/02/25 22:05:53 - [] D -- C:\ProgramData\blekko toolbars
O43 - CFD: 2013/05/27 12:10:00 - [] D -- C:\ProgramData\Brother
O43 - CFD: 2013/02/25 17:01:41 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 2013/09/04 15:31:03 - [] D -- C:\ProgramData\ControlCenter4
O43 - CFD: 2014/02/26 07:21:17 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2014/06/09 12:56:05 - [] D -- C:\ProgramData\Dassault Systemes
O43 - CFD: 2014/06/14 06:49:00 - [] D -- C:\ProgramData\DatacardService
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2013/02/25 22:05:14 - [] D -- C:\ProgramData\Downloaded Installations
O43 - CFD: 2013/02/25 17:01:41 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2013/06/12 18:26:10 - [] D -- C:\ProgramData\FLEXnet
O43 - CFD: 2009/08/22 08:20:32 - [] D -- C:\ProgramData\Google
O43 - CFD: 2014/06/02 07:03:52 - [] D -- C:\ProgramData\Lavasoft
O43 - CFD: 2013/02/25 17:01:41 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/08/06 14:47:38 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/10/14 08:41:38 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/08/06 11:56:45 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2013/02/25 17:01:41 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/04/07 08:47:02 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2009/08/16 07:59:30 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2013/02/26 07:15:06 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2009/08/16 07:53:24 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2013/05/28 07:55:21 - [] D -- C:\ProgramData\Nuance
O43 - CFD: 2013/02/25 17:18:06 - [] D -- C:\ProgramData\OEM
O43 - CFD: 2009/08/16 08:10:22 - [] D -- C:\ProgramData\Packard Bell
O43 - CFD: 2013/03/21 07:22:35 - [] D -- C:\ProgramData\Partner =>Toolbar.YahooPartner
O43 - CFD: 2015/07/10 18:28:36 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2013/06/12 10:26:36 - [] D -- C:\ProgramData\ScanSoft
O43 - CFD: 2014/06/02 07:15:23 - [] D -- C:\ProgramData\Search Protection =>PUP.Optional.Spigot
O43 - CFD: 2014/06/14 06:47:32 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/05/28 07:53:16 - [] D -- C:\ProgramData\Tarma Installer =>PUP.Optional.Tarma
O43 - CFD: 2014/04/09 09:23:39 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/01/14 21:42:30 - [] D -- C:\ProgramData\TomTom
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 2014/09/19 16:50:19 - [] D -- C:\ProgramData\WinZip
O43 - CFD: 2013/05/27 18:07:47 - [] D -- C:\ProgramData\zeon
O43 - CFD: 2013/03/25 15:51:17 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2009/08/22 09:49:58 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2014/04/09 09:25:02 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2014/05/16 07:31:42 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2013/05/27 17:52:09 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2013/02/25 17:25:38 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 2013/02/28 12:07:53 - [] D -- C:\Program Files (x86)\Common Files\MARX Shared
O43 - CFD: 2015/08/06 08:50:55 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2009/08/16 08:02:42 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2009/08/22 08:07:46 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 2013/02/25 17:25:15 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2013/02/25 17:25:15 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared
O43 - CFD: 2015/08/06 08:50:55 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/08/06 08:50:59 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2013/02/25 17:26:55 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2013/05/28 08:52:03 - [] D -- C:\Users\Alain\AppData\Roaming\.oit
O43 - CFD: 2013/07/01 15:15:27 - [] D -- C:\Users\Alain\AppData\Roaming\ABBYY
O43 - CFD: 2015/06/09 17:08:45 - [] D -- C:\Users\Alain\AppData\Roaming\Adobe
O43 - CFD: 2014/09/27 08:05:46 - [] D -- C:\Users\Alain\AppData\Roaming\Astromenda =>PUP.Optional.Astromenda
O43 - CFD: 2013/05/27 14:55:48 - [] RD -- C:\Users\Alain\AppData\Roaming\Brother
O43 - CFD: 2013/11/12 08:37:13 - [] D -- C:\Users\Alain\AppData\Roaming\ControlCenter4
O43 - CFD: 2014/02/26 07:21:12 - [] D -- C:\Users\Alain\AppData\Roaming\CyberLink
O43 - CFD: 2015/08/07 19:45:39 - [] D -- C:\Users\Alain\AppData\Roaming\DraftSight
O43 - CFD: 2015/05/29 10:07:09 - [] D -- C:\Users\Alain\AppData\Roaming\dvdcss
O43 - CFD: 2013/05/27 14:38:31 - [] D -- C:\Users\Alain\AppData\Roaming\FLEXnet
O43 - CFD: 2013/02/25 20:37:13 - [] D -- C:\Users\Alain\AppData\Roaming\Google
O43 - CFD: 2015/01/16 18:10:55 - [] D -- C:\Users\Alain\AppData\Roaming\Hewlett-Packard
O43 - CFD: 2015/08/06 12:27:43 - [] D -- C:\Users\Alain\AppData\Roaming\Identities
O43 - CFD: 2013/02/25 17:12:57 - [] D -- C:\Users\Alain\AppData\Roaming\InstallShield
O43 - CFD: 2014/06/02 07:19:09 - [] D -- C:\Users\Alain\AppData\Roaming\Lavasoft
O43 - CFD: 2014/06/02 07:00:54 - [] D -- C:\Users\Alain\AppData\Roaming\LavasoftStatistics
O43 - CFD: 2013/02/25 17:14:35 - [] D -- C:\Users\Alain\AppData\Roaming\Macromedia
O43 - CFD: 2009/08/16 08:31:47 - [0] D -- C:\Users\Alain\AppData\Roaming\Media Center Programs
O43 - CFD: 2013/02/28 12:11:24 - [] D -- C:\Users\Alain\AppData\Roaming\Menerga
O43 - CFD: 2015/09/15 08:43:34 - [] SD -- C:\Users\Alain\AppData\Roaming\Microsoft
O43 - CFD: 2014/01/21 07:18:30 - [] D -- C:\Users\Alain\AppData\Roaming\Mozilla
O43 - CFD: 2014/04/29 19:30:58 - [] D -- C:\Users\Alain\AppData\Roaming\mysearchdial =>PUP.Optional.MySearchDial
O43 - CFD: 2013/03/03 12:14:44 - [] D -- C:\Users\Alain\AppData\Roaming\Nero
O43 - CFD: 2013/05/28 07:23:29 - [] D -- C:\Users\Alain\AppData\Roaming\Nuance
O43 - CFD: 2015/04/29 07:36:57 - [] D -- C:\Users\Alain\AppData\Roaming\Passware
O43 - CFD: 2013/06/12 16:27:26 - [] D -- C:\Users\Alain\AppData\Roaming\Reallusion
O43 - CFD: 2013/03/12 20:20:03 - [] D -- C:\Users\Alain\AppData\Roaming\SearchProtect =>PUP.Optional.SearchProtect
O43 - CFD: 2014/06/02 07:15:05 - [] D -- C:\Users\Alain\AppData\Roaming\SecureSearch
O43 - CFD: 2014/06/14 06:47:23 - [] D -- C:\Users\Alain\AppData\Roaming\Skype
O43 - CFD: 2015/01/14 21:42:29 - [] D -- C:\Users\Alain\AppData\Roaming\TomTom
O43 - CFD: 2015/09/19 10:59:47 - [] D -- C:\Users\Alain\AppData\Roaming\vlc
O43 - CFD: 2014/09/19 16:21:12 - [] D -- C:\Users\Alain\AppData\Roaming\WSE_Astromenda =>PUP.Optional.Astromenda
O43 - CFD: 2013/05/27 19:24:18 - [] D -- C:\Users\Alain\AppData\Roaming\Zeon
O43 - CFD: 2015/10/20 15:44:03 - [] D -- C:\Users\Alain\AppData\Roaming\ZHP
O43 - CFD: 2013/07/01 15:15:55 - [] D -- C:\Users\Alain\AppData\Local\ABBYY
O43 - CFD: 2014/06/02 17:10:14 - [] D -- C:\Users\Alain\AppData\Local\adawarebp =>PUP.Optional.ToolbarCleaner
O43 - CFD: 2015/06/19 06:53:50 - [] D -- C:\Users\Alain\AppData\Local\Adobe
O43 - CFD: 2013/10/24 11:43:07 - [] D -- C:\Users\Alain\AppData\Local\Android-Sync
O43 - CFD: 2015/08/06 08:46:37 - [0] SHD -- C:\Users\Alain\AppData\Local\Application Data
O43 - CFD: 2013/03/18 08:24:54 - [] D -- C:\Users\Alain\AppData\Local\Apps
O43 - CFD: 2014/12/02 07:21:05 - [] D -- C:\Users\Alain\AppData\Local\Astromenda =>PUP.Optional.Astromenda
O43 - CFD: 2015/08/11 14:18:24 - [] D -- C:\Users\Alain\AppData\Local\Comms
O43 - CFD: 2013/03/19 17:31:04 - [0] D -- C:\Users\Alain\AppData\Local\Conduit
O43 - CFD: 2013/02/26 09:32:51 - [] D -- C:\Users\Alain\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 2013/03/12 20:14:57 - [] D -- C:\Users\Alain\AppData\Local\CRE
O43 - CFD: 2015/09/25 08:26:43 - [] D -- C:\Users\Alain\AppData\Local\CutePDF Writer
O43 - CFD: 2013/03/07 12:33:29 - [] D -- C:\Users\Alain\AppData\Local\Dassault Systemes
O43 - CFD: 2015/10/13 07:52:16 - [0] D -- C:\Users\Alain\AppData\Local\Diagnostics
O43 - CFD: 2015/07/31 17:37:21 - [] D -- C:\Users\Alain\AppData\Local\Downloaded Installations
O43 - CFD: 2015/05/18 14:21:23 - [0] D -- C:\Users\Alain\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/01/29 12:18:53 - [] SHD -- C:\Users\Alain\AppData\Local\EmieBrowserModeList
O43 - CFD: 2014/10/20 11:50:11 - [] SHD -- C:\Users\Alain\AppData\Local\EmieSiteList
O43 - CFD: 2014/10/20 11:50:11 - [] SHD -- C:\Users\Alain\AppData\Local\EmieUserList
O43 - CFD: 2014/01/26 08:17:40 - [] D -- C:\Users\Alain\AppData\Local\Google
O43 - CFD: 2015/07/17 19:20:02 - [] D -- C:\Users\Alain\AppData\Local\GWX
O43 - CFD: 2015/08/06 08:46:37 - [0] SHD -- C:\Users\Alain\AppData\Local\Historique
O43 - CFD: 2013/02/26 07:20:51 - [0] D -- C:\Users\Alain\AppData\Local\LogMeIn Rescue Applet
O43 - CFD: 2013/04/08 19:27:47 - [] D -- C:\Users\Alain\AppData\Local\Macromedia
O43 - CFD: 2015/08/31 11:34:21 - [] D -- C:\Users\Alain\AppData\Local\Microsoft
O43 - CFD: 2013/07/30 13:54:34 - [] D -- C:\Users\Alain\AppData\Local\Microsoft Games
O43 - CFD: 2013/12/13 12:35:33 - [] D -- C:\Users\Alain\AppData\Local\Microsoft Help
O43 - CFD: 2015/08/06 12:17:06 - [] D -- C:\Users\Alain\AppData\Local\MicrosoftEdge
O43 - CFD: 2013/10/02 18:28:46 - [] D -- C:\Users\Alain\AppData\Local\Mozilla
O43 - CFD: 2015/08/07 17:11:50 - [0] D -- C:\Users\Alain\AppData\Local\NetworkTiles
O43 - CFD: 2013/05/28 07:53:34 - [] D -- C:\Users\Alain\AppData\Local\OfficeDrop
O43 - CFD: 2015/09/16 07:31:51 - [] D -- C:\Users\Alain\AppData\Local\Packages
O43 - CFD: 2013/02/25 17:18:31 - [] D -- C:\Users\Alain\AppData\Local\Packard Bell
O43 - CFD: 2013/10/24 11:39:08 - [] D -- C:\Users\Alain\AppData\Local\Programs
O43 - CFD: 2015/08/06 11:54:51 - [] D -- C:\Users\Alain\AppData\Local\Publishers
O43 - CFD: 2014/02/01 16:26:49 - [] D -- C:\Users\Alain\AppData\Local\Skype
O43 - CFD: 2015/10/20 15:43:04 - [] D -- C:\Users\Alain\AppData\Local\Temp
O43 - CFD: 2015/08/06 08:46:37 - [0] SHD -- C:\Users\Alain\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/08/06 11:53:50 - [] D -- C:\Users\Alain\AppData\Local\TileDataLayer
O43 - CFD: 2015/01/14 21:42:29 - [] D -- C:\Users\Alain\AppData\Local\TomTom
O43 - CFD: 2013/06/12 16:39:17 - [] D -- C:\Users\Alain\AppData\Local\VirtualStore
O43 - CFD: 2013/02/25 19:25:42 - [] D -- C:\Users\Alain\AppData\Local\Windows Live
O43 - CFD: 2014/10/16 19:44:43 - [] D -- C:\Users\Alain\AppData\Local\WinZip
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/08/06 11:53:49 - [] RD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/10/15 06:40:41 - [] RD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/08/06 09:02:10 - [] RD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 8
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/06 09:02:10 - [] D -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 14
O43 - CFD: 2015/10/15 06:40:41 - [] RD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/07/10 13:04:45 - [] RSD -- C:\Users\Alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell

---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 21s
O45 - LFCP:[MD5.FDA9325D9F440B3C9BD5D143F9513BB0] 2015/10/19 07:04:13 A -- C:\WINDOWS\Prefetch\ADAWAREBP.EXE-57E4AE25.pf =>PUP.Optional.ToolbarCleaner
O45 - LFCP:[MD5.7C8DBEE27413B7BFEDAA6D7F5925A59D] 2015/10/19 07:04:22 A -- C:\WINDOWS\Prefetch\SEARCHPROTECTION.EXE-94EA2858.pf =>PUP.Optional.SearchProtect

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Alain\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©

---\\ Liste des pilotes du système (56) - 10s
O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] ©
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] ©
O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] ©
O58 - SDL:2009/05/25 05:57:42 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\WINDOWS\System32\drivers\Apfiltr.sys [243760] ©
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] ©
O58 - SDL:2009/10/05 17:34:00 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\WINDOWS\System32\drivers\athrx.sys [1542656] ©
O58 - SDL:2015/07/29 15:16:14 A . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\System32\drivers\avc3.sys [1369288] ©
O58 - SDL:2015/07/29 15:16:14 A . (.BitDefender - BitDefender AntiVirus Active Virus Control.) -- C:\WINDOWS\System32\drivers\avchv.sys [271272] ©
O58 - SDL:2015/07/29 15:16:14 A . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\WINDOWS\System32\drivers\avckf.sys [747120] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2009/08/11 22:59:50 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [686080] ©
O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] ©
O58 - SDL:2013/05/23 08:39:23 A . (.ThreatTrack Security - gfiark64.sys.) -- C:\WINDOWS\System32\drivers\gfiark.sys [41032]
O58 - SDL:2013/02/25 22:02:07 A . (.GFI Software - GFI Boot Time Operations Driver.) -- C:\WINDOWS\System32\drivers\gfibto.sys [14456]
O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] ©
O58 - SDL:2009/06/05 03:54:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStor.sys [408600] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] ©
O58 - SDL:2012/03/23 18:13:28 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [10627744] ©
O58 - SDL:2009/05/26 14:13:10 A . (.Intel(R) Corporation - Intel(R) High Definition Audio HDMI.) -- C:\WINDOWS\System32\drivers\IntcHdmi.sys [138752] ©
O58 - SDL:2015/10/07 08:08:47 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\WINDOWS\System32\drivers\k57nd60a.sys [469192] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] ©
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] ©
O58 - SDL:2009/05/06 01:46:08 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\WINDOWS\System32\drivers\NTIDrvr.sys [18432] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] ©
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] ©
O58 - SDL:2008/06/16 04:00:00 A . (.Sonic Solutions - Px Engine Device Driver for 64-bit Windows.) -- C:\WINDOWS\System32\drivers\PxHlpa64.sys [55024] ©
O58 - SDL:2009/06/05 02:46:50 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUStor.sys [216064] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2015/08/06 11:59:49 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [33448] ©
O58 - SDL:2015/08/06 11:59:49 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [33960] ©
O58 - SDL:2015/08/06 11:59:49 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [33960] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2015/08/06 11:59:55 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [606376] ©
O58 - SDL:2009/05/06 01:46:08 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\WINDOWS\System32\drivers\UBHelper.sys [16896] ©
O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] ©
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 67s
O61 - LFC: 2015/10/15 15:32:10 A . (..) -- C:\Users\Alain\AppData\Local\Packages\Microsoft.XboxIdentityProvider_cw5n1h2txyewy\AC\Microsoft\CLR_v4.0\NativeImages\XboxIdp.Native\733bcaf1cf469317e67163ca748b037e\XboxIdp.Native.ni.dll [26112]
O61 - LFC: 2015/10/15 03:30:11 A . (..) -- C:\Users\Alain\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (44) - 32s
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("browser.search.defaultenginename", "Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.AL", 4); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.aflt", "ast_wnzp01_14_38_ff"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.appId", "{9CB2CD61-FFA0-406C-9D2D-8FDE6F4A4D8A}"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.cd", "2XzuyEtN2Y1L1QzuyBtDtC0AtDyEyEyDyE0D0C0FzytB0FtCtN0D0Tzu0SzyzytAtN1L2XzutAtFtBtFtCtFyDtN1L1[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.cr", "939294946"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.data.1475e97c0146bfb1c490339546d9e72ee", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.data.851d81cdad83573282e611040475985c", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.data._dy", "20141126"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.data.b1.aliveDate", "20141228"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.data.cc", "fr"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.data.ccfc1eb13092ea34473c169417eefd00", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.dfltLng", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.dfltSrch", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.dnsErr", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.excTlbr", false); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.general.guid", "d2747cd3-95e9-45fa-8dbe-d15367e0c402"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.hmpg", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.hmpgUrl", "http://astromenda.com/?f=1&a=ast_wnzp01_14_38_ff&cd=2XzuyEtN2Y1L1QzuyBtDtC0AtDyEyEyDyE[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.id", "701A04454DCF92F1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.instlDay", "16332"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.instlRef", "142905_b"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.newTabUrl", "http://astromenda.com/?f=2&a=ast_wnzp01_14_38_ff&cd=2XzuyEtN2Y1L1QzuyBtDtC0AtDyEyEyD[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.prdct", "astrmndasr"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.prtnrId", "WSE_Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.srchPrvdr", "Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.tlbrId", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.tlbrSrchUrl", "http://astromenda.com/?f=3&a=ast_wnzp01_14_38_ff&cd=2XzuyEtN2Y1L1QzuyBtDtC0AtDyEyE[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.vrsn", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr.vrsni", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr_i.newTab", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr_i.smplGrp", "none"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.astrmndasr_i.vrsnTs", "16:20:51"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.irmysearch.aflt", "wnzp_14_18_ff"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1QzuyBtDtC0AtDyEyEyDyE0D0C0FzytB0FtCtN0D0Tzu0SzzyDtDtN1L2XzutBtFtBtDtFyCtFtDtN1[...] =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.irmysearch.cr", "1990586780"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Alain - muhdon1e.default] user_pref("extensions.irmysearch.instlRef", "140305_b"); =>PUP.Optional.MyWebSearch
O69 - SBI: SearchScopes [HKCU] 4025C5A8B2EC46BF9EB147F7B4B5B76C - (Astromenda) - http://astromenda.com/ =>PUP.Optional.Astromenda
O69 - SBI: SearchScopes [HKCU] {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} - (SecureSearch) - http://securedsearch2.lavasoft.com/
O69 - SBI: SearchScopes [HKCU] {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {77AA745B-F4F8-45DA-9B14-61D2D95054C8} - (01NET.com Main Customized Web Search) - http://search.conduit.com/ =>PUP.Optional.Conduit
O69 - SBI: SearchScopes [HKCU] {BA55D2D9-E638-4473-BFDC-8EAFFB08C424} - (Mysearchdial) - http://start.mysearchdial.com/ =>PUP.Optional.MySearchDial

---\\ Enumère les services démarrés par Svchost (41) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] ©
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] ©
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [187392] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2236416] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] ©
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] ©
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] ©
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] ©
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] ©
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] ©
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] ©
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] ©
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1010176] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] ©

---\\ Liste des exceptions du parefeu Windows (6) - 4s
O87 - FAEL: "{9E912E87-789B-4EE8-85FF-E7829272D755}" [In-None-P17-TRUE] .(.Visicom Media Inc. - DtUser.) -- C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\dtUser.exe
O87 - FAEL: "{99CA24F6-FD23-4A27-A57A-A871D7AB41C8}" [In-None-P6-TRUE] .(.Visicom Media Inc. - DtUser.) -- C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\dtUser.exe
O87 - FAEL: "{384C2831-7789-4F7A-B7CC-C36FBC33219A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\adawaretb\dtUser.exe (.not file.)
O87 - FAEL: "{72A1C780-7A9A-4204-B723-E9D41DCD43EC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\adawaretb\dtUser.exe (.not file.)
O87 - FAEL: "UDP Query User{0AADCF95-A9E4-4789-BD1C-8451173C1534}C:\users\alain\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe" [In-None-P17-TRUE] .(...) -- C:\users\alain\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe (.not file.)
O87 - FAEL: "TCP Query User{C13C1149-D289-404B-A309-07104F88935B}C:\users\alain\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe" [In-None-P6-TRUE] .(...) -- C:\users\alain\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe (.not file.)

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 44s

SR - Auto [2011/08/18 14:47:48] [ 819976] ABBYY FineReader 11 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.11.0) . (.ABBYY.) - C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe ©
SR - Auto [2008/12/08 16:16:56] [ 169312] Adobe Active File Monitor V7 (AdobeActiveFileMonitor7.0) . (.Adobe Systems Incorporated.) - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe ©
SR - Auto [2015/09/14 09:25:38] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [2015/10/17 12:21:37] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Demand [2012/06/05 15:56:28] [ 266240] BrYNSvc (BrYNSvc) . (.Brother Industries, Ltd..) - C:\Program Files (x86)\Browny02\BrYNSvc.exe ©
SR - Auto [2014/03/14 03:44:30] [ 123392] DraftSight API Service (DraftSight API Service) . (.Dassault Systèmes.) - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
SR - Auto [2009/08/05 22:30:58] [ 844320] Acer ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe ©
SS - Demand [2013/02/25 17:25:38] [ 651720] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe ©
SS - Demand [2014/06/09 12:56:50] [ 1431888] FLEXnet Licensing Service 64 (FLEXnet Licensing Service 64) . (.Flexera Software, Inc..) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe ©
SR - Auto [2009/06/04 15:04:50] [ 1150496] GRegService (Greg_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe ©
SS - Auto [2015/08/29 13:39:18] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/08/29 13:39:18] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Auto [2014/12/11 12:36:04] [ 89864] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe ©
SR - Auto [2009/06/05 04:03:06] [ 354840] Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe ©
SR - Auto [2015/08/27 15:54:54] [ 712432] Ad-Aware Service 11 (LavasoftAdAwareService11) . (...) - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe
SS - Demand [2015/10/16 09:16:03] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SS - Demand [2009/07/28 21:25:34] [ 935208] Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe ©
SR - Auto [2009/08/21 02:25:50] [ 62720] NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe ©
SR - Auto [2015/08/06 11:59:57] [ 237736] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ©
SR - Auto [2015/07/13 12:44:30] [ 93040] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe ©
SR - Auto [2009/07/04 03:47:12] [ 240160] Updater Service (Updater Service) . (.Acer.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe ©

---\\ Scan Additionnel (40) - 0s
C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\searchplugins\Astromenda.xml =>PUP.Optional.Astromenda
C:\Users\Alain\AppData\Roaming\Mozilla\Firefox\Profiles\muhdon1e.default\searchplugins\Mysearchdial.xml =>PUP.Optional.MySearchDial
C:\Users\Alain\AppData\Roaming\mysearchdial\UpdateProc\UpdateTask.exe =>PUP.Optional.MySearchDial
C:\WINDOWS\Tasks\MySearchDial.job =>PUP.Optional.MySearchDial
C:\WINDOWS\System32\Tasks\MySearchDial =>PUP.Optional.MySearchDial
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial =>PUP.Optional.MySearchDial
HKLM\SOFTWARE\Wow6432Node\adawaretb =>PUP.Optional.ToolbarCleaner
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\InstallCore =>Adware.InstallCore
HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\Toolbar Cleaner =>PUP.Optional.ToolbarCleaner
HKCU\SOFTWARE\Ad-Aware Search Protection =>PUP.Optional.Spigot
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\mysearchdial =>PUP.Optional.MySearchDial
HKCU\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\AppDataLow\Software\adawarebp =>PUP.Optional.ToolbarCleaner
HKCU\SOFTWARE\AppDataLow\Software\adawaretb =>PUP.Optional.ToolbarCleaner
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar
C:\Program Files (x86)\AskPartnerNetwork =>Toolbar.AskBar
C:\Program Files (x86)\Mysearchdial =>PUP.Optional.MySearchDial
C:\Program Files (x86)\SearchProtect =>PUP.Optional.SearchProtect
C:\Program Files (x86)\Toolbar Cleaner =>PUP.Optional.ToolbarCleaner
C:\ProgramData\APN =>Toolbar.Ask
C:\ProgramData\Partner =>Toolbar.YahooPartner
C:\ProgramData\Search Protection =>PUP.Optional.Spigot
C:\ProgramData\Tarma Installer =>PUP.Optional.Tarma
C:\Users\Alain\AppData\Roaming\Astromenda =>PUP.Optional.Astromenda
C:\Users\Alain\AppData\Roaming\mysearchdial =>PUP.Optional.MySearchDial
C:\Users\Alain\AppData\Roaming\SearchProtect =>PUP.Optional.SearchProtect
C:\Users\Alain\AppData\Roaming\WSE_Astromenda =>PUP.Optional.Astromenda
C:\Users\Alain\AppData\Local\adawarebp =>PUP.Optional.ToolbarCleaner
C:\Users\Alain\AppData\Local\Astromenda =>PUP.Optional.Astromenda
C:\Users\Alain\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\WINDOWS\Prefetch\ADAWAREBP.EXE-57E4AE25.pf =>PUP.Optional.ToolbarCleaner
C:\WINDOWS\Prefetch\SEARCHPROTECTION.EXE-94EA2858.pf =>PUP.Optional.SearchProtect

---\\ Récapitulatif des éléments trouvées sur votre station (14) - 0s
http://www.nicolascoolman.fr/pup-astromenda/ =>PUP.Optional.Astromenda
http://www.nicolascoolman.fr/blog =>PUP.Optional.MySearchDial
http://www.nicolascoolman.fr/pup-toolbarcleaner/ =>PUP.Optional.ToolbarCleaner
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional.Spigot
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/blog =>Toolbar.AskBar
http://www.nicolascoolman.fr/blog =>Toolbar.YahooPartner
http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/blog =>.Superfluous.CrashReports
http://www.nicolascoolman.fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch

~ End of the scan, 66384 items in 719 seconds (987)(0)()

Publicité


Signaler le contenu de ce document

Publicité