cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.1.10.10 Par Nicolas Coolman (2016/01/10)
~ Démarré par hako (Administrator) (2016/01/10 23:10:19)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\hako\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\hako\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8 Pro, 32-bit (Build 9200)

---\\ Navigateurs Internet (4) - 0s
GCIE: Google Chrome v47.0.2526.106
MFIE: Mozilla Firefox 38.0.5 (x86 fr)
OPIE: Opera 34.0.2036.25
MSIE: Internet Explorer v10.0.9200.17568

---\\ Informations sur les produits Windows (6) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, VOLUME_KMSCLIENT channel
~ Windows Partial Key : J8CK4
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 4s
Malwarebytes Anti-Malware النسخة 2.2.0.1024
Windows Defender W8 (Activate)

---\\ Logiciels de protection et autres (Superflus) (1) - 4s
Zemana AntiMalware v2.19.797

---\\ Surveillance de Logiciels (1) - 4s
Adobe Flash Player 20 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1980.46 MB (39% free)
System Restore: Activé (Enable)
System drive C: has 274 GB () free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HAKO
~ User Name: hako
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 274 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 0s
[MD5.EAFE46B0292D2BD2467835E2ACF717CC] - 01/06/2013 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2106176] =>.Microsoft Windows®
[MD5.224F6B374852153C8C24BED141AE3A20] - 26/07/2012 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [48640] =>.Microsoft Corporation
[MD5.7109FF769FFF962869C50D720F7AA7D7] - 26/07/2012 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [101376] =>.Microsoft Corporation
[MD5.7EE6AEA4B731D038DF17DAF943D9692F] - 07/11/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1763328] =>.Microsoft Corporation
[MD5.DB876C1B7FA5CD1BD79D8C942E39908C] - 16/11/2015 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [429056] =>.Microsoft Corporation
[MD5.FAB11E1AC62579A9BE21593319F8E464] - 26/07/2012 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [246784] =>.Microsoft Corporation
[MD5.0BE9606A1175C7400ED862991453A847] - 09/10/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [458240] =>.Microsoft Corporation
[MD5.65AA2DE8787146679BB8A7D14BFFB6A3] - 26/07/2012 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [18944] =>.Microsoft Corporation
[MD5.83A09AED0E8E5CC95FC051B40ADE0409] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [439296] =>.Microsoft Corporation
[MD5.48D8C3F2006698691F5AE0BB595FDCC8] - 26/07/2012 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [22768] =>.Microsoft Windows®
[MD5.00B4FA77732C7823D292ECD672660882] - 26/07/2012 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [89088] =>.Microsoft Corporation
[MD5.4E707EC5071DD8F5C29A7410780BD4C3] - 26/07/2012 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [135680] =>.Microsoft Corporation
[MD5.E608E26B536A42B5ACC145D25CB9F2AC] - 16/01/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [92160] =>.Microsoft Corporation
[MD5.6BFEBBA25AD34E5922E60349C721B1DD] - 15/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [62464] =>.Microsoft Corporation
[MD5.11EDC37780E8A2F8E311D73F7658A4D7] - 26/07/2012 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [89600] =>.Microsoft Corporation
[MD5.57B0C0D982013C72911A3F5CBA795034] - 26/07/2012 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [126976] =>.Microsoft Corporation
[MD5.60978139E6942772545EAB1BC2DB1393] - 07/01/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [341504] =>.Microsoft Corporation
[MD5.303A053C25E468B9925C22288BEF8484] - 26/07/2012 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [254464] =>.Microsoft Corporation
[MD5.6C816842AC5E2B0E033ED0BD1058E077] - 27/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1618264] =>.Microsoft Windows®
[MD5.8BCE63AF5B52642E832630F862DE96EF] - 26/07/2012 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [90624] =>.Microsoft Corporation
[MD5.6E0649D7325D85C47C844EB3267E4625] - 26/07/2012 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [88064] =>.Microsoft Corporation
[MD5.2CAD2A13569741C67CD9C52F97E0F992] - 26/07/2012 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [156160] =>.Microsoft Corporation
[MD5.3A8628AEDBB44215EC8D65FBD394BAC7] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [100352] =>.Microsoft Corporation
[MD5.BF079843E272759BAE587FB980163293] - 04/07/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [281408] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (7) - 1s
O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.arvato digital services llc
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: ZAM Controller Service (ZAMSvc) . (.Zemana Ltd. - ZAM.) - C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.®

---\\ Tâches planifiées en automatique (12) - 5s
[MD5.C3E7E1F3C85A6788F3BA078BA214341E] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.70CB79B525FF3D953AB60030EC32265D] [APT] [Opera scheduled Autoupdate 1422910743] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [696952] =>.Opera Software ASA®
[MD5.C08A5FCEFA5EE421E6146A8F674D1A2A] [APT] [Lenovo\Lenovo Customer Feedback Program 35] (.Lenovo.) -- C:\Program Files\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [16832] =>.LENOVO®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1070] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1074] =>.Google Inc.
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890] =>.Adobe Systems Incorporated
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3810] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4046] =>.Google Inc.
O39 - APT: Opera scheduled Autoupdate 1422910743 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1422910743 [3852] =>.Opera Software

---\\ Processus lancés (21) - 2s
[MD5.1004870429DE89F4546F9BC9243379DA] - (.Freemake - FreemakeUtilsService.) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032] [PID.1568] =>.Freemake
[MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.1680] =>.Malwarebytes Corporation®
[MD5.40C126CB15FAB7D6C66490DCA9C1AED2] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416] [PID.1760] =>.Malwarebytes Corporation®
[MD5.066C6CCCF670D9BBCAECC781FB8D7EB9] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [277360] [PID.1944] =>.arvato digital services llc
[MD5.20A2B62D1EA2000AF510EF97EED2B47E] - (.Zemana Ltd. - ZAM.) -- C:\Program Files\Zemana AntiMalware\ZAM.exe [12783848] [PID.952] =>.Zemana Ltd.®
[MD5.BABBBDEF9DBB5E012EE5210FCB47C33B] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [9832760] [PID.2216] =>.Malwarebytes Corporation®
[MD5.7DC16FAEA44C8D96A1C113305A4059A2] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.29.1\GoogleCrashHandler.exe [245576] [PID.3760] =>.Google Inc®
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2264]
[MD5.20A2B62D1EA2000AF510EF97EED2B47E] - (.Zemana Ltd. - ZAM.) -- C:\Program Files\Zemana AntiMalware\ZAM.exe [12783848] [PID.3740] =>.Zemana Ltd.®
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.232]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.3500]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.3636]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.3868]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.1852]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.1300]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2900]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.4308]
[MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.4460]
[MD5.70CB79B525FF3D953AB60030EC32265D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe [696952] [PID.4664] =>.Opera Software ASA®
[MD5.F938B92ABEFD9D81C0F870021A94DB81] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hako\ZHPDiag3.exe [2066944] [PID.2468] =>.Nicolas Coolman
[MD5.59FA3ADF26581B676B47CBE71F0C4D0C] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [271832] [PID.3036] =>.Intel Corporation - pGFX®

---\\ Google Chrome, Démarrage,Recherche,Extensions (8) - 2s
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [djnhkfljnimcpelfndpcjcgngmefaobl] __MSG_extName__
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pkehgijcmpdhfbdbbnkijodmdjhbjlgp] __MSG_name__

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (14) - 2s
P2 - EXT FILE: (...) -- C:\Users\hako\AppData\Roaming\Mozilla\Firefox\Profiles\jcjh4a7y.default\searchplugins\bing-.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.Microsoft Corporation - Bing Search Engine.) -- C:\Users\hako\AppData\Roaming\Mozilla\Firefox\Profiles\jcjh4a7y.default\extensions\bingsearch.full@microsoft.com =>.Microsoft Corporation
P2 - FPN: [HKCU] [@catalinahub.net/CatalinaGroup Update;version=3] - (.Catalina Group Ltd..) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\1.3.25.223\npCatalinaUpdate3.dll
P2 - FPN: [HKCU] [@catalinahub.net/CatalinaGroup Update;version=9] - (.Catalina Group Ltd..) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\1.3.25.223\npCatalinaUpdate3.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_267.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (3) - 0s
205.199
205.199

~ Nombre lignes détournées 205.199

24 (Hosts file redirected)

---\\ Browser Helper Object de navigateur (BHO) (2) - 1s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Internet Download Manager, Tonec Inc.
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®

---\\ Applications lancées au démarrage du système (17) - 13s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.®
O4 - HKLM\..\Run: [GoldenFilterPro] . (.Golden Soft Corp. - .) -- C:\Golden Filter Pro\GFPro.exe
O4 - HKLM\..\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
O4 - HKLM\..\Run: [ZAM] . (.Zemana Ltd. - ZAM.) -- C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [ooVoo.exe] . (.ooVoo LLC - ooVoo.) -- C:\Program Files\ooVoo\ooVoo.exe
O4 - HKCU\..\Run: [CatalinaGroup Update] . (.Catalina Group Ltd. - CatalinaGroup Update.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\CatalinaUpdate.exe
O4 - HKCU\..\Run: [Tango] . (.Tango Inc. - Tango.) -- C:\Program Files\Tango\Tango.exe =>.Tango Inc.
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [ooVoo.exe] . (.ooVoo LLC - ooVoo.) -- C:\Program Files\ooVoo\ooVoo.exe
O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [CatalinaGroup Update] . (.Catalina Group Ltd. - CatalinaGroup Update.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\CatalinaUpdate.exe
O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [Tango] . (.Tango Inc. - Tango.) -- C:\Program Files\Tango\Tango.exe =>.Tango Inc.
O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®

---\\ Raccourcis Global Startup (34) - 18s
O4 - GS\Desktop [Administrateur]: PianoFX STUDIO 4.0.lnk . (.Tanseon Systems - PianoFX STUDIO 4.0.) C:\Program Files\PianoFX\PianoFX.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hako\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Citrio.lnk . (.CatalinaGroup Ltd. - Citrio.) C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe
O4 - GS\Quicklaunch [Administrateur]: GameSpy Arcade.lnk . (.IGN Entertainment, Inc. - GameSpy Arcade.) C:\Program Files\GameSpy Arcade\Aphex.exe
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Sothink Logo Maker Professional.lnk . (.SourceTec - Logo Maker Professional.) C:\Program Files\SourceTec\Sothink Logo Maker Professional\LogoMakerPro.exe =>.SourceTec
O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (...) C:\Program Files\FreeTime\FormatFactory\FormatFactory.exe
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: AdwCleaner.lnk . (.Xplode - AdwCleaner.) C:\Users\hako\Downloads\adwcleaner_5.028.exe =>.Xplode
O4 - GS\TaskBar [Administrateur]: Citrio.lnk . (.CatalinaGroup Ltd. - Citrio.) C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe
O4 - GS\TaskBar [Administrateur]: File Explorer.lnk . (...) C:\Users\hako\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrateur]: No-IP DUC.lnk . (.Vitalwerks LLC - No-IP.com DUC.) C:\Program Files\No-IP\DUC20.exe
O4 - GS\Desktop [hako]: PianoFX STUDIO 4.0.lnk . (.Tanseon Systems - PianoFX STUDIO 4.0.) C:\Program Files\PianoFX\PianoFX.exe
O4 - GS\Desktop [hako]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hako\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [hako]: Citrio.lnk . (.CatalinaGroup Ltd. - Citrio.) C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe
O4 - GS\Quicklaunch [hako]: GameSpy Arcade.lnk . (.IGN Entertainment, Inc. - GameSpy Arcade.) C:\Program Files\GameSpy Arcade\Aphex.exe
O4 - GS\Quicklaunch [hako]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [hako]: Sothink Logo Maker Professional.lnk . (.SourceTec - Logo Maker Professional.) C:\Program Files\SourceTec\Sothink Logo Maker Professional\LogoMakerPro.exe =>.SourceTec
O4 - GS\sendTo [hako]: Format Factory.lnk . (...) C:\Program Files\FreeTime\FormatFactory\FormatFactory.exe
O4 - GS\sendTo [hako]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [hako]: AdwCleaner.lnk . (.Xplode - AdwCleaner.) C:\Users\hako\Downloads\adwcleaner_5.028.exe =>.Xplode
O4 - GS\TaskBar [hako]: Citrio.lnk . (.CatalinaGroup Ltd. - Citrio.) C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe
O4 - GS\TaskBar [hako]: File Explorer.lnk . (...) C:\Users\hako\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [hako]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [hako]: No-IP DUC.lnk . (.Vitalwerks LLC - No-IP.com DUC.) C:\Program Files\No-IP\DUC20.exe
O4 - GS\CommonDesktop [Public]: Euro Truck Simulator 2.lnk . (.SCS Software - Euro Truck Simulator 2 - Steam.) C:\Program Files\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe =>.SCS Software
O4 - GS\CommonDesktop [Public]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe =>.Freemake
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: SHAREit.lnk . (.Lenovo - SHAREit.) C:\Program Files\Lenovo\SHAREit\Shareit.exe =>.LENOVO®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: Zemana AntiMalware.lnk . (.Zemana Ltd. - ZAM.) C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.®
O4 - GS\Programs [Public]: setup.lnk . (...) C:\Users\hako\Downloads\Just.Cause.2.Multi6-RU.Repack\setup.exe
O4 - GS\Programs [Public]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\hako\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1D5282CE-6A03-45F6-80DC-EDAB421710DF}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (21) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (...) - c:\progra~2\{f1671~1\1173~1.1\rini.dll (.not file.)

---\\ Logiciels installés (67) - 34s
O42 - Logiciel: "Just Cause 2" - (...) [HKLM] -- {E2FC9928-87BE-4947-B68E-4A3414E33767}_is1
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Help Center 1.0 - (.Adobe Systems.) [HKLM] -- {E9787678-1033-0000-8E67-000000000001} =>.Adobe Systems
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} =>.Apple Inc.
O42 - Logiciel: Assassin's Creed Liberation HD - (...) [HKLM] -- Assassin's Creed Liberation HD_is1
O42 - Logiciel: AVS Photo Editor 2.3.1.144 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Photo Editor_is1 =>.Online Media Technologies Ltd.
O42 - Logiciel: Battlefield 2 édition Deluxe - (...) [HKLM] -- {04858915-9F49-4B2A-AED4-DC49A7DE6A7B}
O42 - Logiciel: Bau-Simulator 2012 Version 1.0 - (.weltenbauer. Software Entwicklung GmbH.) [HKLM] -- {AEF59382-3FF1-4EBF-A93E-CCC474DCEA3F}_is1
O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {474DFABF-E55B-4905-ABAA-40791A6AC77F} =>.TechSmith Corporation
O42 - Logiciel: Citrio - (.© Catalinagroup Ltd..) [HKCU] -- Citrio {1855136D47C1A483}
O42 - Logiciel: Contents - (.Corel Corporation.) [HKLM] -- {CC17740C-FD9D-4025-BD75-99ED1A9DA22E} =>.Corel Corporation
O42 - Logiciel: Corel VideoStudio Pro X7 - (.Corel Corporation.) [HKLM] -- _{77B3BEA9-835C-4DDF-BCE7-1510271E4E37} =>.Corel Corporation®
O42 - Logiciel: DJ Studio Pro 10.4.4.3 - (.E-Soft.) [HKLM] -- {CAF570D2-07B0-4311-911D-47E7A41D85D2} {1F88FBE23C3B9E102A5F728D86E7AC12}
O42 - Logiciel: Euro Truck Simulator 2 - (.SCS Software.) [HKLM] -- {1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1 {59A96FDC3A56C87453CC094A9887C650} =>.SCS Software
O42 - Logiciel: Farming Simulator 2011 Demo - (.GIANTS Software.) [HKLM] -- FarmingSimulator2011DemoEN_is1 =>.GIANTS Software GmbH®
O42 - Logiciel: Farming Simulator 2013, âهًٌèے 2.0 - (.Zimbo.) [HKLM] -- Farming Simulator 2013_is1
O42 - Logiciel: FormatFactory 3.5.0.0 - (.Format Factory.) [HKLM] -- FormatFactory =>.Format Factory
O42 - Logiciel: Freemake Video Converter version 4.1.7 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Converter_is1 =>.Ellora Assets Corporation
O42 - Logiciel: Freight Train Simulator - (.GameHitZone.com.) [HKLM] -- FreightTrainSimulator_is1
O42 - Logiciel: GameSpy Arcade - (...) [HKLM] -- GameSpy Arcade
O42 - Logiciel: GI-Arabic Now - (.Global Integrated Solutions.) [HKLM] -- GI-Arabic Now
O42 - Logiciel: Golden Filter Pro 2.0 - (.GSI Technologies.) [HKLM] -- Golden Filter Pro
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc.
O42 - Logiciel: Google Earth Pro - (.Google.) [HKLM] -- {44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E} =>.Google
O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM] -- {77B3BEA9-835C-4DDF-BCE7-1510271E4E37} =>.Corel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager {4660FC32BD521D77F211C1336AA98B9E} =>.Tonec Inc.
O42 - Logiciel: IPM_VS_Pro - (.Corel Corporation.) [HKLM] -- {0662B4EB-B027-4D10-B49C-B6433FE81C07} =>.Corel Corporation
O42 - Logiciel: Malwarebytes Anti-Malware النسخة 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Metric Collection SDK - (.Lenovo Group Limited.) [HKLM] -- {DDAA788F-52E6-44EA-ADB8-92837B11BF26} =>.Lenovo Group Limited
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited
O42 - Logiciel: Movie Studio 13.0 - (.Sony.) [HKLM] -- {2FD4A64F-74DC-11E4-8DDF-F04DA23A5C58} =>.Sony
O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.5 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {2BAC54DE-0A81-11E3-8476-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {364ED280-74DC-11E4-940F-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: NirSoft Wireless Network Watcher - (...) [HKLM] -- NirSoft Wireless Network Watcher
O42 - Logiciel: No-IP.com DUC (remove only) - (.Vitalwerks & No-IP.com.) [HKLM] -- No-IP.com DUC =>.Vitalwerks & No-IP.com
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B} =>.NVIDIA Corporation
O42 - Logiciel: ooVoo - (.ooVoo LLC..) [HKLM] -- {FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623} =>.ooVoo LLC.
O42 - Logiciel: Opera Stable 34.0.2036.25 - (.Opera Software.) [HKLM] -- Opera 34.0.2036.25 =>.Opera Software ASA®
O42 - Logiciel: Photo-Brush 5.30 - (.Mediachance Corp..) [HKLM] -- Photo-Brush_is1
O42 - Logiciel: PianoFX STUDIO 4.0 - (.Tanseon Systems.) [HKLM] -- PianoFX STUDIO 4.0_is1
O42 - Logiciel: Police Supercars Racing 5.00 - (.Police Supercars Racing.) [HKLM] -- Police Supercars Racing 5.00
O42 - Logiciel: Pro Evolution Soccer 2012 - (.KONAMI.) [HKLM] -- {E737A098-F161-4B6F-AF22-86AAE34F6FBD} =>.Konami
O42 - Logiciel: Pro Evolution Soccer 2013 - (.KONAMI.) [HKLM] -- {C2523AE6-F335-4D0B-BC15-1C07E4ACE629} =>.Konami
O42 - Logiciel: Setup - (.Corel Corporation.) [HKLM] -- {EE1DF8F8-24D8-4287-816B-E67B03460CEE} =>.Corel Corporation
O42 - Logiciel: Share - (.Corel Corporation.) [HKLM] -- {5F5C5CC6-3457-4D8B-A716-85CC964C4533} =>.Corel Corporation
O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM] -- SHAREit_is1 =>.LENOVO®
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.17 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Sony Vegas Pro 10.0 - (...) [HKLM] -- Sony Vegas Pro 10.0
O42 - Logiciel: Sothink Logo Maker Professional - (.SourceTec Software Co., LTD.) [HKLM] -- {574FFDC9-AB09-4C4A-B7BE-C6066502181A}_is1
O42 - Logiciel: Spintires - (.R.G. Mechanics, markfiter.) [HKLM] -- Spintires_R.G. Mechanics_is1 =>.R.G. Mechanics, markfiter
O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM] -- {80C56680-717B-4DB5-BBEF-7A139E466AD9} =>.Husdawg, LLC
O42 - Logiciel: Tango - (.TangoMe, Inc..) [HKCU] -- Tango {518E759C2B4729A634F14DEE2741ECFD}
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer =>.Unity Technologies ApS
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: VSClassic - (.Corel Corporation.) [HKLM] -- {AE666608-C3B5-46F0-BAFA-B0A7BEE058F5} =>.Corel Corporation
O42 - Logiciel: VSPro - (.Corel Corporation.) [HKLM] -- {5BB9ED3F-A86C-46F5-A362-3F2F0591AC51} =>.Corel Corporation
O42 - Logiciel: Weeeb Store 1.02 Beta - (.SourceTec Software Co., LTD.) [HKLM] -- {F87ABD09-B69E-4E38-AF0F-8EDA007BEF3C}_is1
O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: World War 2: Sniper - (.Groove Games.) [HKLM] -- World War 2: Sniper
O42 - Logiciel: Zemana AntiMalware - (.Zemana Ltd..) [HKLM] -- {8F0CD7D1-42F3-4195-95CD-833578D45057}_is1 =>.Zemana Ltd.®

---\\ HKCU & HKLM Software Keys (115) - 34s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Adobe Systems
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\AVS4YOU
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\Chromium
HKLM\SOFTWARE\COMODO
HKLM\SOFTWARE\ComodoGroup
HKLM\SOFTWARE\Corel
HKLM\SOFTWARE\DaxakaRepack
HKLM\SOFTWARE\DICE
HKLM\SOFTWARE\EA GAMES
HKLM\SOFTWARE\EagleEye
HKLM\SOFTWARE\Electronic Arts
HKLM\SOFTWARE\FaceOnBody
HKLM\SOFTWARE\Freemake
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\IGI 2 Retail
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallMate
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\Jarhead Games
HKLM\SOFTWARE\KONAMI
HKLM\SOFTWARE\Lavasoft
HKLM\SOFTWARE\Lenovo
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\SCS Software
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Sony Creative Software
HKLM\SOFTWARE\SourceTec
HKLM\SOFTWARE\TechSmith
HKLM\SOFTWARE\tueagles
HKLM\SOFTWARE\Ulead Systems
HKLM\SOFTWARE\Valve
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Vitalwerks
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\VST
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wise Solutions
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Zemana
HKLM\SOFTWARE\ZmnGlobalSDK
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AVS4YOU
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\CatalinaGroup
HKCU\SOFTWARE\CDDB
HKCU\SOFTWARE\Digimarc
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JustCause2
HKCU\SOFTWARE\Kiloo Games
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\MediaChance
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ooVoo
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Resplendence Sp
HKCU\SOFTWARE\SAMP
HKCU\SOFTWARE\SCS Software
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\Sothink
HKCU\SOFTWARE\SourceTec
HKCU\SOFTWARE\TechSmith
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\UIG
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\weltenbauer. Software Entwicklung GmbH
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\XnView
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Zemana
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (261) - 235s
O43 - CFD: 05/03/2015 - [] D -- C:\Program Files\Adobe
O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\AGEIA Technologies
O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\Athan
O43 - CFD: 01/03/2015 - [] D -- C:\Program Files\AVS4YOU
O43 - CFD: 11/05/2015 - [] D -- C:\Program Files\Bau-Simulator 2012
O43 - CFD: 21/01/2015 - [] D -- C:\Program Files\Bing Bar Installer
O43 - CFD: 22/01/2015 - [0] D -- C:\Program Files\black box
O43 - CFD: 21/01/2015 - [] D -- C:\Program Files\Black_Box
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Corel {6099896A7B027918CFDB657C17E6E536}
O43 - CFD: 23/05/2015 - [] D -- C:\Program Files\Deadpool
O43 - CFD: 03/02/2015 - [] D -- C:\Program Files\E-Soft
O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\EA GAMES
O43 - CFD: 14/03/2015 - [] D -- C:\Program Files\Ela-Salaty
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Euro Truck Simulator 2 {59A96FDC3A56C87453CC094A9887C650}
O43 - CFD: 15/04/2015 - [0] D -- C:\Program Files\FaceOffMax
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Farming Simulator 2011 Demo =>.GIANTS Software GmbH®
O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Farming Simulator 2013 =>.GIANTS Software GmbH®
O43 - CFD: 31/12/2014 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 27/07/2015 - [] D -- C:\Program Files\FinchVPN {0082BD3B25B8EDD3B1E9D659D06B380FE0}
O43 - CFD: 02/02/2015 - [] D -- C:\Program Files\Freemake =>.Microsoft Corporation®
O43 - CFD: 02/02/2015 - [] D -- C:\Program Files\FreeTime =>.chen jun hao®
O43 - CFD: 06/05/2015 - [] D -- C:\Program Files\GameHitZone.com {1121CE11F3B8C23214B9089ECDD724159825}
O43 - CFD: 08/02/2015 - [] D -- C:\Program Files\GameSpy Arcade
O43 - CFD: 01/03/2015 - [] D -- C:\Program Files\GISolution
O43 - CFD: 03/02/2015 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 25/06/2015 - [] D -- C:\Program Files\Groove Games
O43 - CFD: 02/01/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software Corporation®
O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation - pGFX®
O43 - CFD: 15/01/2015 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 02/01/2015 - [0] D -- C:\Program Files\Islamic Encyclopedia
O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\Just Cause 2
O43 - CFD: 24/01/2015 - [] D -- C:\Program Files\Konami
O43 - CFD: 10/01/2016 - [0] D -- C:\Program Files\Lavasoft
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Lenovo =>.LENOVO®
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee, Inc.®
O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 07/12/2015 - [] D -- C:\Program Files\NirSoft
O43 - CFD: 21/12/2015 - [] D -- C:\Program Files\No-IP
O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\ooVoo {438641BDEE006728268E6C746F5095C6}
O43 - CFD: 10/12/2015 - [] D -- C:\Program Files\Opera =>.Opera Software ASA®
O43 - CFD: 21/04/2015 - [] D -- C:\Program Files\Photo-Brush 5
O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\PianoFX
O43 - CFD: 25/06/2015 - [] D -- C:\Program Files\Police Supercars Racing
O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\QuickTime
O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\R.G. Mechanics
O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 14/12/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl®
O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Sony {763032CE869EB50C396E26D0BF3B11F6}
O43 - CFD: 27/02/2015 - [] D -- C:\Program Files\SourceTec {2B82ABA86D863021CD8B799A9D366BE1}
O43 - CFD: 21/06/2015 - [] D -- C:\Program Files\SystemRequirementsLab
O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Tango
O43 - CFD: 27/07/2015 - [] D -- C:\Program Files\TAP-Windows
O43 - CFD: 10/01/2015 - [] D -- C:\Program Files\TechSmith =>.TechSmith Corporation®
O43 - CFD: 23/02/2015 - [] D -- C:\Program Files\tuEagles {46BC7AAD1494F94353665B64D96244B6}
O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\Ubisoft {11211489E6814A0B9E53465021BAA1A6FCEF}
O43 - CFD: 26/07/2012 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 27/02/2015 - [] D -- C:\Program Files\Weeeb Store
O43 - CFD: 13/08/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows®
O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 05/01/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 26/07/2012 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 08/01/2016 - [] HD -- C:\Program Files\WindowsApps
O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Zemana AntiMalware =>.Zemana Ltd.®
O43 - CFD: 26/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 03/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 05/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 23/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anti-Porn
O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 11/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bau-Simulator 2012
O43 - CFD: 06/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
O43 - CFD: 14/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel VideoStudio Pro X7
O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJ Studio Pro
O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2
O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2011 Demo
O43 - CFD: 15/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2013
O43 - CFD: 04/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 06/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHitZone.com
O43 - CFD: 12/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GISolution
O43 - CFD: 09/04/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Golden Filter Pro
O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
O43 - CFD: 25/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Groove Games
O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IGI 2 - Covert Strike
O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Judgment
O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Just Cause 2
O43 - CFD: 12/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami
O43 - CFD: 11/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
O43 - CFD: 24/06/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO
O43 - CFD: 26/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\No-IP
O43 - CFD: 31/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 17/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ooVoo
O43 - CFD: 21/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PESEdit.com 2012 Patch
O43 - CFD: 03/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo-Brush 5
O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PianoFX STUDIO
O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SourceTec
O43 - CFD: 24/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 05/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 26/07/2012 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tango
O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
O43 - CFD: 31/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Weeeb Store
O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 04/01/2015 - [] D -- C:\ProgramData\Apple
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 14/03/2015 - [0] D -- C:\ProgramData\Ashampoo
O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\AVS4YOU
O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Baidu
O43 - CFD: 31/12/2014 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Corel
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\E-Soft
O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\FaceOffMax
O43 - CFD: 15/04/2015 - [] D -- C:\ProgramData\FaceOnBody
O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\FOMShare
O43 - CFD: 04/09/2015 - [] D -- C:\ProgramData\Freemake
O43 - CFD: 01/01/2015 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma
O43 - CFD: 12/02/2015 - [] D -- C:\ProgramData\KONAMI
O43 - CFD: 10/01/2016 - [0] D -- C:\ProgramData\Lavasoft
O43 - CFD: 23/01/2015 - [] D -- C:\ProgramData\LightC
O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 31/12/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 17/04/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 31/12/2014 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 04/02/2015 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 11/01/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 26/07/2012 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\regid.1995-08.com.techsmith
O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/03/2015 - [] D -- C:\ProgramData\Sony
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\TechSmith
O43 - CFD: 17/01/2015 - [0] D -- C:\ProgramData\TEMP
O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 05/03/2015 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Common Files\Adobe Systems Shared
O43 - CFD: 04/01/2015 - [] D -- C:\Program Files\Common Files\Apple
O43 - CFD: 01/03/2015 - [] D -- C:\Program Files\Common Files\AVSMedia
O43 - CFD: 04/09/2015 - [] D -- C:\Program Files\Common Files\Freemake Shared
O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Common Files\LENOVO
O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Common Files\Protexis
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 10/01/2015 - [] D -- C:\Program Files\Common Files\TechSmith Shared
O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 12/07/2015 - [] D -- C:\Users\hako\AppData\Roaming\.mono
O43 - CFD: 30/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Adobe
O43 - CFD: 05/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Apple Computer
O43 - CFD: 01/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\AVS4YOU
O43 - CFD: 31/12/2015 - [] D -- C:\Users\hako\AppData\Roaming\DMCache
O43 - CFD: 25/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\FaceOffMax
O43 - CFD: 25/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\FOMShare
O43 - CFD: 30/10/2015 - [] D -- C:\Users\hako\AppData\Roaming\IDM
O43 - CFD: 11/05/2015 - [] D -- C:\Users\hako\AppData\Roaming\Lavasoft
O43 - CFD: 31/12/2014 - [] D -- C:\Users\hako\AppData\Roaming\Macromedia
O43 - CFD: 15/12/2015 - [] SD -- C:\Users\hako\AppData\Roaming\Microsoft
O43 - CFD: 04/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Mozilla
O43 - CFD: 17/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\ooVoo Details
O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Opera Software
O43 - CFD: 14/05/2015 - [] D -- C:\Users\hako\AppData\Roaming\PowerISO
O43 - CFD: 01/01/2015 - [0] D -- C:\Users\hako\AppData\Roaming\Publish Providers
O43 - CFD: 08/01/2016 - [] D -- C:\Users\hako\AppData\Roaming\Skype
O43 - CFD: 15/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Sony
O43 - CFD: 26/04/2015 - [] D -- C:\Users\hako\AppData\Roaming\Spintires
O43 - CFD: 10/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\TechSmith
O43 - CFD: 05/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Unity
O43 - CFD: 30/12/2015 - [] D -- C:\Users\hako\AppData\Roaming\uTorrent
O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Roaming\vlc
O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\WinRAR
O43 - CFD: 03/08/2015 - [] D -- C:\Users\hako\AppData\Roaming\XnRetro
O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Roaming\ZHP
O43 - CFD: 24/06/2015 - [] D -- C:\Users\hako\AppData\Local\Adobe
O43 - CFD: 04/01/2015 - [] D -- C:\Users\hako\AppData\Local\Apple
O43 - CFD: 31/12/2014 - [0] SHD -- C:\Users\hako\AppData\Local\Application Data
O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Local\Ashampoo Movie Studio
O43 - CFD: 27/02/2015 - [] D -- C:\Users\hako\AppData\Local\cache
O43 - CFD: 04/02/2015 - [] D -- C:\Users\hako\AppData\Local\CatalinaGroup
O43 - CFD: 02/01/2016 - [] D -- C:\Users\hako\AppData\Local\CrashDumps
O43 - CFD: 07/12/2015 - [] D -- C:\Users\hako\AppData\Local\Diagnostics
O43 - CFD: 04/09/2015 - [] D -- C:\Users\hako\AppData\Local\Downloaded Installations
O43 - CFD: 16/09/2015 - [0] D -- C:\Users\hako\AppData\Local\ElevatedDiagnostics
O43 - CFD: 04/09/2015 - [] D -- C:\Users\hako\AppData\Local\FreemakeVideoConverter
O43 - CFD: 13/09/2015 - [] D -- C:\Users\hako\AppData\Local\Google
O43 - CFD: 31/12/2014 - [0] SHD -- C:\Users\hako\AppData\Local\Historique
O43 - CFD: 14/12/2015 - [] D -- C:\Users\hako\AppData\Local\Lenovo
O43 - CFD: 27/02/2015 - [] D -- C:\Users\hako\AppData\Local\Macromedia
O43 - CFD: 08/12/2015 - [] D -- C:\Users\hako\AppData\Local\Microsoft
O43 - CFD: 03/01/2015 - [0] D -- C:\Users\hako\AppData\Local\Microsoft Help
O43 - CFD: 04/02/2015 - [] D -- C:\Users\hako\AppData\Local\Mozilla
O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Local\Opera Software
O43 - CFD: 04/03/2015 - [] D -- C:\Users\hako\AppData\Local\Packages
O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Local\Programs
O43 - CFD: 07/02/2015 - [] D -- C:\Users\hako\AppData\Local\SKIDROW
O43 - CFD: 14/12/2015 - [0] D -- C:\Users\hako\AppData\Local\Skype
O43 - CFD: 03/01/2015 - [] D -- C:\Users\hako\AppData\Local\Sony
O43 - CFD: 08/05/2015 - [] D -- C:\Users\hako\AppData\Local\tango
O43 - CFD: 10/01/2015 - [] D -- C:\Users\hako\AppData\Local\TechSmith
O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Local\Temp
O43 - CFD: 31/12/2014 - [0] SHD -- C:\Users\hako\AppData\Local\Temporary Internet Files
O43 - CFD: 05/01/2015 - [] D -- C:\Users\hako\AppData\Local\Unity
O43 - CFD: 26/09/2015 - [] D -- C:\Users\hako\AppData\Local\VirtualStore
O43 - CFD: 27/02/2015 - [] D -- C:\Users\hako\AppData\Local\WeeebStore
O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Local\Zemana
O43 - CFD: 26/07/2012 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 26/07/2012 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 15/10/2015 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 01/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 13/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Citrio
O43 - CFD: 22/06/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
O43 - CFD: 03/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DJ Studio Pro
O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 06/05/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameHitZone.com
O43 - CFD: 08/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
O43 - CFD: 01/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GISolution
O43 - CFD: 25/06/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Groove Games
O43 - CFD: 09/01/2015 - [0] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IGI 2 - Covert Strike
O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 26/07/2012 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 07/12/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher
O43 - CFD: 21/12/2015 - [0] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP
O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony Vegas Pro 10.0
O43 - CFD: 15/10/2015 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 26/07/2012 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 18s
O45 - LFCP:[MD5.A36894273818AC2A423E4685429DF77D] 31/12/2015 A -- C:\Windows\Prefetch\SOFTONICASSISTANT.EXE-EE5320C8.pf =>.Superfluous.Softonic

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 1s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation

---\\ Liste des pilotes du système (56) - 42s
O58 - SDL:2012/07/26 04:42:31 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [85232] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:31 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [424176] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:31 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [298736] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:31 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147696] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:31 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [67312] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:31 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [213744] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:31 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22256] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:30 A . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [91888] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:30 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [94448] =>.Microsoft Windows®
O58 - SDL:2010/10/19 23:33:40 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [41088] =>.Intel Corporation
O58 - SDL:2012/07/26 04:42:33 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [56048] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:33 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [333552] =>.Microsoft Windows®
O58 - SDL:2014/11/29 01:37:06 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [115752] =>.Tonec Inc.®
O58 - SDL:2014/01/29 23:12:20 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [3768320] =>.Intel Corporation
O58 - SDL:2012/07/26 04:42:33 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [42224] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [93424] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [78576] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [100592] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [68848] =>.Microsoft Windows®
O58 - SDL:2015/10/05 09:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/05 09:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation®
O58 - SDL:2016/01/10 23:05:28 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation®
O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [45296] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:15 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [283888] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:15 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [59120] =>.Microsoft Windows®
O58 - SDL:2015/10/05 09:50:20 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation®
O58 - SDL:2012/07/26 04:42:15 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45808] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:15 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [120048] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:15 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [141552] =>.Microsoft Windows®
O58 - SDL:2015/09/21 13:54:10 A . (.Resplendence Software Projects Sp. - Resplendence WhySoSlow Monitoring Driver.) -- C:\Windows\System32\drivers\rspWhy32.sys [24832] =>.Resplendence Software Projects Sp.
O58 - SDL:2012/07/25 23:49:40 A . (.Realtek - Pilote Realtek 8101E/8168/8169 NDIS 6.30 32.) -- C:\Windows\System32\drivers\Rt630x86.sys [495104] =>.Realtek
O58 - SDL:2012/07/26 07:52:42 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2012/07/26 04:42:15 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [41200] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [79088] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:15 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [26352] =>.Microsoft Windows®
O58 - SDL:2014/11/05 14:16:26 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [23040] =>.The OpenVPN Project
O58 - SDL:2012/07/26 04:42:18 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [18160] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:19 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [155376] =>.Microsoft Windows®
O58 - SDL:2012/07/26 04:42:19 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [285424] =>.Microsoft Windows®
O58 - SDL:2016/01/10 13:47:04 A . (.Zemana Ltd. - ZAM.) -- C:\Windows\System32\drivers\zam32.sys [179448] =>.Zemana Ltd.®
O58 - SDL:2016/01/10 13:47:03 A . (.Zemana Ltd. - ZAM.) -- C:\Windows\System32\drivers\zamguard32.sys [179448] =>.Zemana Ltd.®
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2012/07/25 23:52:52 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2012/07/25 23:52:52 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO.SYS [33968]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO404.SYS [34688]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO412.SYS [35552]
O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO804.SYS [34688]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 325s
O61 - LFC: 2016/01/10 23:06:05 A . (..) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\User Data\ev_hashes_whitelist.bin [674082]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (16) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software ASA®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software

---\\ Recherche d'infection sur les navigateurs (2) - 4s
O69 - SBI: SearchScopes [HKCU] {c9ab6446-7efc-47fe-966c-dc54324eff9f} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {c9ab6446-7efc-47fe-966c-dc54324eff9f} - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (35) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [115200] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [115200] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236544] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1285632] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [684032] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [87552] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [302080] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [81920] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49152] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [392192] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [245760] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2601472] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [630272] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [506368] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [741376] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [20992] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [52224] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [115200] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [89088] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [944640] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [166400] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [60928] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [105472] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [170496] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [249344] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [33280] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1532928] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [154112] =>.Microsoft Corporation
O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [117760] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [161792] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [138752] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [152064] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (26) - 9s
O87 - FAEL: "{926BF4C3-808D-4B09-9FD2-5D2F1B591E66}" [Out-None-P17-TRUE] .(...) -- C:\Users\hako\AppData\Local\Temp\nssA7F4.tmp\CnetInstaller-10584680.exe (.not file.)
O87 - FAEL: "{E86DE3F3-66B5-4F4A-BFDE-933809B5CA91}" [In-None-P17-TRUE] .(...) -- C:\Users\hako\AppData\Local\Temp\nssA7F4.tmp\CnetInstaller-10584680.exe (.not file.)
O87 - FAEL: "{BEE35E05-1587-4752-AEBB-DCEE7673FD96}" [In-None-P6-TRUE] .(.IGN Entertainment, Inc. - GameSpy Arcade.) -- C:\Program Files\GameSpy Arcade\Aphex.exe
O87 - FAEL: "{484D49AE-1768-40AB-917F-1A38D35B2EFA}" [In-None-P17-TRUE] .(.IGN Entertainment, Inc. - GameSpy Arcade.) -- C:\Program Files\GameSpy Arcade\Aphex.exe
O87 - FAEL: "TCP Query User{E5AEFA3B-D953-4B9B-9243-59605528404E}C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe" [In-None-P6-TRUE] .(...) -- C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe
O87 - FAEL: "UDP Query User{6E397133-97A8-4638-8D0E-AD1D636C6342}C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe" [In-None-P17-TRUE] .(...) -- C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe
O87 - FAEL: "TCP Query User{D12241C1-E3C4-4D2A-8AAC-96F69358832C}C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe" [In-None-P6-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe
O87 - FAEL: "UDP Query User{27B31A43-4491-4492-8B27-F20DD7A08E5E}C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe" [In-None-P17-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe
O87 - FAEL: "{995D4EEF-3FAC-475F-B29E-E8F28F71C950}" [In-None-P6-TRUE] .(...) -- C:\Program Files\EA GAMES\Battlefield 2\BF2.exe
O87 - FAEL: "{DD58745B-DE76-47A5-A348-1160404D6BBD}" [In-None-P17-TRUE] .(...) -- C:\Program Files\EA GAMES\Battlefield 2\BF2.exe
O87 - FAEL: "TCP Query User{86FBE160-0FC5-40EA-93D6-72EC2F5B6DFF}C:\program files\ea games\battlefield 2\bf2.exe" [In-None-P6-TRUE] .(...) -- C:\program files\ea games\battlefield 2\bf2.exe
O87 - FAEL: "UDP Query User{F7C9AE9F-8B9C-4706-AD51-63765BCEDE68}C:\program files\ea games\battlefield 2\bf2.exe" [In-None-P17-TRUE] .(...) -- C:\program files\ea games\battlefield 2\bf2.exe
O87 - FAEL: "TCP Query User{AEB6F537-46A2-4531-A46A-D014EDC552A1}C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe (.not file.)
O87 - FAEL: "UDP Query User{EDC02461-E884-4F54-A4B0-6B82C703CCE8}C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe (.not file.)
O87 - FAEL: "TCP Query User{82FFC69E-341A-44A9-A172-316079794CB1}C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe (.not file.)
O87 - FAEL: "UDP Query User{68779BC7-44AA-4430-B779-B3766453A4CA}C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe (.not file.)
O87 - FAEL: "TCP Query User{2FB2BD65-1C9B-4F1B-B665-F7291076052D}C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe (.not file.)
O87 - FAEL: "UDP Query User{D58C53C9-6CBC-465F-A1DB-E0113DFF190D}C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe (.not file.)
O87 - FAEL: "TCP Query User{71F41B4A-A17B-4036-BBA4-E15F340FD94D}C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe
O87 - FAEL: "UDP Query User{714C4D44-D7B3-4B13-9A9F-CCDC27092888}C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe
O87 - FAEL: "TCP Query User{59975DE6-00C5-463D-AE0C-70C16EF664B8}C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe (.not file.)
O87 - FAEL: "UDP Query User{A9A11550-60A1-49D6-AF88-CF3BBF5C671F}C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe (.not file.)
O87 - FAEL: "{13850C1F-FB4A-466E-A790-04263B319D0A}" [In-None-P6-TRUE] .(.mobogenie.com - downloader.) -- C:\Users\hako\AppData\Local\Temp\nsw664C.tmpMoboInstall\mobogenieP2sp.exe =>PUP.Optional.Mobogenie
O87 - FAEL: "{FA54467D-B620-413F-AA32-C2E7DDFADAF6}" [In-None-P17-TRUE] .(.mobogenie.com - downloader.) -- C:\Users\hako\AppData\Local\Temp\nsw664C.tmpMoboInstall\mobogenieP2sp.exe =>PUP.Optional.Mobogenie
O87 - FAEL: "{70C47DE3-A9AC-4B33-9BAA-184184DF8B3A}" [In-None-P17-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe
O87 - FAEL: "{A428E056-6B9C-45C9-9281-E983B198A4F7}" [Out-None-P17-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (14) - 15s

SS - Demand [04/03/2015] [ 72704] Adobe LM Service (Adobe LM Service) . (.Adobe Systems.) - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe =>.Adobe Systems
SS - Demand [29/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Demand [29/01/2014] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [02/09/2015] [ 108032] Freemake Improver (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake
SS - Auto [31/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [31/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [08/06/2015] [ 509424] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe =>.LENOVO®
SR - Auto [05/10/2015] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SR - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [03/10/2015] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [13/09/2013] [ 277360] Protexis Licensing V2 (PSI_SVC_2) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe {6BF639C6331003F6B9D1E5E029135BF4} =>.arvato digital services llc
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [25/12/2015] [12783848] ZAM Controller Service (ZAMSvc) . (.Zemana Ltd..) - C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.®

---\\ Scan Additionnel (3) - 0s
C:\ProgramData\InstallMate =>PUP.Optional.Tarma
C:\Windows\Prefetch\SOFTONICASSISTANT.EXE-EE5320C8.pf =>.Superfluous.Softonic
C:\Users\hako\AppData\Local\Temp\nsw664C.tmpMoboInstall\mobogenieP2sp.exe =>PUP.Optional.Mobogenie

---\\ Récapitulatif des éléments trouvés sur votre station (3) - 0s
http://www.nicolascoolman.fr/?p=259 =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Softonic
http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie

~ End of the scan, 19536 items in 00h19mn20s (872)(0)

Publicité


Signaler le contenu de ce document

Publicité