cjoint

Publicité


Publicité

Commentaire : Analyse ZHPDiag de mon PC

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.11.17.169 Par Nicolas Coolman (2015/11/17)
~ Démarré par Karamel (Administrator) (2015/11/17 22:07:36)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Pas de fichier réseau
~ Mode: Scanner
~ Rapport: C:\Users\Karamel\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Karamel\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 41.0.2 (x86 fr) v41.0.2
MSIE: Internet Explorer v11.0.9600.18053

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (3) - 15s
ClamWin Free Antivirus 0.98.7
Malwarebytes Anti-Malware version 2.2.0.1024
Windows Defender (Activate)

---\\ Logiciels de protection et autres (Superflus) (1) - 15s
McAfee Security Scan Plus v3.11.163.2

---\\ Surveillance de Logiciels (1) - 15s
Adobe Flash Player 19 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4076.4 MB (48% free)
System Restore: Activé (Enable)
System drive C: has 703 GB () free of 934 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PEPETE
~ User Name: Karamel
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 703 GB free of 934 GB (System)
~ Drive D: has 2 GB free of 17 GB
~ Drive G: has 9 GB free of 61 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 3s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - 28/01/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2501368] ©
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [54784] ©
[MD5.A570A64292214C43E0BA50E6A72A6380] - 29/10/2014 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [145920] ©
[MD5.F6A075F2D69D9AFD14C6B79DF5C717D6] - 10/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2487808] ©
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - 29/10/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [572416] ©
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 24/09/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] ©
[MD5.2A011B60C7FEC463703C4CB49AF9F7E9] - 23/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [657920] © =>Hijacker.DNS.Hosts
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 24/09/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] ©
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - 24/09/2014 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [563200] ©
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] ©
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] ©
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] ©
[MD5.A03F362C5557E238CBFA914689C77248] - 24/09/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] ©
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/09/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] ©
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] ©
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 24/09/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] ©
[MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - 27/06/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408] ©
[MD5.0217532E19A748F0E5D569307363D5FD] - 22/08/2013 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [282624] ©
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - 15/10/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] ©
[MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [94208] ©
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - 22/08/2013 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832] ©
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 24/09/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] ©
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - 22/08/2013 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] ©
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - 24/09/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] ©

---\\ Liste des services NT non Microsoft et non désactivés (12) - 8s
O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe ©
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe ©
O23 - Service: HP Connected Remote Service (HPConnectedRemote) . (.Hewlett-Packard - HPConnectedRemoteService.) - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe ©
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe ©
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe ©
O23 - Service: MediaFire NTFS Monitor (MF NTFS Monitor) . (...) - C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe
O23 - Service: @C:\WINDOWS\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe ©
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Processus lancés (20) - 3s
[MD5.29193D5E1A4BFADDBE2A0AB1E20C9166] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [327680] [PID.480] ©
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1364] ©
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- c:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1488] ©
[MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.1556] ©
[MD5.02C725F9D9E46DA31337730FB2C983C1] - (...) -- C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe [456176] [PID.2108]
[MD5.BB1FC298BE53AAB1E110F6E786BD8AC5] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528] [PID.2072] ©
[MD5.30E9FAC23E2537D82F2836CB81AEE186] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896] [PID.2636] ©
[MD5.5A9DFA60A981CAE3D1503C0255D3A330] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [391128] [PID.5336] ©
[MD5.DD469E822EF49A0337710172886AD61A] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [844760] [PID.7656] ©
[MD5.E267A2040C2F2369404307E7BE0344C9] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [771032] [PID.18640] ©
[MD5.A0147F6D760ADF6ACA4D2F729324C919] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [769496] [PID.4780] ©
[MD5.96A1D93D16F959C6F5A63E749A9F2EF7] - (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\Beats64.exe [41664] [PID.16256] ©
[MD5.EBA8621EAAC98FB83144C83096F9F836] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe [1664000] [PID.3440] ©
[MD5.22F7B9670AD770C7ED7F4738204C8E5C] - (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe [2573416] [PID.16412] ©
[MD5.E175D10D3ADFA6479E3984E695499175] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe [330456] [PID.18684] ©
[MD5.3BD79A1F6D2EA0FDDEA3F8914B2A6A0C] - (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984] [PID.10236] ©
[MD5.CE5C9977DA751DDC30952AC4DCBCA788] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.4168] ©
[MD5.630B417FD7F878A4398D16FBD3F46690] - (.alch - ClamWin Antivirus.) -- C:\Program Files (x86)\ClamWin\bin\ClamTray.exe [86016] [PID.2684]
[MD5.BD2E3D5008F1EAB96379CEA2C0FABBBD] - (.Adobe Systems Incorporated - Adobe® Flash® Player Utility.) -- C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe [882680] [PID.30592] ©
[MD5.FFD5B51CF3F5E8054D6CFE3C38440C71] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Karamel\Downloads\ZHPDiag3.exe [1970688] [PID.17280] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (3) - 6s
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll ©
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (2) - 1s
O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer32.dll ©
O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_32.dll ©

---\\ Applications lancées au démarrage du système (10) - 0s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe ©
O4 - HKLM\..\Run: [BeatsOSDApp] . (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\Beats64.exe ©
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe ©
O4 - HKCU\..\Run: [HP Photosmart 5520 series (NET)] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe ©
O4 - HKLM\..\Wow6432Node\Run: [VirtualCloneDrive] . (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe ©
O4 - HKLM\..\Wow6432Node\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe ©
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe ©
O4 - HKUS\S-1-5-21-912777328-2593335216-1806301480-1001\..\Run: [HP Photosmart 5520 series (NET)] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe ©

---\\ Winsock hijacker (Layered Service Provider) (10) - 0s
O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (...) -- C:\Windows\System32\MediaStreamingService.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (...) -- C:\Windows\System32\MediaStreamingService.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (...) -- C:\Windows\System32\MediaStreamingService.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (...) -- C:\Windows\System32\MediaStreamingService.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000015\Winsock LSP File . (...) -- C:\Windows\System32\MediaStreamingService.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000001\Winsock LSP File . (...) -- C:\WINDOWS\system32\Rhpoijbe64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000002\Winsock LSP File . (...) -- C:\WINDOWS\system32\Rhpoijbe64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000003\Winsock LSP File . (...) -- C:\WINDOWS\system32\Rhpoijbe64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000004\Winsock LSP File . (...) -- C:\WINDOWS\system32\Rhpoijbe64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000015\Winsock LSP File . (...) -- C:\WINDOWS\system32\Rhpoijbe64.dll =>Hijacker.Winsock

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (24) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: grooveLocalGWS [64Bits] - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Logiciels installés (100) - 7s
O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-43a395d1-c0fd-40d1-b787-948332b9b971 © =>.WildTangent
O42 - Logiciel: BDA - (...) [HKCU][64Bits] -- BDA
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-448d863a-9b03-4965-99b9-af461ddc8e84 © =>.WildTangent
O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} ©
O42 - Logiciel: Brain Workshop 4.8.4 - (.Paul Hoskinson & Jonathan Toomim.) [HKLM][64Bits] -- Brain Workshop_is1
O42 - Logiciel: Build-a-lot 4 - Power Source - (.WildTangent.) [HKLM][64Bits] -- WTA-290468ca-022f-4ca5-a6fc-24391fe6fbef © =>.WildTangent
O42 - Logiciel: Civilization II Ultimate Classic Collection - (...) [HKLM][64Bits] -- Civilization II Ultimate Classic Collection
O42 - Logiciel: ClamWin Free Antivirus 0.98.7 - (.alch.) [HKLM][64Bits] -- ClamWin Free Antivirus_is1
O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {BF8CC8E1-3D54-4A54-B985-5190F18AFDBB} ©
O42 - Logiciel: Connected Music powered by Universal Music Group version 1.0 - (.Snowite.) [HKLM][64Bits] -- {46037DC7-F927-46DF-935F-D6F122BDD34B}_is1 ©
O42 - Logiciel: Cradle of Rome 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-017de2ec-7e36-453f-9896-bd2eb93808ee © =>.WildTangent
O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-cba3235f-d5f8-4259-9e9f-a27c1a79dd35 © =>.WildTangent
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {4862344A-A39C-4897-ACD4-A1BED5163C5A} ©
O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A} ©
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} ©
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} ©
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} ©
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} ©
O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} ©
O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} ©
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: Divinity Original Sin - (.PLAZA.) [HKLM][64Bits] -- Divinity Original Sin_is1
O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-2129c008-a9b1-4409-819e-9658cd893d4b © =>.WildTangent
O42 - Logiciel: Final Drive Fury - (.WildTangent.) [HKLM][64Bits] -- WTA-46de7bd1-817b-4739-b0af-3d0070443c4e © =>.WildTangent
O42 - Logiciel: Foxit Reader - (.Foxit Corporation.) [HKLM][64Bits] -- Foxit Reader_is1 ©
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {FE8DFDD0-A543-4A83-B7A9-C411138194D5} ©
O42 - Logiciel: Gardenscapes: Mansion Makeover - (.WildTangent.) [HKLM][64Bits] -- WTA-0d02c6ab-3f63-40b5-854b-c1055e450bc4 © =>.WildTangent
O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-77af9c10-39c6-4d40-9517-7e00c29de5c0 © =>.WildTangent
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} ©
O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic ©
O42 - Logiciel: HP Connected Remote - (.Hewlett-Packard.) [HKLM][64Bits] -- {F243A34B-AB7F-4065-B770-B85B767C247C} ©
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} ©
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall © =>.WildTangent
O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations ©
O42 - Logiciel: HP Photosmart 5520 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {CB08AF0F-D14B-4570-83CD-2567CE63CC5F} ©
O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} ©
O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {C2E428EB-116E-41C0-9E84-B22DE9CCA42F} ©
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} ©
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5} ©
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} ©
O42 - Logiciel: ISO2Disc 1.09 - (.Top Password Software, Inc..) [HKLM][64Bits] -- ISO2Disc_is1
O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-bb78d9b5-e7ab-4004-9ec0-bf95a98ea0eb © =>.WildTangent
O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WTA-d52efb86-1bbf-407e-82aa-89be6220d58b © =>.WildTangent
O42 - Logiciel: Logiciel de base du périphérique HP Photosmart 5520 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {97104D7C-FAC1-40A2-A34D-7950424FAEDE} ©
O42 - Logiciel: Ludopret version 3.21 - (.J-D GAYOT.) [HKLM][64Bits] -- {90B75AA8-2726-429D-AC44-C40ED9D714E7}_is1
O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM][64Bits] -- WTA-3fd802df-a75a-4d9d-b259-438f04f7b58e © =>.WildTangent
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan ©
O42 - Logiciel: Media Streaming Agent - (.Boxore OU.) [HKLM][64Bits] -- {49F1E961-77E0-441D-917E-9F938801BCDA} =>PUP.Optional.Boxore
O42 - Logiciel: MediaFire Desktop - (.MediaFire.) [HKLM][64Bits] -- MediaFire Desktop 1.7.12.10972 ©
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe ©
O42 - Logiciel: Mozilla Firefox 41.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.2 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} ©
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {F842F8B0-6942-4930-821F-543E976B2C66} ©
O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-5e45ddb4-2bac-409f-bab0-40723c0bbb0b © =>.WildTangent
O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {121727D5-FDF3-4723-BA57-EB383440ED72} ©
O42 - Logiciel: Outil de téléchargement USB/DVD Windows 7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5F8683B5-5056-411C-B808-B289E29E9BBB} ©
O42 - Logiciel: PDF Image Extraction Wizard 6.2 - (.RL Vision.) [HKLM][64Bits] -- PDF Image Extraction Wizard_is1
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-c43462ad-64bc-4062-a9e2-1a8a4e1e029b © =>.WildTangent
O42 - Logiciel: Ralink RT5390R 802.11bgn Wi-Fi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} ©
O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-8d1222eb-bd10-4914-b008-b466f71a5680 © =>.WildTangent
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} ©
O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva ©
O42 - Logiciel: Royal Envoy 2 Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-ea541d0f-9bd8-41b8-b142-c73493c5562d © =>.WildTangent
O42 - Logiciel: RPG Maker 2000 1.03 - (...) [HKLM][64Bits] -- RPG Maker 2000 1.03
O42 - Logiciel: RPG Maker 2003 - (...) [HKLM][64Bits] -- RPG Maker 2003
O42 - Logiciel: RPG Maker VX Ace - (.Enterbrain.) [HKLM][64Bits] -- RPGVXAce_E_is1 ©
O42 - Logiciel: RPG MAKER VX Ace RTP - (.Enterbrain.) [HKLM][64Bits] -- RPGVXAce_RTP_is1 ©
O42 - Logiciel: RPG Maker XP + RTP - (.Enterbrain.) [HKLM][64Bits] -- RPG Maker XP + RTP_is1 ©
O42 - Logiciel: RTP for RM2K (Png, Wav, Midi, Fonts) - (...) [HKLM][64Bits] -- RTP for RM2K (Png, Wav, Midi, Fonts)
O42 - Logiciel: ScummVM 1.6.0 - (.The ScummVM Team.) [HKLM][64Bits] -- ScummVM_is1
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} ©
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 ©
O42 - Logiciel: Slachter City - (...) [HKCU][64Bits] -- Slachter City
O42 - Logiciel: Software Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: TI xHCI Filter Driver 1.0.0.4 - (.Texas Instruments Inc..) [HKLM][64Bits] -- TI xHCI Filter Driver ©
O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-48433e18-2acf-47c1-86dc-81c2dc1fd569 © =>.WildTangent
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App © =>.WildTangent
O42 - Logiciel: VirtualCloneDrive - (.Elaborate Bytes.) [HKLM][64Bits] -- VirtualCloneDrive ©
O42 - Logiciel: VLC media player 2.1.0 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-a9084233-156d-4847-ab37-88fedb72ca48 © =>.WildTangent
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall © =>.WildTangent
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp © =>.WildTangent
O42 - Logiciel: WinAce Archiver - (.e-merge GmbH.) [HKLM][64Bits] -- WinAce Archiver
O42 - Logiciel: Youda Jewel Shop - (.WildTangent.) [HKLM][64Bits] -- WTA-3fa8a499-9c7e-4660-a648-f2bbf3fe63c0 © =>.WildTangent
O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-9bf89720-6f42-41d3-aad4-8d605bd4500d © =>.WildTangent

---\\ HKCU & HKLM Software Keys (100) - 7s
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\ClamWin
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\Elaborate Bytes
HKLM\SOFTWARE\Wow6432Node\Enterbrain
HKLM\SOFTWARE\Wow6432Node\EVP
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IDT
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\MediaFire
HKLM\SOFTWARE\Wow6432Node\MediaStreamingAgent =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\MediaStreamingService
HKLM\SOFTWARE\Wow6432Node\MicroProse Software
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenOffice
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Piriform
HKLM\SOFTWARE\Wow6432Node\Ralink
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\RocketLife
HKLM\SOFTWARE\Wow6432Node\SearchModule =>PUP.Optional.SearchModule
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visan
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\ACE Compression Software
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASCII
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BodomChildWorks
HKCU\SOFTWARE\Borland
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\e-merge
HKCU\SOFTWARE\Elaborate Bytes
HKCU\SOFTWARE\Enterbrain
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\GjQ97QmmV0bXNk
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\IvoSoft
HKCU\SOFTWARE\IZSoftware
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\MediaFire
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QdLXT2k1NeMWlcT
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\RPG Maker 2003 Hacker
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\WTools =>PUP.Optional.Nosibay
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programmes (227) - 10s
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Addons
O43 - CFD: 29/10/2013 - [] D -- C:\Program Files (x86)\ASCII
O43 - CFD: 31/10/2013 - [] D -- C:\Program Files (x86)\BDA
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Brain Workshop
O43 - CFD: 23/06/2015 - [] D -- C:\Program Files (x86)\ClamWin
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Connected Music powered by Universal Music Group
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 12/07/2014 - [] D -- C:\Program Files (x86)\Divinity Original Sin
O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Elaborate Bytes
O43 - CFD: 07/11/2013 - [] D -- C:\Program Files (x86)\Enterbrain
O43 - CFD: 17/10/2013 - [] D -- C:\Program Files (x86)\Foxit Software
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 15/11/2015 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 14/01/2014 - [] D -- C:\Program Files (x86)\HP
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\HP Games
O43 - CFD: 14/01/2014 - [] D -- C:\Program Files (x86)\HP Photo Creations
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\HPConnectedMusic
O43 - CFD: 13/07/2013 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 10/10/2015 - [] D -- C:\Program Files (x86)\MediaFire Desktop
O43 - CFD: 02/04/2014 - [] D -- C:\Program Files (x86)\MicroProse Software
O43 - CFD: 20/09/2014 - [] D -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 27/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 20/09/2014 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 16/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\NortonInstaller
O43 - CFD: 16/10/2013 - [] RD -- C:\Program Files (x86)\Online Services
O43 - CFD: 25/12/2014 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 20/03/2015 - [] D -- C:\Program Files (x86)\PDF Image Extraction Wizard
O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\RayDld =>PUP.Optional.CrossRider
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 28/10/2013 - [] D -- C:\Program Files (x86)\RPG Maker 2003
O43 - CFD: 31/10/2013 - [] D -- C:\Program Files (x86)\RPG Maker XP
O43 - CFD: 02/04/2014 - [] D -- C:\Program Files (x86)\ScummVM
O43 - CFD: 29/10/2013 - [] D -- C:\Program Files (x86)\Slachter City
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\SymSilent
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Texas Instruments Inc
O43 - CFD: 17/06/2015 - [] D -- C:\Program Files (x86)\Top Password
O43 - CFD: 21/10/2013 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\WildGames
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\WildTangent Games
O43 - CFD: 31/10/2013 - [] D -- C:\Program Files (x86)\WinAce
O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 15/10/2014 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 28/10/2013 - [] D -- C:\Program Files (x86)\Yume Team
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 13/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 13/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 29/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brain Workshop
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Civilization II Ultimate Classic Collection
O43 - CFD: 23/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClamWin Antivirus
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Divinity Original Sin
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
O43 - CFD: 24/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 15/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 15/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 15/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO2Disc
O43 - CFD: 27/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ludopret
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 14/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 06/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
O43 - CFD: 14/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
O43 - CFD: 25/12/2014 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1
O43 - CFD: 20/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Image Extraction Wizard
O43 - CFD: 15/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
O43 - CFD: 15/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker 2000 1.03
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker 2003
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker VX Ace
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker XP
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM
O43 - CFD: 15/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
O43 - CFD: 15/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services
O43 - CFD: 06/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 13/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 24/09/2014 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce
O43 - CFD: 23/06/2015 - [] D -- C:\ProgramData\.clamwin
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\Apple
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 16/10/2013 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 13/01/2014 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 27/09/2015 - [0] D -- C:\ProgramData\eMule
O43 - CFD: 16/10/2013 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 14/01/2014 - [] D -- C:\ProgramData\HP
O43 - CFD: 14/01/2014 - [] D -- C:\ProgramData\HP Photo Creations
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\Intel
O43 - CFD: 30/11/2014 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 02/05/2014 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 14/11/2015 - [] D -- C:\ProgramData\McAfee Security Scan
O43 - CFD: 16/10/2013 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 03/11/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 26/06/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\Microsoft SkyDrive
O43 - CFD: 16/10/2013 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 21/10/2013 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 15/11/2015 - [] D -- C:\ProgramData\Norton
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\Realtek
O43 - CFD: 13/03/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 14/11/2015 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\SoundResearch
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 01/11/2013 - [] D -- C:\ProgramData\Temp
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 14/01/2014 - [] D -- C:\ProgramData\Visan
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 22/09/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 07/11/2013 - [] D -- C:\Program Files (x86)\Common Files\Enterbrain
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 15/11/2015 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 23/06/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\.clamwin
O43 - CFD: 16/10/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Adobe
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\BitTorrent
O43 - CFD: 29/04/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\Brain Workshop
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\charts
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\ClassicShell
O43 - CFD: 27/10/2015 - [0] D -- C:\Users\Karamel\AppData\Roaming\Common
O43 - CFD: 13/01/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\CyberLink
O43 - CFD: 13/01/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 01/11/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Enterbrain
O43 - CFD: 24/10/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Foxit Software
O43 - CFD: 16/10/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Hewlett-Packard
O43 - CFD: 14/01/2014 - [0] D -- C:\Users\Karamel\AppData\Roaming\HpUpdate
O43 - CFD: 15/10/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\Identities
O43 - CFD: 16/10/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Macromedia
O43 - CFD: 30/11/2014 - [0] D -- C:\Users\Karamel\AppData\Roaming\Malwarebytes
O43 - CFD: 25/09/2015 - [] SD -- C:\Users\Karamel\AppData\Roaming\Microsoft
O43 - CFD: 21/10/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Mozilla
O43 - CFD: 25/12/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\OpenOffice
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\Opera Software
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\PqSaIJIq
O43 - CFD: 02/04/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\ScummVM
O43 - CFD: 23/10/2015 - [0] D -- C:\Users\Karamel\AppData\Roaming\Store =>PUP.Optional.Nosibay
O43 - CFD: 16/11/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\vlc
O43 - CFD: 17/11/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\ZHP
O43 - CFD: 03/07/2015 - [0] D -- C:\Users\Karamel\AppData\Local\Adobe
O43 - CFD: 15/10/2014 - [0] SHD -- C:\Users\Karamel\AppData\Local\Application Data
O43 - CFD: 18/06/2015 - [] D -- C:\Users\Karamel\AppData\Local\Apps
O43 - CFD: 15/10/2014 - [] D -- C:\Users\Karamel\AppData\Local\assembly
O43 - CFD: 15/11/2015 - [] D -- C:\Users\Karamel\AppData\Local\CrashDumps
O43 - CFD: 23/10/2015 - [] D -- C:\Users\Karamel\AppData\Local\cu
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Karamel\AppData\Local\Diagnostics
O43 - CFD: 03/11/2015 - [] D -- C:\Users\Karamel\AppData\Local\ElevatedDiagnostics
O43 - CFD: 23/10/2015 - [0] SHD -- C:\Users\Karamel\AppData\Local\EmieBrowserModeList
O43 - CFD: 23/10/2015 - [0] SHD -- C:\Users\Karamel\AppData\Local\EmieSiteList
O43 - CFD: 23/10/2015 - [0] SHD -- C:\Users\Karamel\AppData\Local\EmieUserList
O43 - CFD: 23/10/2015 - [] D -- C:\Users\Karamel\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 15/11/2015 - [] D -- C:\Users\Karamel\AppData\Local\Google
O43 - CFD: 03/06/2015 - [] D -- C:\Users\Karamel\AppData\Local\GWX
O43 - CFD: 16/10/2013 - [] D -- C:\Users\Karamel\AppData\Local\Hewlett-Packard
O43 - CFD: 15/10/2014 - [0] SHD -- C:\Users\Karamel\AppData\Local\Historique
O43 - CFD: 14/01/2014 - [] D -- C:\Users\Karamel\AppData\Local\HP
O43 - CFD: 23/10/2015 - [] D -- C:\Users\Karamel\AppData\Local\Installer =>PUP.Optional.InstallPedia
O43 - CFD: 21/10/2013 - [] D -- C:\Users\Karamel\AppData\Local\Macromedia
O43 - CFD: 10/10/2015 - [] D -- C:\Users\Karamel\AppData\Local\MediaFire Desktop
O43 - CFD: 26/06/2015 - [] D -- C:\Users\Karamel\AppData\Local\Microsoft
O43 - CFD: 18/12/2014 - [] D -- C:\Users\Karamel\AppData\Local\Microsoft Help
O43 - CFD: 01/11/2013 - [] D -- C:\Users\Karamel\AppData\Local\Mozilla
O43 - CFD: 26/01/2014 - [] D -- C:\Users\Karamel\AppData\Local\NPE
O43 - CFD: 23/10/2015 - [] D -- C:\Users\Karamel\AppData\Local\Opera Software
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Karamel\AppData\Local\Packages
O43 - CFD: 16/10/2013 - [] D -- C:\Users\Karamel\AppData\Local\Power2Go8
O43 - CFD: 30/10/2013 - [] D -- C:\Users\Karamel\AppData\Local\Programs
O43 - CFD: 23/10/2015 - [0] D -- C:\Users\Karamel\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
O43 - CFD: 17/11/2015 - [] D -- C:\Users\Karamel\AppData\Local\Temp
O43 - CFD: 23/10/2015 - [0] D -- C:\Users\Karamel\AppData\Local\Tempfolder
O43 - CFD: 15/10/2014 - [0] SHD -- C:\Users\Karamel\AppData\Local\Temporary Internet Files
O43 - CFD: 06/07/2015 - [] D -- C:\Users\Karamel\AppData\Local\ude
O43 - CFD: 02/04/2014 - [] D -- C:\Users\Karamel\AppData\Local\VirtualStore
O43 - CFD: 22/06/2015 - [] D -- C:\Users\Karamel\AppData\Local\Windows Live
O43 - CFD: 15/10/2014 - [] RD -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 14/11/2015 - [] RD -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 22/08/2013 - [] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 10/10/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaFire Desktop
O43 - CFD: 18/06/2015 - [] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outil de téléchargement USB DVD Windows 7
O43 - CFD: 29/10/2013 - [0] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RPG Maker 2000 1.03
O43 - CFD: 28/10/2013 - [0] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RPG Maker 2003
O43 - CFD: 15/10/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slachter City
O43 - CFD: 14/11/2015 - [] RD -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 15/10/2014 - [] RD -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 15/10/2014 - [] D -- C:\Users\Karamel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Bloody Story of a Black Dressed Autistic

---\\ Derniers fichiers créés dans Windows Prefetcher (14) - 18s
O45 - LFCP:[MD5.BF6B8BA30BDB68C156222A4F49E28B9F] 23/10/2015 A -- C:\WINDOWS\Prefetch\62793.WINDAPP.MON001.NO.EXE-23091145.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.C5C153BAC89219F192208966520E7AAB] 23/10/2015 A -- C:\WINDOWS\Prefetch\BOXORE_SOFT_PARTNER.TMP-759BD100.pf =>PUP.Optional.Boxore
O45 - LFCP:[MD5.0E1FDCE7700969D10552E8FB12A13D16] 23/10/2015 A -- C:\WINDOWS\Prefetch\BOXORE_SOFT_PARTNER.TMP-A690A876.pf =>PUP.Optional.Boxore
O45 - LFCP:[MD5.99091B9D15BF67CC01521B618ACC8A9A] 23/10/2015 A -- C:\WINDOWS\Prefetch\BUBBLE DOCK UNINSTALL.EXE-2CCA22AA.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.8027B800EB61D3F71D3721E5F622F908] 23/10/2015 A -- C:\WINDOWS\Prefetch\BUBBLE DOCK UNINSTALL.EXE-99C48AC1.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.1691615FBC3266FF9615FA454DD9D4AB] 23/10/2015 A -- C:\WINDOWS\Prefetch\BUBBLE DOCK.EXE-11F3E80F.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.B5A5C8A1487F5B34939814D435D57768] 23/10/2015 A -- C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-D2ED1666.pf =>PUP.Optional.GlobalUpdate
O45 - LFCP:[MD5.88968DED5FE8907D08D87FFDE07583B0] 23/10/2015 A -- C:\WINDOWS\Prefetch\MOVIEDEA.EXE-E43C8CF7.pf =>PUP.Optional.MovieDea
O45 - LFCP:[MD5.6C3BF86D4F269E819C64C8FC19E60028] 23/10/2015 A -- C:\WINDOWS\Prefetch\PACKAGE_BOXORE_INSTALLER_MULT-3A302EF5.pf =>PUP.Optional.Boxore
O45 - LFCP:[MD5.41C25FE3DF559E0C6E3D0942E5ADA7FC] 23/10/2015 A -- C:\WINDOWS\Prefetch\PACKAGE_BOXORE_INSTALLER_MULT-6E18EC4A.pf =>PUP.Optional.Boxore
O45 - LFCP:[MD5.CB2DA2EF1A096AD12F649A64F1110620] 23/10/2015 A -- C:\WINDOWS\Prefetch\PACKAGE_BUBBLESOUND_INSTALLER-18745996.pf =>PUP.Optional.BubbleSound
O45 - LFCP:[MD5.216E64C8C237CB6CC0CF22B48F13E5B0] 23/10/2015 A -- C:\WINDOWS\Prefetch\PACKAGE_PCROSSBROWSER_INSTALL-25AA84B3.pf =>PUP.Optional.CrossBrowser
O45 - LFCP:[MD5.8083528EDFB4BFA06EB797F2FA624581] 23/10/2015 A -- C:\WINDOWS\Prefetch\PREDM.TMP-A0BE8B2A.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.8AE01D49DBECDE7D45CA3027F76F7F99] 23/10/2015 A -- C:\WINDOWS\Prefetch\UPMBOT_FR_014010123.EXE-561D08E7.pf =>PUP.Optional.CrossRider

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 1s
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll ©
O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer32.dll ©

---\\ Liste des pilotes du système (49) - 9s
O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] ©
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] ©
O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] ©
O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] ©
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] ©
O58 - SDL:2013/08/13 00:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2012/06/25 10:24:50 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [92536] ©
O58 - SDL:2012/05/29 15:53:30 A . (.Windows (R) Codename Longhorn DDK provider - hpvhd 64bit support driver.) -- C:\WINDOWS\System32\drivers\cpqdfw.sys [27456] ©
O58 - SDL:2013/03/04 13:24:27 A . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys [40344] ©
O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] ©
O58 - SDL:2012/07/18 09:46:20 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] ©
O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] ©
O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] ©
O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] ©
O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2013/10/21 10:53:00 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4187648] ©
O58 - SDL:2013/10/03 22:44:05 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [39320] ©
O58 - SDL:2013/10/03 22:44:05 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] ©
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] ©
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] ©
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] ©
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2015/10/05 08:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] ©
O58 - SDL:2015/10/05 08:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] ©
O58 - SDL:2015/11/03 11:52:45 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] ©
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] ©
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2015/09/16 22:28:28 A . (.Windows (R) Win 7 DDK provider - Scanner Filter.) -- C:\WINDOWS\System32\drivers\mfmonitor_x64.sys [20696] ©
O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2015/10/05 08:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] ©
O58 - SDL:2013/12/04 10:02:30 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2505904] ©
O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] ©
O58 - SDL:2013/06/18 15:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] ©
O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2012/10/25 03:18:48 A . (.IDT, Inc. - IDT PC Audio.) -- C:\WINDOWS\System32\drivers\stwrt64.sys [543744] ©
O58 - SDL:2012/11/20 18:49:26 A . (.Texas Instruments, Inc. - Lower Filter Driver for TI TUSB73x0 USB3.0.) -- C:\WINDOWS\System32\drivers\TIxHCIlfilter.sys [17528]
O58 - SDL:2012/11/20 18:49:26 A . (.Texas Instruments, Inc. - Upper Filter Driver for TI TUSB73x0 USB3.0.) -- C:\WINDOWS\System32\drivers\TIxHCIufilter.sys [23184]
O58 - SDL:2015/11/02 14:07:32 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064]
O58 - SDL:2013/07/24 16:02:55 A . (.Elaborate Bytes AG - Virtual CloneDrive storage miniport.) -- C:\WINDOWS\System32\drivers\VClone.sys [34816] ©
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] ©
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] ©
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (8) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (2) - 2s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/

---\\ Enumère les fichiers Crack & Keygen (10) - 154s
O82 - LFC: 2013/11/01 04:51:24 A . (...) -- C:\Users\Karamel\Downloads\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG.rar [0] =>.Crack,Keygen
O82 - LFC: 2012/04/09 10:26:01 A . (...) -- C:\Users\Karamel\Documents\RPGVXAce\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4-maaar.rar [10240000] =>.Crack,Keygen
O82 - LFC: 2013/10/31 16:48:27 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG.rar [234935096] =>.Crack,Keygen
O82 - LFC: 2012/04/09 10:26:01 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4-maaar.rar [10240000] =>.Crack,Keygen
O82 - LFC: 2002/02/02 02:02:02 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4cg-rpgmakersetup-1.bin [0] =>.Crack,Keygen
O82 - LFC: 2002/02/02 02:02:02 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4cg-rpgmakersetup-2.bin [0] =>.Crack,Keygen
O82 - LFC: 2002/02/02 02:02:02 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4cg-rpgmakersetup-3.bin [51200000] =>.Crack,Keygen
O82 - LFC: 2002/02/02 02:02:02 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4cg-rpgmakersetup-4.bin [51200000] =>.Crack,Keygen
O82 - LFC: 2002/02/02 02:02:02 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4cg-rpgmakersetup-5.bin [32122817] =>.Crack,Keygen
O82 - LFC: 2002/02/02 02:02:02 A . (...) -- C:\Users\Karamel\Documents\Rpgmaker\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\RPG.Maker.VX.Ace.v1.01a.Cracked-F4CG\f4cg-rpgmakersetup.exe [417311] =>.Crack,Keygen

---\\ Enumère les services démarrés par Svchost (34) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [329216] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1084416] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31744] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1265152] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [230400] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [71168] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [228864] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [101376] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1639424] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [166400] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73728] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3705344] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] ©

---\\ Liste des exceptions du parefeu Windows (16) - 4s
O87 - FAEL: "UDP Query User{06D00A4F-32E6-4B75-894D-C4B14AE31FD9}C:\users\karamel\downloads\bittorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\karamel\downloads\bittorrent.exe
O87 - FAEL: "TCP Query User{AFDF6B2E-F64F-4F98-9952-BE6730850E1B}C:\users\karamel\downloads\bittorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\karamel\downloads\bittorrent.exe
O87 - FAEL: "UDP Query User{431DC9C7-6D57-4C8D-AB37-8448EF32CE57}C:\program files (x86)\divinity original sin\shipping\eocapp.exe" [In-None-P17-TRUE] .(.Larian Studios - Copyright (C) 2013 - Divinity Original Sin.) -- C:\program files (x86)\divinity original sin\shipping\eocapp.exe
O87 - FAEL: "TCP Query User{0782741D-C043-4FD5-A07F-80C374C63E2E}C:\program files (x86)\divinity original sin\shipping\eocapp.exe" [In-None-P6-TRUE] .(.Larian Studios - Copyright (C) 2013 - Divinity Original Sin.) -- C:\program files (x86)\divinity original sin\shipping\eocapp.exe
O87 - FAEL: "{470E512B-3810-429A-85DF-5D7EE501A4F6}" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\Karamel\AppData\Roaming\BitTorrent\BitTorrent.exe
O87 - FAEL: "{C222308D-EC39-4937-8316-EEA7DF811E00}" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\Karamel\AppData\Roaming\BitTorrent\BitTorrent.exe
O87 - FAEL: "UDP Query User{AAC82BC2-0B77-4C27-88A1-61337DD39D5B}C:\users\karamel\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\karamel\appdata\roaming\bittorrent\bittorrent.exe
O87 - FAEL: "TCP Query User{201A0CA4-3FB9-4B37-9CB3-2CBEC014607C}C:\users\karamel\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\karamel\appdata\roaming\bittorrent\bittorrent.exe
O87 - FAEL: "{BFA7D591-025A-400D-86B2-897485CFD817}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\eSafe\eGdpSvc.exe (.not file.)
O87 - FAEL: "{83645EEC-AFA7-469B-82FD-C7E8F088E604}" [In-None-P6-TRUE] .(...) -- C:\Users\Administrator\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (.not file.)
O87 - FAEL: "{A6F56E4C-C818-4812-991E-7099A856A38E}" [In-None-P17-TRUE] .(...) -- C:\Users\Karamel\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (.not file.)
O87 - FAEL: "TCP Query User{4CC5B55F-04A4-40C3-947D-87E6B4CFD212}C:\program files (x86)\emule\emule.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\emule\emule.exe (.not file.)
O87 - FAEL: "UDP Query User{92FF059E-8155-439D-8991-5E5850794B10}C:\program files (x86)\emule\emule.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\emule\emule.exe (.not file.)
O87 - FAEL: "{9ACB47B8-CF89-4B60-8925-702FA61C30B3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Max Driver Updater\maxdu.exe (.not file.) =>PUP.Optional.MaxDriverUpdater
O87 - FAEL: "{641446AA-AC6F-49D9-BB1D-5B6B9210BEC8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\MediaStreamingAgent\MediaStreamingAgent\Node.exe (.not file.) =>PUP.Optional.Boxore
O87 - FAEL: "{560979BE-04C9-4DFA-8F6E-D94FE4BEF82E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\MyBrowser\MyBrowser\Application\mybrowser.exe (.not file.)

---\\ Enumère les codes produits des logiciels (1) - 2s
O90 - PUC: "169E1F940E77D14419E7F9398810CBAD" . (.Media Streaming Agent.) -- C:\WINDOWS\Installer\{49F1E961-77E0-441D-917E-9F938801BCDA}\MediaStreamingAgent.ico =>PUP.Optional.Boxore

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (20) - 13s

SS - Demand [17/10/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [30/08/2011] [ 462184] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe ©
SS - Demand [21/10/2013] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe ©
SS - Demand [12/10/2010] [ 206072] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe ©
SR - Auto [27/09/2012] [ 86528] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe ©
SR - Auto [12/10/2012] [ 35744] HP Connected Remote Service (HPConnectedRemote) . (.Hewlett-Packard.) - c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe ©
SS - Demand [10/08/2012] [ 1001376] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe ©
SR - Auto [20/04/2012] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SR - Auto [18/07/2012] [ 128896] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ©
SR - Auto [18/07/2012] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SS - Auto [18/07/2012] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Auto [05/10/2015] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe ©
SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe ©
SS - Demand [31/07/2015] [ 289256] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe ©
SS - Demand [16/09/2015] [ 210416] MediaFire Desktop Updater Service (MediaFire Desktop Updater Service) . (...) - C:\Program Files (x86)\MediaFire Desktop\bin\UpdaterLocalCOM.exe
SR - Auto [16/09/2015] [ 456176] MediaFire NTFS Monitor (MF NTFS Monitor) . (...) - C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe
SS - Demand [16/10/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SR - Auto [25/10/2012] [ 327680] @C:\WINDOWS\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv64.exe ©
SS - Auto [18/07/2012] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Scan Additionnel (33) - 0s
C:\WINDOWS\system32\Rhpoijbe64.dll =>Hijacker.Winsock
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{49F1E961-77E0-441D-917E-9F938801BCDA} =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\MediaStreamingAgent =>PUP.Optional.Boxore
HKLM\SOFTWARE\Wow6432Node\SearchModule =>PUP.Optional.SearchModule
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\WTools =>PUP.Optional.Nosibay
C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\RayDld =>PUP.Optional.CrossRider
C:\Users\Karamel\AppData\Roaming\Store =>PUP.Optional.Nosibay
C:\Users\Karamel\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\Karamel\AppData\Local\Installer =>PUP.Optional.InstallPedia
C:\Users\Karamel\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\62793.WINDAPP.MON001.NO.EXE-23091145.pf =>PUP.Optional.Nosibay
C:\WINDOWS\Prefetch\BOXORE_SOFT_PARTNER.TMP-759BD100.pf =>PUP.Optional.Boxore
C:\WINDOWS\Prefetch\BOXORE_SOFT_PARTNER.TMP-A690A876.pf =>PUP.Optional.Boxore
C:\WINDOWS\Prefetch\BUBBLE DOCK UNINSTALL.EXE-2CCA22AA.pf =>PUP.Optional.BubbleDock
C:\WINDOWS\Prefetch\BUBBLE DOCK UNINSTALL.EXE-99C48AC1.pf =>PUP.Optional.BubbleDock
C:\WINDOWS\Prefetch\BUBBLE DOCK.EXE-11F3E80F.pf =>PUP.Optional.BubbleDock
C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-D2ED1666.pf =>PUP.Optional.GlobalUpdate
C:\WINDOWS\Prefetch\MOVIEDEA.EXE-E43C8CF7.pf =>PUP.Optional.MovieDea
C:\WINDOWS\Prefetch\PACKAGE_BOXORE_INSTALLER_MULT-3A302EF5.pf =>PUP.Optional.Boxore
C:\WINDOWS\Prefetch\PACKAGE_BOXORE_INSTALLER_MULT-6E18EC4A.pf =>PUP.Optional.Boxore
C:\WINDOWS\Prefetch\PACKAGE_BUBBLESOUND_INSTALLER-18745996.pf =>PUP.Optional.BubbleSound
C:\WINDOWS\Prefetch\PACKAGE_PCROSSBROWSER_INSTALL-25AA84B3.pf =>PUP.Optional.CrossBrowser
C:\WINDOWS\Prefetch\PREDM.TMP-A0BE8B2A.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\UPMBOT_FR_014010123.EXE-561D08E7.pf =>PUP.Optional.CrossRider
C:\WINDOWS\Installer\{49F1E961-77E0-441D-917E-9F938801BCDA}\MediaStreamingAgent.ico =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\169E1F940E77D14419E7F9398810CBAD =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Features\169E1F940E77D14419E7F9398810CBAD =>PUP.Optional.Boxore

---\\ Récapitulatif des éléments trouvées sur votre station (17) - 0s
http://www.nicolascoolman.fr/blog =>Hijacker.DNS.Hosts
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchModule
http://www.nicolascoolman.fr/pup-optional-dailypcclean/ =>PUP.Optional.DailyPCClean
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxComputerCleaner
http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/adware-installpedia/ =>PUP.Optional.InstallPedia
http://www.nicolascoolman.fr/pup-smartwebsearch/ =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock
http://www.nicolascoolman.fr/blog =>PUP.Optional.MovieDea
http://www.nicolascoolman.fr/blog =>PUP.Optional.BubbleSound
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowser
http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware
http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxDriverUpdater

~ End of the scan, 45545 items in 332 seconds (852)(10)

Publicité


Signaler le contenu de ce document

Publicité