cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.11.13.167 Par Nicolas Coolman (2015/11/13)
~ Démarré par Administrateur (Administrator) (2015/11/14 13:06:00)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v46.0.2490.86
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : KO

---\\ Logiciels de protection (2) - 4s
Microsoft Security Client v4.4.0304.0
Microsoft Security Essentials v4.4.304.0

---\\ Logiciels de protection et autres (Superflus) (1) - 4s
McAfee Security Scan Plus v3.8.150.1

---\\ Logiciels d'optimisation (1) - 4s
CCleaner v5.02

---\\ Surveillance de Logiciels (2) - 5s
Adobe Flash Player 19 ActiveX
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2095.532 MB (16% free)
System Restore: Activé (Enable)
System drive C: has 126 GB () free of 305 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DAVID
~ User Name: Administrateur
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 5s
~ Drive C: has 126 GB free of 305 GB (System)
~ Drive D: has GB free of 0 GB

---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: Modified
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.D76A076ADB74F8132924E498D63123A2] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - 17/08/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 13/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 13/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - 13/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - 13/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 13/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 13/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 13/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - 13/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - 15/07/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 13/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 13/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 10/04/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 13/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 13/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Liste des services NT non Microsoft et non désactivés (6) - 0s
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
O23 - Service: HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2013 - DCSHOST.) - C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe
O23 - Service: MediaStreamingService (MediaStreamingService) . (.MediaStreaming OU - .) - C:\Documents and Settings\All Users\Application Data\Boxore\LSP\MediaStreamingService.exe =>PUP.Optional.Boxore
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 320.4.) - C:\WINDOWS\system32\nvsvc32.exe ©
O23 - Service: Service Software Update (Software_update) (Software_update) . (.The Software Group - Software Update.) - C:\Program Files\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore
O23 - Service: WdsManPro Service (WdsManPro) . (.DTools LIMITED - DTools.) - C:\Documents and Settings\All Users\Application Data\DWMiniProD\WMiniPro.exe =>PUP.Optional.WpManager

---\\ Processus lancés (20) - 2s
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [PID.1936] ©
[MD5.A72BB48D9014A7D7C05F02F595F52D60] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.28.15\GoogleCrashHandler.exe [245576] [PID.2028] ©
[MD5.421069EE49968E06605464D050B65054] - (.Copyright (C) 2013 - DCSHOST.) -- C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe [276048] [PID.412]
[MD5.D1735CBF179A69EE3FF1F80259D0ED1D] - (.MediaStreaming OU - .) -- C:\Documents and Settings\All Users\Application Data\Boxore\LSP\MediaStreamingService.exe [1705928] [PID.496] =>PUP.Optional.Boxore
[MD5.F1AE0BC50661BE09E7BC5919F4C05505] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 320.4.) -- C:\WINDOWS\system32\nvsvc32.exe [156960] [PID.796] ©
[MD5.E8BBA872BF21FDAEE9F77AF5C635ED1F] - (.DTools LIMITED - DTools.) -- C:\Documents and Settings\All Users\Application Data\DWMiniProD\WMiniPro.exe [301704] [PID.1836] =>PUP.Optional.WpManager
[MD5.ECEA24852601893B106129417401C1D7] - (.Boxore OU - MediaStreamingAgent.) -- C:\Program Files\MediaStreamingAgent\MediaStreamingAgent\MediaStreamingAgent.exe [1204736] [PID.3640] =>PUP.Optional.Boxore
[MD5.9A1F3AEA8D61AA67D90F1B336C00984E] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [5496600] [PID.3652] ©
[MD5.ECEA24852601893B106129417401C1D7] - (.Boxore OU - MediaStreamingAgent.) -- C:\Program Files\MediaStreamingAgent\MediaStreamingAgent\MediaStreamingAgent.exe [1204736] [PID.3692] =>PUP.Optional.Boxore
[MD5.E17E53F297560C31631C4AC549385AE3] - (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe [1822048] [PID.3928]
[MD5.6D5DBA957D94E902F5A2C649A361D4CE] - (.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\Program Files\MediaStreamingAgent\MediaStreamingAgent\node.exe [5529472] [PID.3960] =>PUP.Optional.Boxore
[MD5.9AD0D1AAF2FDBE902FF6AC6F8C858C5F] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41202\utorrentie.exe [336896] [PID.624]
[MD5.9AD0D1AAF2FDBE902FF6AC6F8C858C5F] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41202\utorrentie.exe [336896] [PID.1000]
[MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.3744] ©
[MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.1824] ©
[MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.9368] ©
[MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.9664] ©
[MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.7060] ©
[MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.9812] ©
[MD5.C76ED9E6D9E432DE096236B09E81A77F] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\ZHPDiag3.exe [1968640] [PID.2876] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 0s
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia]Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 1s
P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=3] - (.The Software Group.) -- C:\Program Files\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore
P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=9] - (.The Software Group.) -- C:\Program Files\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (23)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} (Orphean)

---\\ Applications lancées au démarrage du système (26) - 1s
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RUNDLL32.EXE ©
O4 - HKLM\..\Run: [dply_en_015020145] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Run: [updply_en_015020145.exe] C:\Documents and Settings\Administrateur\Local Settings\Application Data\dply_en_015020145\updply_en_015020145.exe (.not file.) =>PUP.Optional.CrossRider
O4 - HKLM\..\Run: [MediaStreamingAgent] . (.Boxore OU - MediaStreamingAgent.) -- C:\Program Files\MediaStreamingAgent\MediaStreamingAgent\MediaStreamingAgent.exe =>PUP.Optional.Boxore
O4 - HKCU\..\Run: [Google Update] C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Desktop\Install\{52459587-307b-1830-d1fe-2c01eee71694}\❤≸⋙\Ⱒ☠⍨\‮ﯹ๛\{52459587-307b-1830-d1fe-2c01eee71694}\GoogleUpdate.exe (.not file.)
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\cacaoweb.exe =>PUP.Optional.CacaoWeb
O4 - HKCU\..\Run: [Mobile Partner] C:\Program Files\Parametres SFR 3G\Parametres SFR 3G (.not file.)
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [Bubble Dock] C:\Documents and Settings\Administrateur\Application Data\Nosibay\Bubble Dock\LBubble Dock.exe (.not file.) =>PUP.Optional.BubbleDock
O4 - HKCU\..\Run: [WindApp] C:\Documents and Settings\Administrateur\Application Data\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKCU\..\Run: [Selection Tools] C:\Documents and Settings\Administrateur\Application Data\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [Google Update] C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Desktop\Install\{52459587-307b-1830-d1fe-2c01eee71694}\❤≸⋙\Ⱒ☠⍨\‮ﯹ๛\{52459587-307b-1830-d1fe-2c01eee71694}\GoogleUpdate.exe (.not file.)
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [cacaoweb] . (...) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\cacaoweb.exe =>PUP.Optional.CacaoWeb
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [Mobile Partner] C:\Program Files\Parametres SFR 3G\Parametres SFR 3G (.not file.)
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [Bubble Dock] C:\Documents and Settings\Administrateur\Application Data\Nosibay\Bubble Dock\LBubble Dock.exe (.not file.) =>PUP.Optional.BubbleDock
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [WindApp] C:\Documents and Settings\Administrateur\Application Data\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKUS\S-1-5-21-606747145-1708537768-1417001333-500\..\Run: [Selection Tools] C:\Documents and Settings\Administrateur\Application Data\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay

---\\ Winsock hijacker (Layered Service Provider) (3) - 0s
O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (.MediaStreaming OU.) -- C:\WINDOWS\system32\MediaStreamingService.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (.MediaStreaming OU.) -- C:\WINDOWS\system32\MediaStreamingService.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000014\Winsock LSP File . (.MediaStreaming OU.) -- C:\WINDOWS\system32\MediaStreamingService.dll =>Hijacker.Winsock

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (30) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Logiciels installés (70) - 7s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF000} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Capture - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF012} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Content - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF016} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Draw - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF013} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Filters - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF017} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - FontNav - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF019} ©
O42 - Logiciel: CorelDRAW Graphics SUite X4 - ICA - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF010} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - IPM - (.Corel Corporation.) [HKLM] -- {9D0798D0-AF6C-4E62-94B1-AEBF1A43E00A} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang BR - (.Corel Corporation.) [HKLM] -- {1A9DAB4D-46CD-4CBF-A9FC-28D8AA8D2FCF} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang DE - (.Corel Corporation.) [HKLM] -- {AEFBAC58-2DDD-4CEF-BDFD-52A5A5F432ED} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang EN - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF100} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang ES - (.Corel Corporation.) [HKLM] -- {D2827848-7D2A-4547-9AD1-C965FB3E6344} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang FR - (.Corel Corporation.) [HKLM] -- {9D306690-3173-42CD-94C6-9EF9318AF24B} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang IT - (.Corel Corporation.) [HKLM] -- {D0160DD3-6F62-4F1E-B999-6C68D3AE7390} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - Lang NL - (.Uw bedrijfsnaam.) [HKLM] -- {A6C27FFF-75EF-4B5B-A64E-F9E128994908} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - PP - (.Corel Corporation.) [HKLM] -- {7F05E704-30A6-421A-97A7-8EEB1C7FF014} ©
O42 - Logiciel: CorelDRAW Graphics Suite X4 - VBA - (.Corel Corporation.) [HKLM] -- {BF439B41-0252-48DE-8B8B-0430CB26A181} ©
O42 - Logiciel: CorelDRAW(R) Graphics Suite X4 - (.Corel Corporation.) [HKLM] -- _{7F05E704-30A6-421A-97A7-8EEB1C7FF010} ©
O42 - Logiciel: CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension - (.Corel Corporation.) [HKLM] -- _{CE2DA11A-917F-4CF5-AB55-755EC115DD10} ©
O42 - Logiciel: CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension - (.Corel Corporation.) [HKLM] -- {CE2DA11A-917F-4CF5-AB55-755EC115DD10} ©
O42 - Logiciel: EBP Devis et Facturation Classic Open Line 2013 5.0 - (.EBP.) [HKLM] -- {5BFEC88E-1A84-4977-A4C5-177335BD5993} ©
O42 - Logiciel: EBP Devis et Facturation Classic Open Line 2013 5.0 - (.EBP.) [HKLM] -- EBP Devis et Facturation Classic Open Line 2013 5.0 ©
O42 - Logiciel: EBP Devis et Facturation Classic Open Line 2013 5.1 - (.EBP.) [HKLM] -- {7806BD71-D80B-4F8E-9648-BAF92611426F} ©
O42 - Logiciel: EBP Devis et Facturation Classic Open Line 2013 5.1 - (.EBP.) [HKLM] -- EBP Devis et Facturation Classic Open Line 2013 5.1 ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome ©
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 ©
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan ©
O42 - Logiciel: Media Streaming Agent - (.Boxore OU.) [HKLM] -- {49F1E961-77E0-441D-917E-9F938801BCDA} =>PUP.Optional.Boxore
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007 ©
O42 - Logiciel: Microsoft Money - (.Microsoft.) [HKLM] -- Money2005b ©
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {0CD47142-BA4F-46B0-AA92-2675864928B8} ©
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Mises à jour NVIDIA 4.11.9 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: MSXML 4.0 SP2 Parser and SDK - (.Microsoft Corporation.) [HKLM] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} ©
O42 - Logiciel: MSXML 6.0 Parser - (.Microsoft Corporation.) [HKLM] -- {AEB9948B-4FF2-47C9-990E-47014492A0FE} ©
O42 - Logiciel: NVIDIA GeForce Experience 1.5 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.0604 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: NVIDIA nView 140.62 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView ©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {3282FBE1-35FC-48D8-98CA-115A5EF1F9B4} ©
O42 - Logiciel: NVIDIA Pilote graphique 320.49 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: Parametres SFR 3G - (.Huawei Technologies Co.,Ltd.) [HKLM] -- Parametres SFR 3G ©
O42 - Logiciel: PRINTSERVER-NetTool - (...) [HKLM] -- {03281928-96C3-4AC4-8BD8-79C8347B920F}
O42 - Logiciel: Realtek Ethernet Diagnostic Utility - (.Realtek.) [HKLM] -- {DADC7AB0-E554-4705-9F6A-83EA82ED708E} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Roland VersaWorks - (.Roland DG Corporation.) [HKLM] -- {A10F0085-D206-42EF-A3D6-70F6CC7788A7}
O42 - Logiciel: Service Pack 1 pour SQL Server 2008 R2 (KB2528583) - (.Microsoft Corporation.) [HKLM] -- KB2528583 ©
O42 - Logiciel: SQL Server 2008 R2 SP1 Common Files - (.Microsoft Corporation.) [HKLM] -- {062A0D4A-75F6-4E9C-8A38-DFE95662D81B} ©
O42 - Logiciel: SQL Server 2008 R2 SP1 Common Files - (.Microsoft Corporation.) [HKLM] -- {CACEA8C8-3D38-4F51-953D-1E6FC3346FEF} ©
O42 - Logiciel: SQL Server 2008 R2 SP1 Database Engine Services - (.Microsoft Corporation.) [HKLM] -- {23D448C7-7DC7-4C15-B47D-C99364501F07} ©
O42 - Logiciel: SQL Server 2008 R2 SP1 Database Engine Services - (.Microsoft Corporation.) [HKLM] -- {B5153233-9AEE-4CD4-9D2C-4FAAC870DBE2} ©
O42 - Logiciel: SQL Server 2008 R2 SP1 Database Engine Shared - (.Microsoft Corporation.) [HKLM] -- {4C9D82EB-9001-4E59-8F64-0BEEE5F4A30A} ©
O42 - Logiciel: SQL Server 2008 R2 SP1 Database Engine Shared - (.Microsoft Corporation.) [HKLM] -- {F0494EE7-650A-4AC2-8B50-0968FC47EFA6} ©
O42 - Logiciel: Sql Server Customer Experience Improvement Program - (.Microsoft Corporation.) [HKLM] -- {93998800-1608-403F-9A51-420A77D23C25} ©
O42 - Logiciel: TOSHIBA e-STUDIO AddressBook Viewer - (.TOSHIBA TEC.) [HKLM] -- {077D1A79-B5BA-44DB-BF4F-2152C7A29785}
O42 - Logiciel: TOSHIBA e-STUDIO File Downloader - (.TOSHIBA TEC.) [HKLM] -- {12EC35E3-897D-4DE8-A61A-C610D668C3BD}
O42 - Logiciel: TOSHIBA e-STUDIO Remote Scan driver - (.TOSHIBA TEC.) [HKLM] -- {CC33AEA9-710E-462C-ABF4-487C647C133A}
O42 - Logiciel: TOSHIBA e-STUDIO TWAIN Driver - (.TOSHIBA TEC.) [HKLM] -- {7C1D7B14-B307-4327-B241-A28C56776FBE}
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 ©
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver ©

---\\ HKCU & HKLM Software Keys (124) - 8s
HKLM\SOFTWARE\8169Diag
HKLM\SOFTWARE\a357669f-67b1-414e-844f-e88a7b13ae53 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Aladdin Knowledge Systems
HKLM\SOFTWARE\anset
HKLM\SOFTWARE\Bitstream
HKLM\SOFTWARE\Bytemobile
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Corel
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\DT Soft
HKLM\SOFTWARE\e-STUDIOSettings
HKLM\SOFTWARE\EBP
HKLM\SOFTWARE\Extensis
HKLM\SOFTWARE\f500648d-2134-36bc-6716-bc2738db0334 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\FreeDownloadManager.ORG
HKLM\SOFTWARE\Gameforge
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Huawei technologies
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Kodak
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MaxPower
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\MediaStreamingAgent =>PUP.Optional.Boxore
HKLM\SOFTWARE\Metin2_FR
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\mozilla
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nostale_FR
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\Object Browser-nv =>PUP.Optional.ObjectBrowser
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\oursurfingSoftware =>PUP.Optional.OurSurfing
HKLM\SOFTWARE\PENSEWEB
HKLM\SOFTWARE\PhraseProfessor_1.10.0.22 =>PUP.Optional.Generic
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Preview Systems
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Roland
HKLM\SOFTWARE\Runes of Magic
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\SpringFiles
HKLM\SOFTWARE\TOSHIBA_MFP_Applications
HKLM\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Uniblue =>.Superfluous.Uniblue
HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Zemi Interactive
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Bitstream
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CleanerProConfig =>PUP.Optional.CleanerPro
HKCU\SOFTWARE\CleanerProLanguage =>PUP.Optional.CleanerPro
HKCU\SOFTWARE\Corel
HKCU\SOFTWARE\Corez
HKCU\SOFTWARE\David Esperalta
HKCU\SOFTWARE\desktop-play
HKCU\SOFTWARE\DesktopDockApp =>PUP.Optional.DesktopDock
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\Extensis
HKCU\SOFTWARE\FreeDownloadManager.ORG
HKCU\SOFTWARE\Gameforge4d
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IACCOMMON
HKCU\SOFTWARE\ICSW
HKCU\SOFTWARE\imeshkoyotesoftmoviestoolbar =>PUP.Optional.iMesh
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MAGIX
HKCU\SOFTWARE\MGinstall
HKCU\SOFTWARE\mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MyComGames
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\Object Browser-nv =>PUP.Optional.ObjectBrowser
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OperaOB
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RHONE
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SpringFiles
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\test
HKCU\SOFTWARE\tfdfu
HKCU\SOFTWARE\TorchMusic =>.Superfluous.Torch
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Unity Technologies
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WTools
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\ElectroLyrics-16 =>PUP.Optional.AddLyrics
HKCU\SOFTWARE\AppDataLow\Software\ElectroLyrics-22 =>PUP.Optional.AddLyrics

---\\ Contenu des dossiers Programmes (161) - 7s
O43 - CFD: 22/01/2015 - [] D -- C:\Program Files\Adobe
O43 - CFD: 22/01/2015 - [0] D -- C:\Program Files\AGEIA Technologies
O43 - CFD: 11/02/2015 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 20/01/2015 - [0] D -- C:\Program Files\Common Files
O43 - CFD: 17/07/2013 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 13/11/2015 - [0] D -- C:\Program Files\Coolmuster
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Corel
O43 - CFD: 27/10/2014 - [] D -- C:\Program Files\EBP
O43 - CFD: 25/01/2015 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 04/06/2015 - [] D -- C:\Program Files\Google
O43 - CFD: 13/11/2015 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Intel
O43 - CFD: 25/01/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\MediaStreamingAgent =>PUP.Optional.Boxore
O43 - CFD: 13/09/2013 - [] D -- C:\Program Files\Messenger
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 09/01/2014 - [] D -- C:\Program Files\Microsoft Money 2005
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 19/02/2014 - [] D -- C:\Program Files\Microsoft Security Client
O43 - CFD: 12/08/2014 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 20/11/2013 - [] D -- C:\Program Files\Microsoft SQL Server
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 20/11/2013 - [] D -- C:\Program Files\Microsoft Visual Studio 9.0
O43 - CFD: 19/02/2014 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 20/11/2013 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 13/09/2013 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 17/10/2013 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\MSN
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 17/07/2013 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Online Services
O43 - CFD: 13/09/2013 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Parametres SFR 3G
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\PRINTSERVER-NetTool
O43 - CFD: 07/03/2014 - [] D -- C:\Program Files\QQS
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Realtek
O43 - CFD: 17/10/2013 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 06/02/2015 - [] D -- C:\Program Files\RelayMaker
O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Remote Torrent Adder
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Roland VersaWorks
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Software =>PUP.Optional.Boxore
O43 - CFD: 18/11/2013 - [] D -- C:\Program Files\TOSHIBA
O43 - CFD: 17/07/2013 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 17/08/2014 - [] D -- C:\Program Files\WarThunder
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 17/07/2013 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 18/07/2013 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\xerox
O43 - CFD: 18/11/2013 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 11/02/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 18/11/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Client TOSHIBA e-STUDIO
O43 - CFD: 22/01/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 27/10/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EBP
O43 - CFD: 22/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 17/07/2013 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 06/08/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 20/11/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft SQL Server 2008
O43 - CFD: 20/11/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft SQL Server 2008 R2
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\NVIDIA Corporation
O43 - CFD: 17/07/2013 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Realtek
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Roland VersaWorks
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Suite graphique CorelDRAW X4
O43 - CFD: 18/07/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 17/10/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\.mono
O43 - CFD: 24/07/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Boxore =>PUP.Optional.Boxore
O43 - CFD: 05/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\cf7f05cb26738c01
O43 - CFD: 18/07/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\Corel
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\DatacardService
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\DWMiniProD
O43 - CFD: 08/04/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\EBP
O43 - CFD: 17/02/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Free Download Manager
O43 - CFD: 08/11/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Optional.Tarma
O43 - CFD: 06/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\LizardSales =>PUP.Optional.LizardSales
O43 - CFD: 24/06/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 20/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 17/07/2013 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 17/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 29/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\PC1Data
O43 - CFD: 02/09/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\SummerSoft
O43 - CFD: 07/03/2014 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 17/08/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\WarThunder
O43 - CFD: 17/12/2013 - [] HDC -- C:\Documents and Settings\All Users\Application Data\{7282F821-6307-4DB3-ABCC-602DEFB59CA5} =>PUP.Optional.BundleInstaller
O43 - CFD: 17/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\{76049EC7-2686-4F41-9700-3FC34782EC4D}
O43 - CFD: 20/11/2013 - [] HDC -- C:\Documents and Settings\All Users\Application Data\{97E572CB-796A-45FC-AEB0-E4074FD88EE4}
O43 - CFD: 27/10/2014 - [] HDC -- C:\Documents and Settings\All Users\Application Data\{DF556234-0223-4663-A9AD-8FEFE5B9EE69}
O43 - CFD: 05/04/2014 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Fichiers communs\Corel
O43 - CFD: 25/01/2015 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 19/02/2014 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 20/02/2014 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files\Fichiers communs\Vbox
O43 - CFD: 09/02/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\.mono
O43 - CFD: 17/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\12992
O43 - CFD: 29/06/2014 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\53015ce6e56da1c7600183fc
O43 - CFD: 28/02/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Adobe
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Bitstream
O43 - CFD: 24/08/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\cacaoweb =>PUP.Optional.CacaoWeb
O43 - CFD: 22/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Company
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Corel
O43 - CFD: 11/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DAEMON Tools Lite
O43 - CFD: 11/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Free Download Manager
O43 - CFD: 02/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Google
O43 - CFD: 22/07/2013 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Help
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Identities
O43 - CFD: 08/11/2013 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Macromedia
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\MAGIX
O43 - CFD: 01/03/2014 - [] SD -- C:\Documents and Settings\Administrateur\Application Data\Microsoft
O43 - CFD: 22/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mozilla
O43 - CFD: 14/02/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\NVIDIA
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\oursurfing =>PUP.Optional.OurSurfing
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\RPEng
O43 - CFD: 13/11/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\SpringFiles
O43 - CFD: 08/01/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Unity
O43 - CFD: 14/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\uTorrent
O43 - CFD: 18/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Application Data\WinRAR
O43 - CFD: 14/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ZHP
O43 - CFD: 22/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
O43 - CFD: 17/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\16195234
O43 - CFD: 20/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe
O43 - CFD: 16/09/2013 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\avgchrome
O43 - CFD: 13/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Boxore =>PUP.Optional.Boxore
O43 - CFD: 17/02/2014 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\cache
O43 - CFD: 27/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\cde9efe5-5aab-488b-8d88-fbc656953aba
O43 - CFD: 22/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Deployment
O43 - CFD: 22/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Desktop_Dock =>PUP.Optional.GamesDesktop
O43 - CFD: 17/12/2013 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\EBP
O43 - CFD: 14/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google
O43 - CFD: 22/07/2013 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Help
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities
O43 - CFD: 27/10/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\III
O43 - CFD: 17/02/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft
O43 - CFD: 17/07/2013 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help
O43 - CFD: 20/03/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\NVIDIA
O43 - CFD: 05/04/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\PCHealth
O43 - CFD: 20/11/2013 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Stimulsoft
O43 - CFD: 13/11/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\StimulsoftReportsResources
O43 - CFD: 06/05/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp
O43 - CFD: 14/02/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Unity
O43 - CFD: 17/08/2014 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\WarThunder
O43 - CFD: 22/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
O43 - CFD: 16/09/2013 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 22/01/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 17/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\PRINTSERVER-NetTool
O43 - CFD: 18/07/2013 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (7) - 4s
O45 - LFCP:[MD5.A05B1E7BE46CEA92FDEC4C1E8C46ED92] 14/11/2015 A -- C:\WINDOWS\Prefetch\SELECTION TOOLS UNINSTALL.EXE-0765C7AB.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.687D86B9C27CE90B713470002E9F7084] 14/11/2015 A -- C:\WINDOWS\Prefetch\SELECTION TOOLS UNINSTALL.EXE-260C07B8.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.2078A7D8B1F1013DC5DA166FD8239831] 14/11/2015 A -- C:\WINDOWS\Prefetch\SELECTION TOOLS UPDATE.EXE-1397C6C5.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.48E53796B596CDA784043055A674FF02] 13/11/2015 A -- C:\WINDOWS\Prefetch\SELECTION TOOLS.EXE-366772CA.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.D3B7BEA78CF49041120B62879FDBC93A] 13/11/2015 A -- C:\WINDOWS\Prefetch\SH_INSTALLER.EXE-0A95C120.pf =>.Superfluous.SpyHunter
O45 - LFCP:[MD5.B0D1F7014BF2E892B4E5DB5B6A413013] 13/11/2015 A -- C:\WINDOWS\Prefetch\SPYHUNTER-INSTALLER.EXE-0EEE4BD0.pf =>.Superfluous.SpyHunter
O45 - LFCP:[MD5.7F86B5AF25B36494536179F734D3D5C8] 13/11/2015 A -- C:\WINDOWS\Prefetch\SPYHUNTER4.EXE-07468672.pf =>.Superfluous.SpyHunter

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©

---\\ Enumération des clés StartupReg (20) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe ©
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Synchronizer [Key] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 11.0.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe ©
O53 - SMSR:HKLM\...\startupreg\Boost [Key] . (...) -- C:\Program Files\Boost\Boost.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\CleanerPro [Key] . (...) -- C:\Program Files\Cleaner Pro\CleanerPro.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\ctfmon.exe [Key] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O53 - SMSR:HKLM\...\startupreg\Free Download Manager [Key] . (...) -- C:\Program Files\Free Download Manager\fdm.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\gmsd_fr_108 [Key] . (...) -- C:\Program Files\gmsd_fr_108\gmsd_fr_108.exe (.not file.) =>PUP.Optional.CrossRider
O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe ©
O53 - SMSR:HKLM\...\startupreg\MSMSGS [Key] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe ©
O53 - SMSR:HKLM\...\startupreg\NvCplDaemon [Key] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- RUNDLL32.EXE (.not file.) ©
O53 - SMSR:HKLM\...\startupreg\NvMediaCenter [Key] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- RunDLL32.exe (.not file.) ©
O53 - SMSR:HKLM\...\startupreg\Nvtmru [Key] . (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe ©
O53 - SMSR:HKLM\...\startupreg\nwiz [Key] . (...) -- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe
O53 - SMSR:HKLM\...\startupreg\PenWes [Key] . (...) -- C:\Program Files\PenWes\dnshelper.exe (.not file.) =>.Superfluous.PenWes
O53 - SMSR:HKLM\...\startupreg\RTHDCPL [Key] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- RTHDCPL.EXE (.not file.) ©
O53 - SMSR:HKLM\...\startupreg\Selection Tools [Key] . (...) -- C:\Documents and Settings\Administrateur\Application Data\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay
O53 - SMSR:HKLM\...\startupreg\SmartWeb [Key] . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\SmartWeb\SmartWebHelper.exe (.not file.) =>PUP.Optional.SmartWebSearch
O53 - SMSR:HKLM\...\startupreg\upgmsd_fr_108.exe [Key] . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\gmsd_fr_108\upgmsd_fr_108.exe (.not file.) =>PUP.Optional.CrossRider
O53 - SMSR:HKLM\...\startupreg\WindApp [Key] . (...) -- C:\Documents and Settings\Administrateur\Application Data\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay
O53 - SMSR:HKLM\...\startupreg\YTDownloader [Key] . (...) -- C:\Program Files\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader

---\\ Liste des pilotes du système (50) - 3s
O58 - SDL:2009/11/18 00:16:00 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480] ©
O58 - SDL:2009/04/10 21:31:14 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2009/04/10 21:31:14 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/14 01:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 01:05:14 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2001/08/28 20:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2010/10/08 09:55:06 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\WINDOWS\System32\drivers\ewdcsc.sys [25856] ©
O58 - SDL:2013/03/04 09:20:27 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys [199168] ©
O58 - SDL:2013/01/23 07:58:06 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\ewusbnet.sys [249600] ©
O58 - SDL:2010/09/26 11:09:22 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\WINDOWS\System32\drivers\ew_hwupgrade.sys [19200] ©
O58 - SDL:2013/01/25 02:16:33 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ew_hwusbdev.sys [95232] ©
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\WINDOWS\System32\drivers\ew_jubusenum.sys [77824] ©
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\WINDOWS\System32\drivers\ew_jucdcacm.sys [101248] ©
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\WINDOWS\System32\drivers\ew_jucdcecm.sys [70528] ©
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\WINDOWS\System32\drivers\ew_juextctrl.sys [27776] ©
O58 - SDL:2012/12/22 02:46:02 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys [11904] ©
O58 - SDL:2006/11/22 09:01:48 A . (.Aladdin Knowledge Systems Ltd. - Hardlock Device Driver for Windows NT.) -- C:\WINDOWS\System32\drivers\hardlock.sys [693760]
O58 - SDL:2008/04/13 15:36:06 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2010/08/06 00:42:34 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\WINDOWS\System32\drivers\mod7700.sys [861696]
O58 - SDL:2009/11/18 00:17:00 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800] ©
O58 - SDL:2009/04/10 21:31:14 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2013/06/21 13:02:09 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [10973504] ©
O58 - SDL:2005/11/19 02:13:18 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\System32\drivers\PCASp50.sys [20096] ©
O58 - SDL:2001/08/28 20:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2009/04/10 21:31:14 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2009/04/10 21:31:14 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2013/05/15 03:50:12 A . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [403912] ©
O58 - SDL:2012/06/19 09:54:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [6141584] ©
O58 - SDL:2011/06/15 14:11:20 A . (.Realtek Semiconductor Corporation - Realtek Intermediate Driver for Ethernet Ex.) -- C:\WINDOWS\System32\drivers\RTLTEAMING.SYS [36384] ©
O58 - SDL:2011/06/15 14:11:20 A . (.Realtek Semiconductor Corporation - RTLVLAN Intermediate Miniport Driver.) -- C:\WINDOWS\System32\drivers\RTLVLAN.SYS [17664] ©
O58 - SDL:2011/06/15 14:11:20 A . (.Realtek Semiconductor Corporation - Realtek NDIS Protocol Driver.) -- C:\WINDOWS\System32\drivers\RtNdPt5x.sys [22016] ©
O58 - SDL:2008/04/13 15:39:16 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2013/07/17 07:51:14 A . (...) -- C:\WINDOWS\System32\drivers\sptd.sys [691696]
O58 - SDL:2009/04/10 21:31:14 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2009/04/10 21:31:14 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/13 15:50:56 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2001/08/28 20:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/13 15:49:52 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/13 15:49:44 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/13 15:49:40 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/13 15:49:44 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/13 15:49:42 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 12s
O61 - LFC: 2015/11/13 14:27:21 A . (..) -- C:\Documents and Settings\Administrateur\TOSHIBA\eST4520C\PS3\AppSetting.bin [52730]
O61 - LFC: 2015/11/13 21:30:47 A . (.Enigma Software Group USA, LLC..) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\SpyHunter-Installer.exe [3237248] =>.Superfluous.SpyHunter
O61 - LFC: 2015/11/13 18:57:21 A . (.http://spring-files.com.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\YourFile_downloader.exe [5130832]

---\\ Associations Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (13) - 0s
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- Chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.oursurfing.com/ =>PUP.Optional.OurSurfing
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Vosteran\Application\vosteran.exe =>PUP.Optional.Vosteran
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Vosteran\Application\vosteran.exe (.not file.) =>PUP.Optional.Vosteran
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Vosteran\Application\vosteran.exe (.not file.) =>PUP.Optional.Vosteran
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Vosteran\Application\vosteran.exe (.not file.) =>PUP.Optional.Vosteran

---\\ Recherche d'infection sur les navigateurs (5) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {EE65CE97-5A31-4836-BA4B-878327FD2E01} [DefaultScope] - (Bing.com) - http://www.trovi.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-19] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Web Search) - http://feed.snapdo.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Web Search) - http://feed.snapdo.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {80c554b9-c7f8-4a21-9471-06d606da78a2} - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (39) - 1s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] ©
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Fournisseur de services de périphérique mul.) -- C:\WINDOWS\system32\mspmsnsv.dll [52736] ©

---\\ Enumère les codes produits des logiciels (1) - 1s
O90 - PUC: "169E1F940E77D14419E7F9398810CBAD" . (.Media Streaming Agent.) -- C:\WINDOWS\Installer\{49F1E961-77E0-441D-917E-9F938801BCDA}\MediaStreamingAgent.ico =>PUP.Optional.Boxore

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (11) - 13s

SS - Demand [11/11/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SS - Auto [29/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SS - Demand [29/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SR - Auto [06/02/2013] [ 276048] HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2013.) - C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe
SR - Auto [16/10/2015] [ 1705928] MediaStreamingService (MediaStreamingService) . (.MediaStreaming OU.) - C:\Documents and Settings\All Users\Application Data\Boxore\LSP\MediaStreamingService.exe =>PUP.Optional.Boxore
SR - Auto [21/06/2013] [ 156960] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe ©
SS - Disabled [16/05/2013] [ 1826592] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ©
SS - Auto [13/11/2015] [ 113240] Service Software Update (Software_update) (Software_update) . (.The Software Group.) - C:\Program Files\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore
SS - Demand [13/11/2015] [ 113240] Service Software Update (Software_update_m) (Software_update_m) . (.The Software Group.) - C:\Program Files\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore
SR - Auto [13/11/2015] [ 301704] WdsManPro Service (WdsManPro) . (.DTools LIMITED.) - C:\Documents and Settings\All Users\Application Data\DWMiniProD\WMiniPro.exe =>PUP.Optional.WpManager

---\\ Scan Additionnel (57) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\MediaStreamingService =>PUP.Optional.Boxore
C:\Documents and Settings\All Users\Application Data\Boxore\LSP\MediaStreamingService.exe =>PUP.Optional.Boxore
HKLM\SYSTEM\CurrentControlSet\Services\Software_update =>PUP.Optional.Boxore
C:\Program Files\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore
HKLM\SYSTEM\CurrentControlSet\Services\WdsManPro =>PUP.Optional.WpManager
C:\Documents and Settings\All Users\Application Data\DWMiniProD\WMiniPro.exe =>PUP.Optional.WpManager
C:\Program Files\MediaStreamingAgent\MediaStreamingAgent\MediaStreamingAgent.exe =>PUP.Optional.Boxore
C:\Program Files\MediaStreamingAgent\MediaStreamingAgent\node.exe =>PUP.Optional.Boxore
C:\Program Files\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore
C:\Documents and Settings\Administrateur\Mes documents\Downloads\cacaoweb.exe =>PUP.Optional.CacaoWeb
C:\WINDOWS\system32\MediaStreamingService.dll =>Hijacker.Winsock
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{49F1E961-77E0-441D-917E-9F938801BCDA} =>PUP.Optional.Boxore
HKLM\SOFTWARE\a357669f-67b1-414e-844f-e88a7b13ae53 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\f500648d-2134-36bc-6716-bc2738db0334 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\MediaStreamingAgent =>PUP.Optional.Boxore
HKLM\SOFTWARE\Object Browser-nv =>PUP.Optional.ObjectBrowser
HKLM\SOFTWARE\oursurfingSoftware =>PUP.Optional.OurSurfing
HKLM\SOFTWARE\PhraseProfessor_1.10.0.22 =>PUP.Optional.Generic
HKLM\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Uniblue =>.Superfluous.Uniblue
HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro
HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\CleanerProConfig =>PUP.Optional.CleanerPro
HKCU\SOFTWARE\CleanerProLanguage =>PUP.Optional.CleanerPro
HKCU\SOFTWARE\DesktopDockApp =>PUP.Optional.DesktopDock
HKCU\SOFTWARE\imeshkoyotesoftmoviestoolbar =>PUP.Optional.iMesh
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\Object Browser-nv =>PUP.Optional.ObjectBrowser
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\TorchMusic =>.Superfluous.Torch
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\AppDataLow\Software\ElectroLyrics-16 =>PUP.Optional.AddLyrics
HKCU\SOFTWARE\AppDataLow\Software\ElectroLyrics-22 =>PUP.Optional.AddLyrics
C:\Program Files\MediaStreamingAgent =>PUP.Optional.Boxore
C:\Program Files\Software =>PUP.Optional.Boxore
C:\Documents and Settings\All Users\Application Data\Boxore =>PUP.Optional.Boxore
C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Optional.Tarma
C:\Documents and Settings\All Users\Application Data\LizardSales =>PUP.Optional.LizardSales
C:\Documents and Settings\All Users\Application Data\{7282F821-6307-4DB3-ABCC-602DEFB59CA5} =>PUP.Optional.BundleInstaller
C:\Documents and Settings\Administrateur\Application Data\cacaoweb =>PUP.Optional.CacaoWeb
C:\Documents and Settings\Administrateur\Application Data\oursurfing =>PUP.Optional.OurSurfing
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Boxore =>PUP.Optional.Boxore
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Desktop_Dock =>PUP.Optional.GamesDesktop
C:\WINDOWS\Prefetch\SELECTION TOOLS UNINSTALL.EXE-0765C7AB.pf =>PUP.Optional.Nosibay
C:\WINDOWS\Prefetch\SELECTION TOOLS UNINSTALL.EXE-260C07B8.pf =>PUP.Optional.Nosibay
C:\WINDOWS\Prefetch\SELECTION TOOLS UPDATE.EXE-1397C6C5.pf =>PUP.Optional.Nosibay
C:\WINDOWS\Prefetch\SELECTION TOOLS.EXE-366772CA.pf =>PUP.Optional.Nosibay
C:\WINDOWS\Prefetch\SH_INSTALLER.EXE-0A95C120.pf =>.Superfluous.SpyHunter
C:\WINDOWS\Prefetch\SPYHUNTER-INSTALLER.EXE-0EEE4BD0.pf =>.Superfluous.SpyHunter
C:\WINDOWS\Prefetch\SPYHUNTER4.EXE-07468672.pf =>.Superfluous.SpyHunter
C:\WINDOWS\Installer\{49F1E961-77E0-441D-917E-9F938801BCDA}\MediaStreamingAgent.ico =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\169E1F940E77D14419E7F9398810CBAD =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Features\169E1F940E77D14419E7F9398810CBAD =>PUP.Optional.Boxore
HKLM\SYSTEM\CurrentControlSet\Services\Software_update_m =>PUP.Optional.Boxore

---\\ Récapitulatif des éléments trouvées sur votre station (28) - 0s
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb
http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock
http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay
http://www.nicolascoolman.fr/pup-objectbrowser/ =>PUP.Optional.ObjectBrowser
http://www.nicolascoolman.fr/blog =>PUP.Optional.OurSurfing
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/blog =>.Superfluous.Uniblue
http://www.nicolascoolman.fr/blog =>PUP.Optional.WdsManPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.CleanerPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.DesktopDock
http://www.nicolascoolman.fr/pup-imesh/ =>PUP.Optional.iMesh
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch
http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/blog =>.Superfluous.Torch
http://www.nicolascoolman.fr/adware-addlyrics/ =>PUP.Optional.AddLyrics
http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/blog =>PUP.Optional.LizardSales
http://www.nicolascoolman.fr/blog =>PUP.Optional.BundleInstaller
http://www.nicolascoolman.fr/blog =>PUP.Optional.GamesDesktop
http://www.nicolascoolman.fr/blog =>.Superfluous.PenWes
http://www.nicolascoolman.fr/pup-smartwebsearch/ =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader
http://www.nicolascoolman.fr/blog =>PUP.Optional.Vosteran

~ End of the scan, 71390 items in 99 seconds (813)(0)

Publicité


Signaler le contenu de ce document

Publicité