cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.9.182 Par Nicolas Coolman (2015/12/09)
~ Démarré par Lucie (Administrator) (2015/12/10 17:57:00)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Lucie\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Lucie\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows VISTA, 32-bit Service Pack 2 (Build 6002)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v8.0.6001.19705

---\\ Informations sur les produits Windows (4) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (4) - 11s
Avast Free Antivirus v10.2.2218
Microsoft Security Client v4.8.0204.0
Microsoft Security Essentials v4.8.204.0
Windows Defender VISTA (Deactivate)

---\\ Logiciels d'optimisation (1) - 11s
CCleaner v5.12

---\\ Surveillance de Logiciels (2) - 11s
Adobe Flash Player 19 NPAPI
Adobe Reader X

---\\ Logiciels de partage P2P (1) - 12s
µTorrent v3.1.3

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2024.728 MB (42% free)
System Restore: Activé (Enable)
System drive C: has 18 GB () free of 142 GB =>Alerte espace disque inférieur à 20 Go

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-LUCIE
~ User Name: Lucie
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 18 GB free of 142 GB (System)
~ Drive F: has 0 GB free of 7 GB

---\\ Etat du Centre de Sécurité Windows (13) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 1s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] ©
[MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] ©
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] ©
[MD5.065A47FB8EC11003D7BD57F5954B1E3C] - 10/11/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [916992] ©
[MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] ©
[MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] ©
[MD5.95F5FF73B076576C41740F1A842B9B57] - 21/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] ©
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] {6101E1A1000000000008} ©
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] ©
[MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] ©
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] ©
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] ©
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] ©
[MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] ©
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] ©
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] ©
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] {330000001B1C4C5C7BD3FF112B00000000001B} ©
[MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] ©
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] ©
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248832] ©
[MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] ©
[MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] ©
[MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] {6105DD42000000000014} ©

---\\ Liste des services NT non Microsoft et non désactivés (11) - 3s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Apache2.4 (Apache2.4) . (.Apache Software Foundation - Apache HTTP Server.) - c:\xampp\apache\bin\httpd.exe ©
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe ©
O23 - Service: Empowering Technology Service (ETService) . (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) - C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe ©
O23 - Service: @C:\Windows\system32\msimsg.dll,-27 (msiserver) . (...) - C:\Windows\system32\msiexec /V (.not file.)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe {2E84F8C9C74824E255573C054D2E159F} ©
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo.exe =>.CyberLink®

---\\ Tâches planifiées en automatique (20) - 25s
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] =>.Adobe Systems, Incorporated®
[MD5.C6D147C12C424373B016C0AB0A6C61EB] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269000] =>.Adobe Systems Incorporated®
[MD5.FAAE091936E04BDE3B6041AB5C16BC7B] [APT] [avast! Emergency Update] (.Avast Software s.r.o..) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1298776] =>.AVAST Software a.s.®
[MD5.5C35525CEBE7B59FAFA05D5E98D7EDEF] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6602152] =>.Piriform Ltd®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000Core] (.Google Inc..) -- C:\Users\Lucie\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000UA] (.Google Inc..) -- C:\Users\Lucie\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.DC6BA5A595B1DA5568B6993604CB4B02] [APT] [WIN-statsAdmin] (.©1999-2013 Jonathan Bennett & AutoIt Team.) -- C:\Users\Lucie\AppData\Local\Microsoft\WinU\~akgpalq.exe [498176]
[MD5.00000000000000000000000000000000] [APT] [WIN-statsSystem] (...) -- C:\Users\Lucie\AppData\Local\Microsoft\WinU\~sqqfemx.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] =>.Apple Inc.®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000Core - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000Core.job [1026] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000UA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000UA.job [1078] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854] ©
O39 - APT: avast! Emergency Update - (.Avast Software s.r.o..) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] ©
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2796] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000Core - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000Core [3566] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000UA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1935484880-281569459-2122205118-1000UA [3962] ©
O39 - APT: WIN-statsAdmin - (.©1999-2013 Jonathan Bennett & AutoIt Team.) -- C:\Windows\System32\Tasks\WIN-statsAdmin [3306]
O39 - APT: WIN-statsSystem - (...) -- C:\Windows\System32\Tasks\WIN-statsSystem [3236]

---\\ Processus lancés (9) - 15s
[MD5.2467E63FC4F5831898A57FA3482EAFD5] - (.Apache Software Foundation - Apache HTTP Server.) -- c:\xampp\apache\bin\httpd.exe [22016] [PID.1084] ©
[MD5.09E6AFFAE6C0E9158BF05C7D08D0107A] - (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [16384] [PID.2144] ©
[MD5.50F85FE43AF859330CC9515353EF300C] - (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE [2516296] [PID.2492] {442F9C58B61E1D9833719F449E43668A} ©
[MD5.3B78ACCCAA5132638E7CF419F4A965C7] - (.CANON INC. - Canon Solution Menu EX.) -- C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112] [PID.2504] {442F9C58B61E1D9833719F449E43668A} ©
[MD5.2467E63FC4F5831898A57FA3482EAFD5] - (.Apache Software Foundation - Apache HTTP Server.) -- C:\xampp\apache\bin\httpd.exe [22016] [PID.2628] ©
[MD5.793FF718477345CD5D232C50BED1E452] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2740] ©
[MD5.CB76F68BA0D57C5D25B538981B1C611C] - (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [50424] [PID.3644] {2E84F8C9C74824E255573C054D2E159F} ©
[MD5.DF1C10A75DF7E50195FC417F88A33227] - (...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072] [PID.3708]
[MD5.49DDDD96ACB05E1DCC21A00D9D440BD0] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Lucie\AppData\Roaming\ZHP\ZHPDiag3.exe [2003456] [PID.5512] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (10) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] __MSG_extName__
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 1s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_19_0_0_185.dll ©
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (7) - 0s
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll {15C98A3198BD4CBAEEC5A7E74A14A8F6} ©
O2 - BHO: (no name) - {70C53538-9F82-42BC-A327-74F7A46E700C} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.®
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Applications lancées au démarrage du système (10) - 4s
O4 - HKLM\..\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.®
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.®
O4 - HKLM\..\Run: [CanonMyPrinter] . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE {442F9C58B61E1D9833719F449E43668A} ©
O4 - HKLM\..\Run: [CanonSolutionMenuEx] . (.CANON INC. - Canon Solution Menu EX.) -- C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE {442F9C58B61E1D9833719F449E43668A} ©
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKCU\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe =>.FRANCE TELECOM®
O4 - HKCU\..\Run: [orangeinside] . (...) -- C:\Users\Lucie\AppData\Roaming\Orange\OrangeInside\two\OrangeInside.exe
O4 - HKUS\S-1-5-21-1935484880-281569459-2122205118-1000\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe =>.FRANCE TELECOM®
O4 - HKUS\S-1-5-21-1935484880-281569459-2122205118-1000\..\Run: [orangeinside] . (...) -- C:\Users\Lucie\AppData\Roaming\Orange\OrangeInside\two\OrangeInside.exe

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (29) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Enumère les données de BootExecute (1) - 0s
O34 - HKLM BootExecute: (sasnative32)

---\\ Logiciels installés (98) - 27s
O42 - Logiciel: µTorrent - (...) [HKLM] -- uTorrent
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Reader X (10.1.16) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824161310} ©
O42 - Logiciel: Age Of Empire II HD The Forgotten - (.AUAmrrraou01.) [HKLM] -- {4D8FE2DC-EB5C-4541-8389-BBAED2355AB5}
O42 - Logiciel: Age of Empires II HD Edition version 2.8.994.0 - (.Microsoft Studios.) [HKLM] -- {177E6B20-CCA4-48C4-9DE8-DE2D800A9BC0}_is1
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} ©
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {308B6AEA-DE50-4666-996D-0FA461719D6B} ©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast ©
O42 - Logiciel: Brothers In Arms - (.Ubisoft.) [HKLM] -- BrothersInArms ©
O42 - Logiciel: Caesar 3 - (...) [HKLM] -- Caesar 3
O42 - Logiciel: Caesar IV - (.Tilted Mill Entertainment.) [HKLM] -- {B7666229-351B-47D9-AA6F-DF777CF04BBF}
O42 - Logiciel: Canon Easy-PhotoPrint EX - (...) [HKLM] -- Easy-PhotoPrint EX
O42 - Logiciel: Canon Easy-WebPrint EX - (...) [HKLM] -- Easy-WebPrint EX
O42 - Logiciel: Canon IJ Network Tool - (...) [HKLM] -- Canon_IJ_Network_UTILITY
O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (...) [HKLM] -- CANONIJPLM100
O42 - Logiciel: Canon MP Navigator EX 4.0 - (...) [HKLM] -- MP Navigator EX 4.0
O42 - Logiciel: Canon MP280 series MP Drivers - (...) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP280_series
O42 - Logiciel: Canon My Printer - (...) [HKLM] -- CanonMyPrinter
O42 - Logiciel: Canon Solution Menu EX - (...) [HKLM] -- CanonSolutionMenuEX
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner ©
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} ©
O42 - Logiciel: cspep.0 - (.cspep.) [HKLM] -- cspep_is1
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite ©
O42 - Logiciel: Diacamma - (...) [HKLM] -- Lucterios
O42 - Logiciel: EAX Unified - (...) [HKLM] -- EAX Unified
O42 - Logiciel: eMachines - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11019760} ©
O42 - Logiciel: eMachines Recovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} ©
O42 - Logiciel: eMachines ScreenSaver - (.Acer Incorporated.) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} ©
O42 - Logiciel: Enregistrement utilisateur de Canon MP280 series - (...) [HKLM] -- Enregistrement utilisateur de Canon MP280 series
O42 - Logiciel: F-16: Aggressor - (...) [HKLM] -- F-16: Aggressor
O42 - Logiciel: fix version 1.0.0.0 - (...) [HKLM] -- {ACA88935-7188-47AD-B220-B50106DC0D9C}_is1
O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU] -- GameRanger ©
O42 - Logiciel: GearDrvs - (.GEAR Software.) [HKLM] -- {CB84F0F2-927B-458D-9DC5-87832E3DC653} ©
O42 - Logiciel: GearDrvs - (.Symantec Corporation.) [HKLM] -- {206FD69B-F9FE-4164-81BD-D52552BC9C23} ©
O42 - Logiciel: GoGear SA018 Device Manager - (.Philips.) [HKLM] -- {DC19A2BC-9698-430E-AD50-456B837B1BCD} ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome ©
O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop ©
O42 - Logiciel: inSSIDer - (.MetaGeek.) [HKLM] -- {45642795-567E-4B46-85E7-5CDBC8B2F697} ©
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI ©
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {881F5DE8-9367-4B81-A325-E91BBC6472F9} ©
O42 - Logiciel: Java 7 Update 80 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F03217080FF} ©
O42 - Logiciel: Java Auto Updater - (.Oracle, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} ©
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} ©
O42 - Logiciel: L&H TTS3000 Français - (...) [HKLM] -- LHTTSFRF
O42 - Logiciel: Launch Manager - (...) [HKLM] -- LManager
O42 - Logiciel: LG CyberLink LabelPrint - (.CyberLink Corp..) [HKLM] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: LG CyberLink LabelPrint - (.CyberLink Corp..) [HKLM] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: LG CyberLink Power2Go - (.CyberLink Corp..) [HKLM] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: LG CyberLink Power2Go - (.CyberLink Corp..) [HKLM] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: LG CyberLink PowerBackup - (.CyberLink Corp..) [HKLM] -- {ADD5DB49-72CF-11D8-9D75-000129760D75} ©
O42 - Logiciel: LG CyberLink PowerDVD - (.CyberLink Corp..) [HKLM] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} ©
O42 - Logiciel: LG CyberLink PowerDVD - (.CyberLink Corp..) [HKLM] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} ©
O42 - Logiciel: LG CyberLink PowerProducer - (.CyberLink Corp..) [HKLM] -- {B7A0CE06-068E-11D6-97FD-0050BACBF861} ©
O42 - Logiciel: LG CyberLink PowerProducer - (.CyberLink Corp..) [HKLM] -- InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861} ©
O42 - Logiciel: LG CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: LG CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: LG Power Tools - (.CyberLink Corp..) [HKLM] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: LG Power Tools - (.CyberLink Corp..) [HKLM] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: LightScribe 1.4.142.1 - (.http://www.lightscribe.com.) [HKLM] -- {CE386A4E-D0DA-4208-8235-BCE43275C694}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} ©
O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8} ©
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {6E3939AE-9996-4D07-9A30-14C78AE93576} ©
O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825} ©
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: MSXML4 Parser - (.Microsoft Game Studios.) [HKLM] -- {01501EBA-EC35-4F9F-8889-3BE346E5DA13} ©
O42 - Logiciel: MySQL Connector/ODBC 3.51 - (.MySQL AB.) [HKLM] -- {0CB3C535-1171-4A20-B549-E2CB5DEB9723} ©
O42 - Logiciel: Nokia Connectivity Cable Driver - (...) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}
O42 - Logiciel: Notification Mail - (.Orange.) [HKLM] -- MailNotifier ©
O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403} ©
O42 - Logiciel: NTI Backup Now Standard - (.NewTech Infosystems.) [HKLM] -- {12EFA1A4-AC3B-443C-8143-237EDE760403} ©
O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- {2413930C-8309-47A6-BC61-5EF27A4222BC} ©
O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC} ©
O42 - Logiciel: OpenOffice.org 3.1 - (.OpenOffice.org.) [HKLM] -- {0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6} ©
O42 - Logiciel: Orange Inside - (.Orange.) [HKCU] -- Orange Inside ©
O42 - Logiciel: Orange Installeur version 1.2.1.0 - (.Orange.) [HKLM] -- {D13FE823-C575-4451-AC37-E645A67AA581}_1.2.1.0 ©
O42 - Logiciel: Orange update - (.Orange.) [HKLM] -- OrangeUpdateManager ©
O42 - Logiciel: PDF Creator Packages - (...) [HKCU] -- PDF Creator Packages
O42 - Logiciel: ping version 1 - (...) [HKLM] -- {AF0A2DEF-898C-4FB5-82D2-3AFE8147C81B}_is1
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044} ©
O42 - Logiciel: Realtek 8169 8168 8101E 8102E Ethernet Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA} ©
O42 - Logiciel: Shockwave - (...) [HKLM] -- Shockwave
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey ©
O42 - Logiciel: Utilitaires Sierra - (...) [HKLM] -- Utilitaires Sierra
O42 - Logiciel: VLC media player 2.1.2 - (.VideoLAN.) [HKLM] -- VLC media player ©
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1 ©

---\\ HKCU & HKLM Software Keys (172) - 27s
HKLM\SOFTWARE\Acer
HKLM\SOFTWARE\Acer Incorporated
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\ALWIL Software
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\Blizzard Entertainment
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\Business-in-a-Box
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\ClubdeJeux
HKLM\SOFTWARE\Codemasters
HKLM\SOFTWARE\Compal
HKLM\SOFTWARE\Conexant
HKLM\SOFTWARE\Creative
HKLM\SOFTWARE\CXT
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\Digital River
HKLM\SOFTWARE\DT Soft
HKLM\SOFTWARE\G Data
HKLM\SOFTWARE\Gateway
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GPL Ghostscript
HKLM\SOFTWARE\GSI
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\L&H
HKLM\SOFTWARE\Lake
HKLM\SOFTWARE\LG Electronics
HKLM\SOFTWARE\LightScribe
HKLM\SOFTWARE\Lucterios
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\MoTeC
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\muvee Technologies
HKLM\SOFTWARE\MySQL AB
HKLM\SOFTWARE\New World Computing
HKLM\SOFTWARE\NewTech Infosystems
HKLM\SOFTWARE\Nokia
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OemSetup
HKLM\SOFTWARE\OpenOffice.org
HKLM\SOFTWARE\Orange
HKLM\SOFTWARE\PDF Architect 2
HKLM\SOFTWARE\Philips
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RTLSetup
HKLM\SOFTWARE\SECURITOO
HKLM\SOFTWARE\Sierra
HKLM\SOFTWARE\Sierra On-Line
HKLM\SOFTWARE\Sierra OnLine
HKLM\SOFTWARE\Silicon Graphics
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\Sun Microsystems
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\Tilted Mill Entertainment
HKLM\SOFTWARE\troll
HKLM\SOFTWARE\Trusteer
HKLM\SOFTWARE\Ubisoft
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Voice
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\webtogo
HKLM\SOFTWARE\WholeSecurity
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\WinU
HKLM\SOFTWARE\WOW6432Node
HKLM\SOFTWARE\Yahoo
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\ALWIL Software
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\B-Logiciels
HKCU\SOFTWARE\Battle.net
HKCU\SOFTWARE\Binary Noise
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Business-in-a-Box
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\CanonBJ
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Codemasters Software Ltd
HKCU\SOFTWARE\Compal
HKCU\SOFTWARE\cspep
HKCU\SOFTWARE\Cyanide
HKCU\SOFTWARE\Cyberlink
HKCU\SOFTWARE\DestinyDream
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\G Data
HKCU\SOFTWARE\GameRanger
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\GoldenGate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GSI
HKCU\SOFTWARE\HipSoft
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewTech Infosystems
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opendisc
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\OrangeInside
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\PC SOFT
HKCU\SOFTWARE\PDF Architect
HKCU\SOFTWARE\PDF Architect 2
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PySoft
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Royal Philips
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sony Corporation
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\test
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Trusteer
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Wargaming.net
HKCU\SOFTWARE\Windows Live Writer
HKCU\SOFTWARE\Yahoo
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Canon
HKCU\SOFTWARE\AppDataLow\Software\digitalchocolate
HKCU\SOFTWARE\AppDataLow\Software\Google
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Monitored
HKCU\SOFTWARE\AppDataLow\Software\Orange
HKCU\SOFTWARE\AppDataLow\Software\settings
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contenu des dossiers Programmes (588) - 44s
O43 - CFD: 09/03/2009 - [] D -- C:\Program Files\Acer Incorporated
O43 - CFD: 24/03/2015 - [] D -- C:\Program Files\Active WebCam
O43 - CFD: 29/10/2014 - [] D -- C:\Program Files\Adobe
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\Age of Empire II HD The Forgotten
O43 - CFD: 29/10/2015 - [] D -- C:\Program Files\Age2HD
O43 - CFD: 17/10/2010 - [] D -- C:\Program Files\Alwil Software
O43 - CFD: 26/08/2014 - [0] D -- C:\Program Files\Amazon
O43 - CFD: 19/12/2013 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 16/05/2009 - [] D -- C:\Program Files\Atari
O43 - CFD: 28/06/2015 - [] D -- C:\Program Files\AVAST Software
O43 - CFD: 01/10/2011 - [] D -- C:\Program Files\Black Isle
O43 - CFD: 03/11/2010 - [] D -- C:\Program Files\Business-in-a-Box
O43 - CFD: 10/09/2011 - [] D -- C:\Program Files\Canon
O43 - CFD: 26/10/2010 - [] HD -- C:\Program Files\CanonBJ
O43 - CFD: 10/12/2015 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\Codemasters
O43 - CFD: 28/06/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\Core Design
O43 - CFD: 18/05/2009 - [] D -- C:\Program Files\Creative
O43 - CFD: 31/07/2013 - [] D -- C:\Program Files\cspep
O43 - CFD: 17/08/2012 - [] D -- C:\Program Files\Cyanide
O43 - CFD: 03/11/2010 - [] D -- C:\Program Files\CyberLink
O43 - CFD: 09/07/2012 - [] D -- C:\Program Files\DAEMON Tools Lite
O43 - CFD: 18/09/2009 - [] D -- C:\Program Files\directx
O43 - CFD: 18/05/2009 - [] D -- C:\Program Files\Eidos Interactive
O43 - CFD: 06/05/2009 - [] D -- C:\Program Files\EMACHINES
O43 - CFD: 10/02/2011 - [0] D -- C:\Program Files\eMachines GameZone
O43 - CFD: 06/05/2009 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 15/11/2013 - [0] D -- C:\Program Files\G Data
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\GameSpy Arcade
O43 - CFD: 23/06/2015 - [] D -- C:\Program Files\Google
O43 - CFD: 01/12/2014 - [] D -- C:\Program Files\GPLGS
O43 - CFD: 08/05/2014 - [] D -- C:\Program Files\GSI
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\Heart Of Darkness
O43 - CFD: 14/10/2015 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Intel
O43 - CFD: 10/12/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 13/01/2011 - [] D -- C:\Program Files\iPod
O43 - CFD: 13/01/2011 - [] D -- C:\Program Files\iTunes
O43 - CFD: 28/10/2013 - [] D -- C:\Program Files\Java
O43 - CFD: 11/04/2010 - [] D -- C:\Program Files\JRE
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\L'Amerzone
O43 - CFD: 09/03/2009 - [] D -- C:\Program Files\Launch Manager
O43 - CFD: 10/11/2010 - [] D -- C:\Program Files\lg_fwupdate
O43 - CFD: 21/04/2014 - [] D -- C:\Program Files\MetaGeek
O43 - CFD: 17/08/2012 - [] D -- C:\Program Files\Microsoft Chart Controls
O43 - CFD: 09/04/2015 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 28/08/2011 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Microsoft Office Suite Activation Assistant
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Microsoft Security Client
O43 - CFD: 10/12/2015 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 01/11/2010 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 04/07/2012 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 29/06/2010 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 03/11/2014 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 10/12/2011 - [] D -- C:\Program Files\MSECache
O43 - CFD: 10/09/2009 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\NewTech Infosystems
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Oberon Media
O43 - CFD: 11/04/2010 - [] D -- C:\Program Files\OpenOffice.org 3
O43 - CFD: 10/03/2011 - [] D -- C:\Program Files\Orange
O43 - CFD: 04/07/2012 - [0] D -- C:\Program Files\Paint.NET
O43 - CFD: 09/09/2012 - [] D -- C:\Program Files\PandaPDFConverter
O43 - CFD: 01/12/2014 - [] D -- C:\Program Files\PDF Creator
O43 - CFD: 24/03/2015 - [] D -- C:\Program Files\PDFCreator
O43 - CFD: 19/12/2013 - [] D -- C:\Program Files\QuickTime
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Realtek
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 09/10/2009 - [] D -- C:\Program Files\Securitoo
O43 - CFD: 17/08/2012 - [] D -- C:\Program Files\Sierra
O43 - CFD: 09/07/2012 - [] D -- C:\Program Files\Sierra On-Line
O43 - CFD: 09/03/2009 - [] D -- C:\Program Files\Synaptics
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\Tomb Raider Collection
O43 - CFD: 18/09/2009 - [] D -- C:\Program Files\Ubisoft
O43 - CFD: 03/07/2012 - [] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 29/06/2013 - [] D -- C:\Program Files\uTorrent
O43 - CFD: 11/07/2010 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 14/03/2010 - [] D -- C:\Program Files\Windows Calendar
O43 - CFD: 14/03/2010 - [] D -- C:\Program Files\Windows Collaboration
O43 - CFD: 14/03/2010 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 19/06/2012 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 12/04/2012 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 11/06/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 06/05/2009 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 14/03/2010 - [] D -- C:\Program Files\Windows Photo Gallery
O43 - CFD: 16/03/2010 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 14/03/2010 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 06/11/2010 - [] D -- C:\Program Files\Yahoo!
O43 - CFD: 13/11/2014 - [] D -- C:\Program Files\ZHPDiag
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\ZHPFix
O43 - CFD: 25/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 25/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age Of Empire II HD The Forgotten
O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Empires II HD Edition
O43 - CFD: 28/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 10/02/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities
O43 - CFD: 10/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP280 series
O43 - CFD: 10/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP280 series Manual
O43 - CFD: 03/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP495 series Manual
O43 - CFD: 10/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
O43 - CFD: 10/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 09/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 09/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines
O43 - CFD: 28/08/2008 - [] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines Documentation
O43 - CFD: 28/08/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines GameZone
O43 - CFD: 10/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MP280 series
O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 25/04/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 25/10/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
O43 - CFD: 10/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Desktop
O43 - CFD: 08/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GSI
O43 - CFD: 25/10/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heart Of Darkness
O43 - CFD: 13/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 28/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 09/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
O43 - CFD: 03/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Power Tools
O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 15/05/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 10/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 28/08/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5
O43 - CFD: 28/08/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8
O43 - CFD: 11/04/2010 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.1
O43 - CFD: 04/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange
O43 - CFD: 03/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils LG
O43 - CFD: 27/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils PC SOFT
O43 - CFD: 06/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Philips Digital Audio Player
O43 - CFD: 25/05/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 04/07/2012 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PY Software
O43 - CFD: 19/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 14/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
O43 - CFD: 10/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubi Soft Games
O43 - CFD: 08/07/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 18/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 19/06/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 28/08/2008 - [] D -- C:\ProgramData\Acer
O43 - CFD: 29/10/2014 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 28/10/2009 - [] D -- C:\ProgramData\Age of Empires 3 XPack Trial
O43 - CFD: 17/10/2010 - [] D -- C:\ProgramData\Alwil Software
O43 - CFD: 13/01/2011 - [] D -- C:\ProgramData\Apple
O43 - CFD: 13/01/2011 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 06/05/2009 - [] D -- C:\ProgramData\Application Data
O43 - CFD: 12/08/2010 - [] D -- C:\ProgramData\Arcade Lab
O43 - CFD: 22/11/2014 - [] D -- C:\ProgramData\atjs
O43 - CFD: 28/06/2015 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 06/05/2009 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 10/02/2011 - [0] D -- C:\ProgramData\Canon IJ Network Tool
O43 - CFD: 14/10/2010 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 03/11/2010 - [0] HD -- C:\ProgramData\CanonEPP
O43 - CFD: 12/02/2011 - [] D -- C:\ProgramData\CanonIJ
O43 - CFD: 03/12/2010 - [] HD -- C:\ProgramData\CanonIJEGV
O43 - CFD: 03/11/2010 - [0] HD -- C:\ProgramData\CanonIJEPPEX2
O43 - CFD: 10/09/2011 - [] D -- C:\ProgramData\CanonIJMSetup
O43 - CFD: 10/09/2011 - [] HD -- C:\ProgramData\CanonIJMyPrinter
O43 - CFD: 28/08/2015 - [] D -- C:\ProgramData\CanonIJPLM
O43 - CFD: 04/07/2012 - [] HD -- C:\ProgramData\CanonIJScan
O43 - CFD: 03/11/2010 - [] HD -- C:\ProgramData\CanonIJSolutionMenuEX
O43 - CFD: 03/11/2010 - [] D -- C:\ProgramData\CanonIJWSpt
O43 - CFD: 25/05/2012 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 07/03/2011 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 09/07/2012 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 25/10/2010 - [] D -- C:\ProgramData\Driver Whiz =>.Superfluous.DriverWhiz
O43 - CFD: 06/05/2009 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 28/08/2008 - [] D -- C:\ProgramData\FloodLightGames
O43 - CFD: 15/11/2013 - [] D -- C:\ProgramData\G Data
O43 - CFD: 04/11/2014 - [] D -- C:\ProgramData\Google
O43 - CFD: 06/05/2009 - [] D -- C:\ProgramData\HipSoft
O43 - CFD: 20/05/2009 - [] D -- C:\ProgramData\InterVideo
O43 - CFD: 03/11/2014 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 28/01/2012 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 18/10/2009 - [] D -- C:\ProgramData\Media Center Programs
O43 - CFD: 06/05/2009 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 27/02/2014 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 10/12/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 06/05/2009 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 04/11/2010 - [] D -- C:\ProgramData\Norton
O43 - CFD: 10/03/2010 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 11/04/2010 - [] D -- C:\ProgramData\Oberon Games
O43 - CFD: 28/10/2013 - [0] D -- C:\ProgramData\Oracle
O43 - CFD: 12/12/2012 - [] D -- C:\ProgramData\Orange
O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 10/03/2010 - [] D -- C:\ProgramData\PCSettings
O43 - CFD: 07/08/2014 - [] D -- C:\ProgramData\PDF Architect 2
O43 - CFD: 12/08/2010 - [] D -- C:\ProgramData\Sandlot Games
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Steam
O43 - CFD: 02/10/2012 - [] D -- C:\ProgramData\Sun
O43 - CFD: 04/11/2010 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 14/12/2010 - [] AD -- C:\ProgramData\TEMP
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 11/07/2014 - [] D -- C:\ProgramData\Trusteer
O43 - CFD: 03/05/2010 - [] D -- C:\ProgramData\WindowsSearch
O43 - CFD: 13/01/2011 - [] D -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 10/10/2009 - [] D -- C:\Program Files\Common Files\3DO Shared
O43 - CFD: 03/11/2013 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 13/01/2011 - [] D -- C:\Program Files\Common Files\Apple
O43 - CFD: 03/11/2010 - [] D -- C:\Program Files\Common Files\CANON
O43 - CFD: 03/11/2010 - [] D -- C:\Program Files\Common Files\CyberLink
O43 - CFD: 15/05/2014 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 15/11/2013 - [] D -- C:\Program Files\Common Files\G Data
O43 - CFD: 05/04/2010 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 28/06/2015 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Common Files\LightScribe
O43 - CFD: 04/07/2012 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 28/08/2008 - [] D -- C:\Program Files\Common Files\Oberon Media
O43 - CFD: 27/08/2014 - [] D -- C:\Program Files\Common Files\PC SOFT
O43 - CFD: 09/11/2013 - [0] D -- C:\Program Files\Common Files\PDF Architect
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 10/03/2010 - [] D -- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 10/11/2011 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 02/11/2009 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\0jqH8a7
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\13jeHEA
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\1NQNXBo
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\21y2Eoe
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\268dNUC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\2KFOOVG
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\2rNVLkU
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\2tMr7VU
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\2UhsloX
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\38oYelI
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3f1DNAw
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3GW5Xxj
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3HpA2Q4
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3IwRDh2
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3JSEa92
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3NwqVI5
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\3sxwOgV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\4CDvXim
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\4GV2WVJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\4LaaOeA
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\4vvbAq5
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5jhk3iX
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5nhNCmf
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5OB82JN
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5uENaOc
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5Wg9kYM
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5XNS3Gr
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\5YhnVdf
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\62pNs3j
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\6ezUWRH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\6mlY1P5
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\6MV0tA4
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\6pDj6dk
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\7fAriEH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\7fuscDn
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\80nJuBF
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\82PoS3g
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\89jtNZV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\8aeOmnG
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\8gvHN5P
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\8PLeIkN
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\8qgfzlI
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\8ylvP3L
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\9Aj87sg
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\9dMN3fz
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\9EP2EOi
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\9skH0ms
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\9WCUTEw
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\a3O9HRd
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\aaIkBPg
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\aAp7dtA
O43 - CFD: 29/10/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\Adobe
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\AEiIArJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\AkcWfMz
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\aMFpkPH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\AntLB3I
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\AO4YAl5
O43 - CFD: 19/07/2011 - [] D -- C:\Users\Lucie\AppData\Roaming\Apple Computer
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\AUGWWx0
O43 - CFD: 28/06/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\AVAST Software
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\aYanzlh
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\aYFcvOT
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\B13VZtm
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\b3ssFki
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\b4yArEn
O43 - CFD: 19/11/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Battle.net
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\BG42S1d
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\bHjzeK5
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\biM1zjV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\brsgtMn
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\bst9AX3
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\BTtUMgH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\BYE6vzi
O43 - CFD: 10/04/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\Canon
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\cbGKYYC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\cNsfmOB
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\CQwXN4i
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\CQxhz2p
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\cR2Knct
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\CrWjbYv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\cxBVAQT
O43 - CFD: 19/06/2011 - [] D -- C:\Users\Lucie\AppData\Roaming\CyberLink
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\cyuCIRr
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\d75SlMg
O43 - CFD: 11/11/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\daIE7mj
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\dCgM5qv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\DEQ0IIU
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\dfsDAb9
O43 - CFD: 20/07/2012 - [] D -- C:\Users\Lucie\AppData\Roaming\dvdcss
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\dvuUxZv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Dxk1txl
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\dXnhFJ8
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\dZYWtyd
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\e7HCbwg
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EAVBXhV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EG7snbT
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\eGqVRT2
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EMK9X1i
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EP2Wkir
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EPf0c3a
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\eWB1Kpp
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EXtjWHt
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\EYP7tzt
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ez9zU18
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\f3CVTPY
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\f7gGFo2
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\FDKcgGq
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\fjDkIsF
O43 - CFD: 06/05/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\FloodLightGames
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\FOmOM9H
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\fQ2L2LI
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\FsfEXOb
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\FwEJ2XH
O43 - CFD: 13/11/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\GameRanger
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\GaYY8Hm
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ge7TPuE
O43 - CFD: 08/07/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\Gearbox Software
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\gICYLKg
O43 - CFD: 01/12/2014 - [] HD -- C:\Users\Lucie\AppData\Roaming\GoldenGate
O43 - CFD: 07/05/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\Google
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\gqS1ToA
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\GsdOAB1
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\GVMt9Ug
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\H2pWUuH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\h3Awapf
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\h4L3Ist
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\hFWUrqR
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\hGPjKnC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\HIGiO68
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\HjhhCST
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\HJYFHeJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Hlhvd8l
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\hMeTb78
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\hpvvwTC
O43 - CFD: 06/01/2010 - [] D -- C:\Users\Lucie\AppData\Roaming\HTML Executable
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\hXqTNje
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\I6U16Ey
O43 - CFD: 30/01/2011 - [] D -- C:\Users\Lucie\AppData\Roaming\Icones
O43 - CFD: 06/05/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\Identities
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Ih6htdb
O43 - CFD: 26/08/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\inkscape
O43 - CFD: 06/01/2011 - [] D -- C:\Users\Lucie\AppData\Roaming\InstallShield
O43 - CFD: 06/05/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\InterVideo
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\IyC6fzp
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\j3g98wV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\jFIC6dn
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\JHpx9eY
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\jivYEc6
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\JmWiaDB
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\jW8452H
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\jYm3Rog
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\JYMIvIE
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\K468pYP
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\k8MX34T
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\KgGcv13
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\kPNKC2m
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\kUXVllW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\L2PQaLi
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\LfUOFkt
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\LGj3saA
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\LirVR6T
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\LNBFlh9
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\lPrtrLm
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\lr1sfy7
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\LtplUqb
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\LW9ajYu
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\m1QjobN
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\m4E9lPd
O43 - CFD: 12/08/2010 - [] D -- C:\Users\Lucie\AppData\Roaming\Macromedia
O43 - CFD: 28/05/2013 - [] D -- C:\Users\Lucie\AppData\Roaming\Malwarebytes
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\MB9xXSS
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\MdJvLFD
O43 - CFD: 29/10/2014 - [] SD -- C:\Users\Lucie\AppData\Roaming\Microsoft
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\minzOls
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\MiTHuYe
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\MjfBSFx
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\mk59R5s
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\MOypR8n
O43 - CFD: 28/10/2009 - [0] D -- C:\Users\Lucie\AppData\Roaming\Mozilla
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\mQt3NbV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\MSTc1uh
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\mw3g9qC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\mYHKemW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\n4Vu5O0
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\n9QkRGb
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\NaIMANH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\NkatTpk
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\nn7IaHv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\No5zswH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\NpTsnfa
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\nuRgZKT
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Nxwtmxy
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Nz7LLpn
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\NzZUxcl
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\O3bcqW8
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\OBuOSHP
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\OGRFfkW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\oGzpXPv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ojoYij8
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\OP3KQqi
O43 - CFD: 17/05/2010 - [] D -- C:\Users\Lucie\AppData\Roaming\OpenOffice.org
O43 - CFD: 06/07/2012 - [] D -- C:\Users\Lucie\AppData\Roaming\Orange
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\OspPjn8
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\oUHH2hM
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\OwYcmkp
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\OXMJgtB
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\P8awgQY
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\PcypnQw
O43 - CFD: 09/11/2013 - [] D -- C:\Users\Lucie\AppData\Roaming\PDF Architect
O43 - CFD: 07/08/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\PDF Architect 2
O43 - CFD: 14/10/2010 - [0] D -- C:\Users\Lucie\AppData\Roaming\PeerNetworking
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\PfVpNhY
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\pGJyO5z
O43 - CFD: 25/05/2012 - [] D -- C:\Users\Lucie\AppData\Roaming\PhotoFiltre
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\PWtWMm9
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\pXaHKqk
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\pxRZVbM
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Q2cR6MC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\q3hM1EW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Q9Wkj7u
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\q9Ylds9
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\QaedQFk
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\QexfypN
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\QFsEGK1
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\qhBckej
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Qluo3Ez
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\qQPR6NR
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\QSWVkCg
O43 - CFD: 01/11/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\QuickScan
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\QVDjtcs
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\qxTyiAm
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\qYlKBqG
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\R2efv4e
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\R2fKeak
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\r6fPTwy
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\REkACi3
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\rf7vsz2
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Rg9Vmxd
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\rJFSWTv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\rjRNGnY
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\rJYp3Ce
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\rouVV0N
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\S1w1i0q
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\sa2jsFl
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\SC0GeNJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\schJtyK
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\se2wmKH
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\sEfp6m4
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\sIVCmvn
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\SmUkjlJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\sNFcNi6
O43 - CFD: 07/05/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\Sphinx
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\sSzEJfq
O43 - CFD: 27/11/2010 - [] D -- C:\Users\Lucie\AppData\Roaming\Summitsoft
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Svam4tz
O43 - CFD: 10/03/2010 - [] D -- C:\Users\Lucie\AppData\Roaming\Symantec
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\TA9Cwah
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\tDmAfnJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\tEAFoAq
O43 - CFD: 07/05/2009 - [] D -- C:\Users\Lucie\AppData\Roaming\Template
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\tM6hQck
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\tnZ83Ea
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\TsEkpy8
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ttQroiF
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\tz9Py5J
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\TZUe3Sn
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\U2ibIl1
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\U3cSQlz
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\uEslgAD
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\uFj0r75
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\uPeIo2o
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\UQJWVuu
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\URJDawn
O43 - CFD: 10/12/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\uTorrent
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\uv8W3ne
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\uzl2U4v
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\v36b7Oz
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VFKuRyC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VGaQHP2
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\vhn1Rdw
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VI91Auz
O43 - CFD: 26/07/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\vlc
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\vNUOZx6
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\vPDfaJR
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VqcIMh4
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\vQRrdLo
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VqU3fLB
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VTPYFIC
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\vUCAy27
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Vuj8kU7
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VuUnVjE
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\VvE2IBr
O43 - CFD: 09/02/2012 - [] D -- C:\Users\Lucie\AppData\Roaming\wargaming.net
O43 - CFD: 22/02/2011 - [0] D -- C:\Users\Lucie\AppData\Roaming\Windows Live Writer
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\wj7haaq
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\WqKCoIW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\WRpg8D3
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\WTKJvUv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\WTLISwV
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\WUUD4L1
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\wWnzJDF
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\x3yMPfo
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\x7MTHxf
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\x8VOSMk
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\X96PgAY
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\xaIEMAR
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\XarWcNF
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\xFTqryy
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Xgd7pxO
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\XiIMy1o
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\xQpIm3z
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\xrf45iJ
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\xSNBxVW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\XT9wpAW
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Y6PlBHr
O43 - CFD: 10/07/2010 - [] D -- C:\Users\Lucie\AppData\Roaming\Yahoo!
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\yiIHXvx
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\YonJoyt
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\Yozju47
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\yy9w6zd
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\YzqoIzT
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\zCpx7fL
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\zFQzx9v
O43 - CFD: 10/12/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ZHP
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ZMjTmav
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\zozsWvv
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ZqjAL21
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\zRWaVnG
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ZuSVOYi
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\zwGxbST
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Lucie\AppData\Roaming\ZyDf3Mf
O43 - CFD: 29/10/2014 - [] D -- C:\Users\Lucie\AppData\Local\Adobe
O43 - CFD: 13/01/2011 - [] D -- C:\Users\Lucie\AppData\Local\Apple
O43 - CFD: 24/02/2011 - [] D -- C:\Users\Lucie\AppData\Local\Apple Computer
O43 - CFD: 06/05/2009 - [0] SHD -- C:\Users\Lucie\AppData\Local\Application Data
O43 - CFD: 30/11/2010 - [] D -- C:\Users\Lucie\AppData\Local\Apps
O43 - CFD: 19/11/2015 - [] D -- C:\Users\Lucie\AppData\Local\Battle.net
O43 - CFD: 19/11/2015 - [] D -- C:\Users\Lucie\AppData\Local\Blizzard Entertainment
O43 - CFD: 30/11/2010 - [0] D -- C:\Users\Lucie\AppData\Local\Deployment
O43 - CFD: 01/08/2013 - [] D -- C:\Users\Lucie\AppData\Local\G DATA
O43 - CFD: 11/11/2014 - [0] D -- C:\Users\Lucie\AppData\Local\GGEmpire
O43 - CFD: 10/09/2015 - [] D -- C:\Users\Lucie\AppData\Local\Google
O43 - CFD: 06/05/2009 - [0] SHD -- C:\Users\Lucie\AppData\Local\Historique
O43 - CFD: 21/04/2014 - [] D -- C:\Users\Lucie\AppData\Local\MetaGeek,_LLC
O43 - CFD: 29/10/2014 - [] D -- C:\Users\Lucie\AppData\Local\Microsoft
O43 - CFD: 12/08/2010 - [] D -- C:\Users\Lucie\AppData\Local\Microsoft Games
O43 - CFD: 10/12/2011 - [0] D -- C:\Users\Lucie\AppData\Local\Microsoft Help
O43 - CFD: 11/04/2010 - [] D -- C:\Users\Lucie\AppData\Local\Oberon Games
O43 - CFD: 10/02/2011 - [] D -- C:\Users\Lucie\AppData\Local\Orange
O43 - CFD: 10/06/2012 - [] D -- C:\Users\Lucie\AppData\Local\Paint.NET
O43 - CFD: 03/11/2010 - [] D -- C:\Users\Lucie\AppData\Local\Power2Go
O43 - CFD: 10/12/2015 - [] D -- C:\Users\Lucie\AppData\Local\Temp
O43 - CFD: 06/05/2009 - [0] SHD -- C:\Users\Lucie\AppData\Local\Temporary Internet Files
O43 - CFD: 11/07/2014 - [] D -- C:\Users\Lucie\AppData\Local\Trusteer
O43 - CFD: 03/07/2012 - [] D -- C:\Users\Lucie\AppData\Local\VirtualStore
O43 - CFD: 27/08/2014 - [] D -- C:\Users\Lucie\AppData\Local\WDSetup
O43 - CFD: 27/02/2014 - [] D -- C:\Users\Lucie\AppData\Local\Windows Live
O43 - CFD: 22/02/2011 - [] D -- C:\Users\Lucie\AppData\Local\Windows Live Writer
O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 06/05/2009 - [] RD -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 27/08/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DiacammaAsso
O43 - CFD: 15/01/2013 - [] D -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 01/04/2011 - [] D -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LG Power Tools
O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 21/04/2014 - [] D -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek
O43 - CFD: 10/12/2015 - [] RD -- C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.Avast Software s.r.o. - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll ©

---\\ Enumération des clés StartupReg (6) - 1s
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe ©
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Lucie\AppData\Local\Google\Update\GoogleUpdate.exe ©
O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe ©
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe ©
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe ©
O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe ©

---\\ Liste des pilotes du système (95) - 19s
O58 - SDL:2008/01/21 03:32:46 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:51 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:52 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:53 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:49 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:50 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] {61052123000000000006} ©
O58 - SDL:2015/06/28 21:31:12 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [24144] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:31:12 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [74976] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:31:12 A . (.Avast Software s.r.o. - avast! TDI Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [55200] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:31:12 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [49904] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:30:33 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [787760] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:32:14 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [428120] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:31:12 A . (.Avast Software s.r.o. - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [57888] =>.AVAST Software a.s.®
O58 - SDL:2015/06/28 21:31:12 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [209048] =>.AVAST Software a.s.®
O58 - SDL:2007/10/26 07:41:02 A . (.Broadcom Corp. - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [1044984] {1886197C44037742BDBCFBBFF4E2A789} ©
O58 - SDL:2006/11/02 09:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] ©
O58 - SDL:2006/11/02 09:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] ©
O58 - SDL:2006/11/02 09:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] ©
O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] ©
O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] ©
O58 - SDL:2006/11/02 09:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] ©
O58 - SDL:2011/08/17 08:56:22 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmb.sys [18176] ©
O58 - SDL:2011/08/17 08:56:26 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbo.sys [23168] ©
O58 - SDL:2008/01/21 03:32:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] {61052123000000000006} ©
O58 - SDL:2006/11/02 10:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
O58 - SDL:2006/11/02 14:29:36 A . (.Dritek System Inc. - Dritek PS2 Keyboard Filter Driver.) -- C:\Windows\System32\drivers\DKbFltr.sys [21264] {2F174E5260B0E8B1343C090603D5A29C} ©
O58 - SDL:2008/01/21 03:32:50 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] ©
O58 - SDL:2008/01/21 03:32:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] {61052123000000000006} ©
O58 - SDL:2013/07/31 18:47:30 A . (.G Data Software - G Data Phyiscal Memory.) -- C:\Windows\System32\drivers\GdPhyMem.sys [16048] {0100000000012BCEF5C311}
O58 - SDL:2009/05/18 13:17:00 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [26600] {4DDB8E34AFC0FF8A1C8FEC4514E4F370} ©
O58 - SDL:2008/01/21 03:32:52 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:49 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] {61052123000000000006} ©
O58 - SDL:2010/08/25 19:31:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [9024512] ©
O58 - SDL:2006/11/02 10:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
O58 - SDL:2008/06/11 11:13:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15.sys [15392] {4A4D17D857AE0121E31CCACF7BC59A81} ©
O58 - SDL:2008/06/11 11:13:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15_64.sys [17952] =>.Acer Incorporated®
O58 - SDL:1998/07/01 13:28:20 A . (.TTR Technologies Ltd. - IOSLinkNT.) -- C:\Windows\System32\drivers\IosLink.sys [5088]
O58 - SDL:2006/11/02 10:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:49 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:51 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:48 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:53 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] {61052123000000000006} ©
O58 - SDL:2006/11/02 10:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
O58 - SDL:2011/08/17 09:03:58 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\nmwcdnsu.sys [137472] ©
O58 - SDL:2011/08/17 09:03:50 A . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\drivers\nmwcdnsuc.sys [8576] ©
O58 - SDL:2008/01/30 10:52:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [14848] {2E84F8C9C74824E255573C054D2E159F} ©
O58 - SDL:2006/11/02 08:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] ©
O58 - SDL:2008/01/21 03:32:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] {61052123000000000006} ©
O58 - SDL:2004/08/09 12:29:28 A . (.Protection Technology - StarForce Protection Environment Driver.) -- C:\Windows\System32\drivers\prodrv06.sys [53920] ©
O58 - SDL:2004/08/09 12:33:26 A . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\Windows\System32\drivers\prohlp02.sys [114016] ©
O58 - SDL:2004/07/19 15:49:54 A . (.Protection Technology - StarForce Protection Synchronization Driver.) -- C:\Windows\System32\drivers\prosync1.sys [7040] ©
O58 - SDL:2008/01/21 03:32:50 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] {61052123000000000006} ©
O58 - SDL:2006/11/02 10:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
O58 - SDL:2008/06/27 11:33:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2147928] =>.Realtek Semiconductor Corp®
O58 - SDL:2008/06/10 11:54:36 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) -- C:\Windows\System32\drivers\Rtlh86.sys [123904] ©
O58 - SDL:2002/10/16 15:08:58 A . (...) -- C:\Windows\System32\drivers\SECDRV.SYS [11376]
O58 - SDL:2003/12/01 16:20:52 A . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\Windows\System32\drivers\sfhlp01.sys [4832] ©
O58 - SDL:2008/01/21 03:32:52 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] {61052123000000000006} ©
O58 - SDL:2012/07/09 09:40:48 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [477240] {621126C5A45D51531C0B913750EBA75C} ©
O58 - SDL:2006/11/02 10:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
O58 - SDL:2008/02/22 04:50:48 A . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [198064] {24B3EEA347D16BD21B67C0A9EA4F39C5} ©
O58 - SDL:2008/01/30 10:51:50 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [13824] {2E84F8C9C74824E255573C054D2E159F} ©
O58 - SDL:2008/01/21 03:32:45 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] {61052123000000000006} ©
O58 - SDL:2006/11/02 10:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:49 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
O58 - SDL:2011/08/17 08:56:30 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerflt.sys [8192] ©
O58 - SDL:2011/08/17 08:56:32 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltj.sys [8192] ©
O58 - SDL:2008/01/21 03:32:21 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:49 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] {61052123000000000006} ©
O58 - SDL:2008/01/21 03:32:48 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL3.SYS [200704] ©
O58 - SDL:2008/01/21 03:32:48 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT3.SYS [654336] ©
O58 - SDL:2008/01/21 03:32:48 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV3.SYS [987648] ©
O58 - SDL:2006/11/02 08:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 08:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2006/11/02 08:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 08:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 08:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 08:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 08:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 08:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 08:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 08:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 08:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 08:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 08:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
O58 - SDL:2008/11/06 16:53:02 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\Windows\System32\pcampr5.sys [34688] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 58s
O61 - LFC: 2015/12/03 17:28:39 A . (..) -- C:\Users\Lucie\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys [1]
O61 - LFC: 2015/12/04 21:57:40 A . (..) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\47.0.2526.80\natives_blob.bin [439857]
O61 - LFC: 2015/12/04 21:57:40 A . (..) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\47.0.2526.80\snapshot_blob.bin [514840]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc®

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Lucie\AppData\Local\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (6) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {9CD8E638-E149-4E3C-B284-4DFB3CDC2830} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {C5773B10-C407-4D97-8C0B-434DD80E47C5} - (Live Search) - http://search.live.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {9CD8E638-E149-4E3C-B284-4DFB3CDC2830} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {C5773B10-C407-4D97-8C0B-434DD80E47C5} - (Live Search) - http://search.live.com/

---\\ Enumère les services démarrés par Svchost (31) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] {6105EDD8000000000015} ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] ©

---\\ Liste des exceptions du parefeu Windows (2) - 8s
O87 - FAEL: "{52F0B77B-54CF-4A82-A62D-48404F406663}" [In-None-P6-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{E8257C08-95DD-47C7-A8AA-F3BF72CBE37B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 83s

SR - Auto [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [13/10/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [18/08/2012] [ 22016] Apache2.4 (Apache2.4) . (.Apache Software Foundation.) - c:\xampp\apache\bin\httpd.exe ©
SR - Auto [16/10/2010] [ 37664] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [28/06/2015] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Demand [28/06/2015] [ 3207800] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe =>.AVAST Software a.s.®
SR - Auto [03/03/2008] [ 16384] NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe ©
SS - Auto [11/06/2008] [ 24576] Empowering Technology Service (ETService) . (.Copyright © 2007.) - C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe
SS - Demand [09/11/2010] [ 30192] Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) . (.Google.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe {3144C06A6CFB5076C15D399572C69421} ©
SS - Demand [04/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe ©
SS - Demand [05/04/2010] [ 116104] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2010 All Rights Reserved.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe {442F9C58B61E1D9833719F449E43668A} ©
SS - Demand [13/12/2010] [ 820008] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [17/01/2007] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe ©
SR - Auto [06/04/2008] [ 50424] NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe {2E84F8C9C74824E255573C054D2E159F} ©
SR - Auto [04/04/2008] [ 131072] NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
SR - Auto [15/04/2009] [ 271760] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared files\RichVideo.exe =>.CyberLink®

---\\ Scan Additionnel (2) - 0s
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
C:\ProgramData\Driver Whiz =>.Superfluous.DriverWhiz

---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s
http://www.nicolascoolman.fr/?p=245 =>PUP.Optional.DSite
http://www.nicolascoolman.fr/?p=5039 =>PUP.Optional.Vosteran
http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.DriverWhiz

~ End of the scan, 37374 items in 503 seconds (1270)(0)

Publicité


Signaler le contenu de ce document

Publicité