cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.7.17.115 Par Nicolas Coolman (2016/07/17)
~ Démarré par CamS (Administrator) (2016/07/21 11:48:30)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\CamS\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\CamS\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 47.0 (x86 fr)
MSIE: Internet Explorer v11.0.9600.18059

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Surveillance de Logiciels (2) - 14s
Adobe Flash Player 22 NPAPI
Adobe Reader X

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 37 Stepping 2, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4043.316 MB (48% free)
System Restore: Activé (Enable)
System drive C: has 20 GB () free of 119 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: CAMS-PC
~ User Name: CamS
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 20 GB free of 119 GB (System)
~ Drive D: has 110 GB free of 337 GB
~ Drive I: has 273 GB free of 953 GB

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 3s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.BD06D875FB79E92DAF724C91DE743AFA] - 16/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2487808] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.FA886682CFC5D36718D3E436AACF10B9] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497152] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.ACB6782973BD93760D597FC7BB37E692] - 29/09/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation
[MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.70988118145F5F10EF24720B97F35F65] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (11) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\System32\FBAgent.exe =>.ASUSTeK Computer Inc.®
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.AMD
O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation
O23 - Service: lxddCATSCustConnectService (lxddCATSCustConnectService) . (.Lexmark International, Inc. - Lexmark Connect Service Executable.) - C:\Windows\System32\spool\drivers\x64\3\lxddserv.exe =>.Lexmark International, Inc.®
O23 - Service: lxdd_device (lxdd_device) . (. - Printer Communication System.) - C:\Windows\System32\lxddcoms.exe =>.Lexmark International, Inc.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (18) - 27s

SR - Auto [06/06/2011] [ 64952] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [18/07/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [08/12/2009] [ 379520] AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\System32\FBAgent.exe =>.ASUSTek Computer Inc.
SR - Auto [22/01/2010] [ 202752] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD
SR - Auto [16/06/2009] [ 84536] ASLDR Service (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
SR - Auto [15/12/2009] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
SS - Auto [04/09/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [04/09/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [16/06/2010] [ 182768] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SS - Demand [22/10/2004] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe =>.Macrovision Corporation
SR - Auto [01/10/2009] [ 262144] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation
SS - Auto [25/05/2007] [ 34224] lxddCATSCustConnectService (lxddCATSCustConnectService) . (.Lexmark International, Inc..) - C:\Windows\system32\spool\DRIVERS\x64\3\lxddserv.exe =>.Lexmark International, Inc.®
SR - Auto [25/05/2007] [ 567216] lxdd_device (lxdd_device) . (...) - C:\Windows\System32\lxddcoms.exe =>.Lexmark International, Inc.®
SS - Demand [20/06/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [11/06/2012] [ 724376] ServiceLayer (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe =>.Nokia®
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [01/10/2009] [ 2314240] Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation

---\\ Tâches planifiées en automatique (48) - 6s
[MD5.A6C20CBD1B10FEF25DAA4F1CF9FBC4FF] [APT] [ACMON] (.ATK.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [684544] (.Activate.) =>.ATK
[MD5.32B31B696CB8E8F380831DFEB80A67E4] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270016] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.F30AA962D602D1A0377DFB99031E7B5C] [APT] [ASPG] (.ASUS.) -- C:\Program Files (x86)\ASUS\ASUS CopyProtect\ASPG.exe [163384] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.F4DCD4912B185C3AAEB92A7040832AD1] [APT] [ASUS Live Update] (.Copyright (C) 2002 ASUSTek. Corporation.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [51768] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.F36521883D8DBA4F803FB4355C685142] [APT] [ASUS P4G] (.ATK.) -- C:\Program Files\P4G\BatteryLife.exe [336000] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.00000000000000000000000000000000] [APT] [ASUS SmartLogon Console Sensor] (...) -- ASUSTek (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.DF72CE5D4DC1BDD7D57D936A969B7FC8] [APT] [ASUSControlDeck] (.asus.) -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [1080448] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.00000000000000000000000000000000] [APT] [DGChrome5372 Watcher] (...) -- C:\Program Files\IB Updater\DGChrome.exe (.not file.) [0] (.Activate.) =>PUP.Optional.InstallBrain
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000Core] (.Facebook Inc..) -- C:\Users\CamS\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] (.Activate.) =>.Facebook, Inc.®
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000UA] (.Facebook Inc..) -- C:\Users\CamS\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] (.Activate.) =>.Facebook, Inc.®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc®
[MD5.BDEE1AEE61C63AB26A8A4F6B760B7388] [APT] [RealUpgradeLogonTaskS-1-5-21-3287806077-1187420310-277133476-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [169640] (.Activate.) =>.RealNetworks, Inc.®
[MD5.BDEE1AEE61C63AB26A8A4F6B760B7388] [APT] [RealUpgradeScheduledTaskS-1-5-21-3287806077-1187420310-277133476-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [169640] (.Activate.) =>.RealNetworks, Inc.®
[MD5.BDEE1AEE61C63AB26A8A4F6B760B7388] [APT] [RealUpgradeScheduledTaskS-1-5-21-3287806077-1187420310-277133476-1003] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [169640] (.Activate.) =>.RealNetworks, Inc.®
[MD5.00000000000000000000000000000000] [APT] [r‚veil matin] (...) -- http://www.novaplanet.com/radionova/player (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.BDD790326FABC31FB635130810245062] [APT] [WC3] (.Copyright (C) 2005.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440] (.Activate.)
[MD5.00000000000000000000000000000000] [APT] [{18DC24A9-DCAE-451C-B197-E8AD5BF41B0F}] (...) -- E:\setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{23F22890-2E9C-48FB-BDE6-93DB4441F1D3}] (...) -- C:\Users\CamS\Downloads\AvidFreeDV_1.6.1\AvidFreeDV_1.6.1\Launch.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{34851E38-3CBC-427B-8A9A-C90D215A7C3E}] (...) -- C:\Users\CamS\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{37913F18-A40D-4AD4-983D-C7B7DF6D98F3}] (...) -- C:\Users\CamS\Desktop\Office 2007\Office 2007\Microsoft.Office.Professional.2007.FRENCH.REPACK.iSO-iND-David91\SETUP.EXE (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{61E928BB-FCB2-4A04-86E1-113D4421E71C}] (...) -- F:\O.2007.FR.corp\SETUP.EXE (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{8216EFB2-A16E-4EC7-991B-7ED87F4274DE}] (...) -- C:\Users\CamS\Downloads\agfreesetup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{9CF28AB5-57AA-42F5-8EB3-41E5F76BBF1C}] (...) -- C:\Users\CamS\Documents\O.2007.FR.corp\SETUP.EXE (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{B552F8E1-79C8-4212-A970-9089B9DC13B3}] (...) -- D:\mapinfo\Install\demo32.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{FCB71F85-132D-4B3F-B53F-450233EE9F2B}] (...) -- C:\Users\CamS\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.187E0D2AB859AD03393DDD731076BE81] [APT] [Apple] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561952] (.Activate.) =>.Apple Inc.®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000Core - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000Core.job [902] =>.Facebook, Inc.®
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000UA - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000UA.job [924] =>.Facebook, Inc.®
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc®
O39 - APT: ACMON - (.ATK.) -- C:\Windows\System32\Tasks\ACMON [3068] =>.ATK
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated®
O39 - APT: ASPG - (.ASUS.) -- C:\Windows\System32\Tasks\ASPG [2872] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS Live Update - (.Copyright (C) 2002 ASUSTek. Corporation.) -- C:\Windows\System32\Tasks\ASUS Live Update [3002] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS P4G - (.ATK.) -- C:\Windows\System32\Tasks\ASUS P4G [3040] =>.ASUSTeK Computer Inc.®
O39 - APT: ASUS SmartLogon Console Sensor - (...) -- C:\Windows\System32\Tasks\ASUS SmartLogon Console Sensor [2986] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: ASUSControlDeck - (.asus.) -- C:\Windows\System32\Tasks\ASUSControlDeck [3096] =>.ASUSTeK Computer Inc.®
O39 - APT: DGChrome5372 Watcher - (...) -- C:\Windows\System32\Tasks\DGChrome5372 Watcher [3468] (.Orphan.) =>PUP.Optional.InstallBrain
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000Core - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000Core [3530] =>.Facebook, Inc.®
O39 - APT: FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000UA - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3287806077-1187420310-277133476-1000UA [3898] =>.Facebook, Inc.®
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc®
O39 - APT: RealUpgradeLogonTaskS-1-5-21-3287806077-1187420310-277133476-1000 - (.RealNetworks, Inc..) -- C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3287806077-1187420310-277133476-1000 [3200] =>.RealNetworks, Inc.®
O39 - APT: RealUpgradeScheduledTaskS-1-5-21-3287806077-1187420310-277133476-1000 - (.RealNetworks, Inc..) -- C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3287806077-1187420310-277133476-1000 [3336] =>.RealNetworks, Inc.®
O39 - APT: RealUpgradeScheduledTaskS-1-5-21-3287806077-1187420310-277133476-1003 - (.RealNetworks, Inc..) -- C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3287806077-1187420310-277133476-1003 [3348] =>.RealNetworks, Inc.®
O39 - APT: WC3 - (.Copyright (C) 2005.) -- C:\Windows\System32\Tasks\WC3 [3090]

---\\ Processus lancés (30) - 1s
[MD5.3D90CF67DB75823A8480E56BBCD2E028] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [202752] [PID.872] =>.AMD
[MD5.2D00D3DADC1D3326BA788EB071F2726E] - (.ASUSTeK Computer Inc. - ASUS FastBoot.) -- C:\Windows\System32\FBAgent.exe [379520] [PID.1244] =>.ASUSTeK Computer Inc.®
[MD5.4513F1223D3828EC33229E22A8A50CA4] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [450048] [PID.1260] =>.AMD
[MD5.18E5C2F937F9DEB8C282DF66A3761925] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [84536] [PID.1320] =>.ASUSTeK Computer Inc.®
[MD5.7910158929571214A959D5A6D16DD9C0] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1492] =>.ASUSTeK Computer Inc.®
[MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.1796] =>.Adobe Systems, Incorporated®
[MD5.A1C148801B4AF64847AEB9F3AD9594EF] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [262144] [PID.1892] =>.Intel Corporation
[MD5.53281BC7812F67534489FF4001A2887E] - (.ASUS - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [182912] [PID.1432] =>.ASUSTeK Computer Inc.®
[MD5.8F3B329926457D1AE433CB2968E20FD5] - (. - Printer Communication System.) -- C:\Windows\System32\lxddcoms.exe [567216] [PID.1560] =>.Lexmark International, Inc.®
[MD5.868E3486E7EC522330344152A5535783] - (.ASUS - SmartLogon Application.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [PID.2448] =>.ASUSTeK Computer Inc.®
[MD5.F30AA962D602D1A0377DFB99031E7B5C] - (.ASUS - ASPG application.) -- C:\Program Files (x86)\ASUS\ASUS CopyProtect\ASPG.exe [163384] [PID.2460] =>.ASUSTeK Computer Inc.®
[MD5.F36521883D8DBA4F803FB4355C685142] - (.ATK - Power4Gear Hybrid.) -- C:\Program Files\P4G\BatteryLife.exe [336000] [PID.2484] =>.ASUSTeK Computer Inc.®
[MD5.BDD790326FABC31FB635130810245062] - (.Copyright (C) 2005 - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440] [PID.2500]
[MD5.DF72CE5D4DC1BDD7D57D936A969B7FC8] - (.asus - ControlDeck.) -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [1080448] [PID.2512] =>.ASUSTeK Computer Inc.®
[MD5.A6C20CBD1B10FEF25DAA4F1CF9FBC4FF] - (.ATK - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [684544] [PID.2520] =>.ATK
[MD5.F4DCD4912B185C3AAEB92A7040832AD1] - (.Copyright (C) 2002 ASUSTek. Corporation - ALU.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [51768] [PID.2552] =>.ASUSTeK Computer Inc.®
[MD5.9DEA654E4D9820958D6B4D1EBAF2F31E] - (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [1754448] [PID.2616] =>.eCareme Technologies, Inc.®
[MD5.D36DA0A5C531353C5FF5E29242649257] - (.Boingo Wireless, Inc. - Boingo Wi-Fi.) -- C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe [365936] [PID.748] =>.Boingo Wireless®
[MD5.C32B36D2168AEA9D4FA77C0A4F56379D] - (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912] [PID.1176] =>.ASUSTeK Computer Inc.®
[MD5.6FCA49B4085C32D1CC738C16142C0CDD] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624] [PID.2608] =>.ASUSTeK Computer Inc.®
[MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016] [PID.1956] =>.ASUSTeK Computer Inc.®
[MD5.E7704CBF568815C1CAA6E513387BD3F2] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [65536] [PID.3108] =>.Advanced Micro Devices Inc.
[MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe [2488888] [PID.3316] =>.ASUSTeK Computer Inc.®
[MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe [174648] [PID.3432] =>.ASUSTeK Computer Inc.®
[MD5.74EF310FAC89341CE2897B7F2C4A7B0F] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [65536] [PID.2828] =>.ATI Technologies Inc.
[MD5.41A5048E49372F091B2AE5A5B705B72D] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [183296] [PID.4680] =>.ASUSTeK
[MD5.41118D920B2B268C0ADC36421248CDCF] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240] [PID.2228] =>.Intel Corporation
[MD5.825FB6DE39FE63B3F59B78D760F0619C] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.2856] =>.Mozilla Corporation®
[MD5.C573A6CB885554F9B162AC4709A78407] - (.Nicolas Coolman - ZHPFix.) -- C:\Program Files (x86)\ZHPFix\ZHPFix.exe [3061760] [PID.1632] =>.Nicolas Coolman
[MD5.67330FDAE18007A7897B63A89C9F7B78] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\CamS\Downloads\ZHPDiag3.exe [2229760] [PID.4864] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (8) - 1s
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension
G2 - GCE: Preference [User Data\Default] [jifflliplgeajjdhmkcfnngfpgbjonjg]
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call
G2 - GCE: Preference [User Data\Default] [niogeckbkdcabhnapjbkeiklablhjoca]
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (19) - 1s
M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com =>PUP.Optional.Babylon
M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
P2 - EXT: (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\NPOFF12.DLL =>.Microsoft Corporation®
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppl3260.dll =>.RealNetworks, Inc.®
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin6.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin7.dll =>.Apple Inc.
P2 - EXT: (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nprjplug.dll =>.RealNetworks, Inc.
P2 - EXT: (.RealNetworks, Inc. - 12.0.1.609.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nprpjplug.dll =>.RealNetworks, Inc.
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class
P2 - EXT FILE: (...) -- C:\Users\CamS\AppData\Roaming\Mozilla\Firefox\Profiles\tq2bbe8q.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (...) -- C:\Users\CamS\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (26) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,BrowserMngr Start Page = http://search.babylon.com/ =>PUP.Optional.Babylon
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://search.babylon.com/ =>PUP.Optional.Babylon
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://search.babylon.com/ =>PUP.Optional.Babylon
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKEY_USERS\S-1-5-21-3287806077-1187420310-277133476-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R3 - URLSearchHook: (no name) - {08C06D61-F1F3-4799-86F8-BE1A89362C85} Orphan =>.Superfluous.Orphan
R3 - URLSearchHook: (no name) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} Orphan =>.Superfluous.Orphan

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: Windows Live Family Safety Browser Helper [64Bits] - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} . (.Microsoft Corporation - Family Safety Browser Helper Object Library.) -- C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll =>.Microsoft Corporation®

---\\ Internet Explorer, Barre d'outil (5) - 0s
O3 - Toolbar: 0xEF44FA216D37534D9B0F8A89D3229068 - [HKCU]{21FA44EF-376D-4D53-9B0F-8A89D3229068} . (...) -- (.not file.)
O3 - Toolbar: 0x7F7C02D44A156640A1AD4243D8127440 - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.)
O3 - Toolbar: 0x885B2B87B59D1043BDD0AC189557E5F5 - [HKCU]{872B5B88-9DB5-4310-BDD0-AC189557E5F5} . (...) -- (.not file.)
O3 - Toolbar: Babylon Toolbar - [HKLM]{98889811-442D-49dd-99D7-DC866BE87DBC} . (...) -- (.not file.) =>PUP.Optional.Babylon
O3 - Toolbar: Incredibar Toolbar - [HKLM]{F9639E4A-801B-4843-AEE3-03D9DA199E77} . (.Montera Technologeis LTD - .) -- C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll =>PUP.Optional.IncrediBar

---\\ Applications lancées au démarrage du système (15) - 0s
O4 - HKLM\..\Run: [ASUS WebStorage] . (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe =>.eCareme Technologies, Inc.®
O4 - HKLM\..\Run: [SmartAudio] . (.Copyright (C) 2008-2009 - SAIICpl MFC Application.) -- C:\Program Files\CONEXANT\SAII\SAIICpl.exe =>.Conexant Systems, Inc.®
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [Boingo Wi-Fi] . (...) -- C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc.
O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe =>.ASUSTeK Computer Inc.®
O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe =>.ASUSTeK Computer Inc.®
O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe =>.ASUSTeK Computer Inc.®
O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe =>.Apple Inc.
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3287806077-1187420310-277133476-1000\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation

---\\ Raccourcis Global Startup (20) - 5s
O4 - GS\Desktop [Administrateur]: Audiograbber.lnk . (.Jackie the hacker 1997-2004 - Copies digital audio from cd's. Freeware..) D:\zik\audiograbber\audiograbber.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\CamS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Picasa2\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [CamS]: Audiograbber.lnk . (.Jackie the hacker 1997-2004 - Copies digital audio from cd's. Freeware..) D:\zik\audiograbber\audiograbber.exe
O4 - GS\Desktop [CamS]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\CamS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [CamS]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Picasa2\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [CamS]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [CamS]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Lexmark Imaging Studio - 2500 Series.LNK . (...) C:\Program Files (x86)\Lexmark 2500 Series\App4R.exe =>.Lexmark International, Inc.®
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Picasa2\Picasa3.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: ViewNX 2.lnk . (.Nikon Corporation - ViewNX 2.) C:\Program Files (x86)\Nikon\ViewNX 2\ViewNX2.exe =>.Nikon Corporation
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (...) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
O4 - GS\CommonDesktop [Public]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) C:\Program Files (x86)\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Programs [Public]: WebPlayerV2.lnk . (...) C:\Users\CamS\AppData\Roaming\Microsoft\Installer\{77236F9C-987C-40EC-832B-5BD6181E4846}\_383C4C6B4D3B599ADF1116.exe
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\..\{25C3DBB2-B6AF-4516-A5B2-C935C9FA988B}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\..\{B0D66819-9595-47FF-91C2-1938E2B37EE6}: DhcpNameServer = 212.27.40.241 212.27.40.240

---\\ Protocole additionnel (27) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll =>.Microsoft Corporation®
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype-ie-addon-data [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll =>.Skype Technologies SA®
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl®
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (97) - 30s
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} =>.Adobe Systems Inc.
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 22 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader X (10.1.0) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {C41300B9-185D-475E-BFEC-39EF732F19B1} =>.Apple Inc.
O42 - Logiciel: ArcGIS Desktop - (.Environmental Systems Research Institute, Inc..) [HKLM][64Bits] -- {1F34839E-4826-4B64-B1B3-42E5AE8DEC5A} =>.Environmental Systems Research Institute, Inc.
O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {06585B02-F20D-4AB2-9A64-86EF2AE0F8F0} =>.ASUS
O42 - Logiciel: ASUS AP Bank - (.ASUSTEK.) [HKLM][64Bits] -- ASUS AP Bank_is1 =>.ASUSTeK
O42 - Logiciel: ASUS CopyProtect - (.ASUS.) [HKLM][64Bits] -- {6B77A7F6-DD63-4F13-A6FF-83137A5AC354} =>.ASUS
O42 - Logiciel: ASUS FancyStart - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {2B81872B-A054-48DA-BE3B-FA5C164C303A} =>.ASUSTek Computer Inc.
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} =>.ASUS
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {E657B243-9AD4-4ECC-BE81-4CCF8D667FD0} =>.ASUS
O42 - Logiciel: ASUS MultiFrame - (.ASUS.) [HKLM][64Bits] -- {9D48531D-2135-49FC-BC29-ACCDA5396A76} =>.ASUS
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {91EFE3A1-585E-4F66-B5F6-F118F56C4C47} =>.ASUS
O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} =>.ASUS
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} =>.ASUS
O42 - Logiciel: ASUS Virtual Camera - (.asus.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} =>.ASUS
O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage =>.eCareme Technologies, Inc.
O42 - Logiciel: ATI AVIVO64 Codecs - (.ATI Technologies Inc..) [HKLM][64Bits] -- {489F2C5A-83B9-79D5-714C-1DEF32A898E5} =>.ATI Technologies Inc.
O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {D0528577-31BF-2ABC-D7FC-E443EBF8B40A} =>.ATI Technologies, Inc.
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} =>.ASUS
O42 - Logiciel: BitGuard - (.MediaTechSoft Inc..) [HKLM][64Bits] -- {15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}
O42 - Logiciel: Boingo Wi-Fi - (.Boingo Wireless, Inc..) [HKLM][64Bits] -- {B653A2EC-D816-4498-A4FD-651047AB9DC9} =>.Boingo Wireless, Inc.
O42 - Logiciel: Byki - (.Transparent Language, Inc..) [HKLM][64Bits] -- {FD9E03B5-AEEA-4D59-B512-6CE4AA0281D4} {21B5CFECEE204D59F9ACFF722621EE00}
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {AB3C268A-E54B-4F6D-BF97-2DFCEEFA94F5} =>.ATI
O42 - Logiciel: Catalyst Control Center Core Implementation - (.ATI.) [HKLM][64Bits] -- {182A1405-9660-F35E-4910-2F4804EF9CD1} =>.ATI
O42 - Logiciel: Catalyst Control Center Graphics Full Existing - (.ATI.) [HKLM][64Bits] -- {2944D228-BD9D-293C-9207-36F3F83200C7} =>.ATI
O42 - Logiciel: Catalyst Control Center Graphics Full New - (.ATI.) [HKLM][64Bits] -- {2458E345-90BF-A135-A9F6-7B79E5A1B034} =>.ATI
O42 - Logiciel: Catalyst Control Center Graphics Light - (.ATI.) [HKLM][64Bits] -- {9EC8C2B7-74F5-EEDC-E3F2-3E13564ABF8D} =>.ATI
O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.ATI.) [HKLM][64Bits] -- {719C5E05-B9B2-EBBB-766D-2A1245147DF9} =>.ATI
O42 - Logiciel: Catalyst Control Center Graphics Previews Vista - (.ATI.) [HKLM][64Bits] -- {A0306AD8-1D8C-A5BB-6311-81A42370EEB9} =>.ATI
O42 - Logiciel: Catalyst Control Center InstallProxy - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {95F1EE6A-2C0E-5CE9-8042-287E11DFA089} =>.ATI Technologies, Inc.
O42 - Logiciel: Catalyst Control Center Localization All - (.ATI.) [HKLM][64Bits] -- {BA32FA50-7D3C-F111-9E79-619774EDB517} =>.ATI
O42 - Logiciel: ccc-core-static - (.ATI.) [HKLM][64Bits] -- {394B8A28-0984-B687-DC3D-600A83E3D8AB} =>.ATI
O42 - Logiciel: ccc-utility64 - (.ATI.) [HKLM][64Bits] -- {AA5A2780-10FC-913C-B8AA-FE42DFDBAA42} =>.ATI
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E} =>.Microsoft Corporation
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.®
O42 - Logiciel: ControlDeck - (.ASUS.) [HKLM][64Bits] -- {5B65EF64-1DFA-414A-8C94-7BB726158E21} =>.ASUS
O42 - Logiciel: CutePDF Writer 2.8 - (...) [HKLM][64Bits] -- CutePDF Writer Installation =>.Acro Software Inc.®
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink®
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink®
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
O42 - Logiciel: ETDWare PS/2-x64 7.0.5.10_WHQL - (.ELAN Microelectronics Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation®
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited
O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755} =>.ASUS
O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {C9991C9B-0783-452E-8954-AB93E2AB3B80}_is1 =>.Oberon Media, Inc.
O42 - Logiciel: GIMP 2.8.14 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 =>.Jernej Simoncic®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Incredibar Toolbar on IE - (...) [HKLM][64Bits] -- incredibar =>PUP.Optional.IncrediBar
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation®
O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java(TM) 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java(TM) 7 Update 5 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217005FF} =>.Oracle
O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM][64Bits] -- {1111706F-666A-4037-7777-211328764D10} =>.Oracle Corporation
O42 - Logiciel: JMicron Ethernet Adapter NDIS Driver - (.JMicron Technology Corp..) [HKLM][64Bits] -- {96DCEE2F-98EE-4F80-8C0F-7C04D1FB9D7F} =>.JMicron Technology Corp.®
O42 - Logiciel: JMicron Flash Media Controller Driver - (.JMicron Technology Corp..) [HKLM][64Bits] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C} =>.JMicron Technology Corp.®
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A} =>.Microsoft Corporation
O42 - Logiciel: Lexmark 2500 Series - (.Lexmark International, Inc..) [HKLM][64Bits] -- Lexmark 2500 Series =>.Lexmark International, Inc.®
O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 1000 J110 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {EB2ED3E1-CD21-44B3-99FB-6CE104354637} =>.Hewlett-Packard Co.
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 47.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 47.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVC90_x64 - (.Nokia.) [HKLM][64Bits] -- {AB071C8B-873C-459F-ACA9-9EBE03C3E89B} =>.Nokia
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM][64Bits] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D} =>.Nokia
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} =>.Microsoft Corporation
O42 - Logiciel: Nikon File Uploader 2 - (.Nikon.) [HKLM][64Bits] -- {D1E7142C-6BC3-49EB-A71A-E5D7ADAC7599} =>.Nikon
O42 - Logiciel: Nikon Message Center 2 - (.Nikon.) [HKLM][64Bits] -- {B014EE44-9197-4513-9613-71E6EB1B514E} =>.Nikon
O42 - Logiciel: OpenOffice.org 3.2 - (.OpenOffice.org.) [HKLM][64Bits] -- {266517E6-D866-439D-919C-B8B1A52E6080} =>.OpenOffice.org
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2 - (.Nokia.) [HKLM][64Bits] -- 62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F =>.Microsoft Windows®
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM][64Bits] -- {644F4910-E812-49AD-93EC-86828CB81A0D} =>.Nokia
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 =>.Google, Inc.
O42 - Logiciel: Picture Control Utility - (.Nikon.) [HKLM][64Bits] -- {87441A59-5E64-4096-A170-14EFE67200C3} =>.Nikon
O42 - Logiciel: Python 2.4.1 - (...) [HKLM][64Bits] -- Python 2.4.1
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C} =>Riskware.QuickTime
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 12.0 =>.RealNetworks, Inc.®
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} =>.RealNetworks, Inc.
O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} =>.Skype Technologies S.A.
O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: USB2.0 UVC VGA WebCam - (.Sonix.) [HKLM][64Bits] -- USB2.0 UVC VGA WebCam =>.Sonix
O42 - Logiciel: ViewNX 2 - (.Nikon.) [HKLM][64Bits] -- {DDD62492-32A7-412B-8AF1-2CF032AD42E3} =>.Nikon
O42 - Logiciel: VLC media player 2.0.2 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VoiceOver Kit - (.Apple Inc..) [HKLM][64Bits] -- {7C5B4583-7CBF-4289-B195-03B553959DEA} =>.Apple Inc.
O42 - Logiciel: WebPlayerV2 - (.Kreapixel.) [HKLM][64Bits] -- {77236F9C-987C-40EC-832B-5BD6181E4846} =>PUP.Optional.SocialSkinz
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} =>.ASUS
O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2} =>.ASUS
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 =>.Nicolas Coolman

---\\ HKCU & HKLM Software Keys (141) - 30s
HKLM\SOFTWARE\Wow6432Node\5855dad0e738ba40 =>PUP.Optional.Heuristic
HKLM\SOFTWARE\Wow6432Node\Acro Software Inc
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\BrowserMngr =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\CLSYSTEM
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Data Fellows
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\DT Soft
HKLM\SOFTWARE\Wow6432Node\Earth Resource Mapping
HKLM\SOFTWARE\Wow6432Node\ESRI
HKLM\SOFTWARE\Wow6432Node\FLEXlm License Manager
HKLM\SOFTWARE\Wow6432Node\FRANCE TELECOM
HKLM\SOFTWARE\Wow6432Node\GoBoingo
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\GPL Ghostscript
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IB Updater =>PUP.Optional.InstallBrain
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Incredibar.com =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\IncrediMail
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Lexmark
HKLM\SOFTWARE\Wow6432Node\LexmarkInkjet
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MapInfo
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nikon
HKLM\SOFTWARE\Wow6432Node\Nokia
HKLM\SOFTWARE\Wow6432Node\Ntpad
HKLM\SOFTWARE\Wow6432Node\Oberon Media
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OfferBox =>PUP.Optional.OfferBox
HKLM\SOFTWARE\Wow6432Node\OpenOffice.org
HKLM\SOFTWARE\Wow6432Node\Oracle
HKLM\SOFTWARE\Wow6432Node\PC Connectivity Solution
HKLM\SOFTWARE\Wow6432Node\Python
HKLM\SOFTWARE\Wow6432Node\Rainbow Technologies
HKLM\SOFTWARE\Wow6432Node\RealNetworks
HKLM\SOFTWARE\Wow6432Node\Receipts
HKLM\SOFTWARE\Wow6432Node\Reverb
HKLM\SOFTWARE\Wow6432Node\Rule Actions
HKLM\SOFTWARE\Wow6432Node\Safe Software Inc.
HKLM\SOFTWARE\Wow6432Node\Sagem
HKLM\SOFTWARE\Wow6432Node\Seagate Software
HKLM\SOFTWARE\Wow6432Node\SecureDigitalServices
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sonic
HKLM\SOFTWARE\Wow6432Node\Sun Microsystems
HKLM\SOFTWARE\Wow6432Node\tpfmon
HKLM\SOFTWARE\Wow6432Node\Transparent Language, Inc.
HKLM\SOFTWARE\Wow6432Node\Vantage Software Technologies
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\VideoToMp3
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp.
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\5855dad0e738ba40 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\Acro Software Inc
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Alliance MCA
HKCU\SOFTWARE\Analytic Technologies
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\ATK0100
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\AviraSpeedup
HKCU\SOFTWARE\BrowserMngr =>PUP.Optional.Babylon
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\EasyBits
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\ERDAS
HKCU\SOFTWARE\ESRI
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\FissaSearch =>PUP.Optional.OfferBox
HKCU\SOFTWARE\GoBoingo
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\LexmarkInkjet
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magnet
HKCU\SOFTWARE\MapInfo
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nikon
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OfferBox =>PUP.Optional.OfferBox
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\PCTEL
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Plugins
HKCU\SOFTWARE\Pop Kit
HKCU\SOFTWARE\PrintingModule
HKCU\SOFTWARE\QuantumGIS
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VideoToMp3
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\Vodafone
HKCU\SOFTWARE\WideStream =>PUP.Optional.SPointer
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow\Software\Google
HKCU\SOFTWARE\AppDataLow\Software\PriceGong =>PUP.Optional.PriceGong

---\\ Contenu des dossiers Programmes (308) - 41s
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\ATI =>.ATI Technologies, Inc®
O43 - CFD: 18/11/2010 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.®
O43 - CFD: 13/07/2014 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows®
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation®
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\GIMP 2 =>.Jernej Simoncic®
O43 - CFD: 13/10/2010 - [] D -- C:\Program Files\Google
O43 - CFD: 06/05/2011 - [] D -- C:\Program Files\HP =>.Hewlett Packard®
O43 - CFD: 20/12/2015 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation®
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files\java =>.Sun Microsystems, Inc.®
O43 - CFD: 30/01/2012 - [] D -- C:\Program Files\Lexmark 2500 Series =>.Lexmark International, Inc.®
O43 - CFD: 08/10/2010 - [] D -- C:\Program Files\licenses
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\Lx_cats
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 24/11/2010 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\P4G =>.ASUSTeK Computer Inc.®
O43 - CFD: 08/10/2010 - [] D -- C:\Program Files\readmes
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files\redist =>.Microsoft Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\SRS Labs =>.SRS Labs, Inc®
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 18/05/2015 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 27/11/2010 - [] D -- C:\Program Files (x86)\Acro Software =>.Acro Software Inc.®
O43 - CFD: 06/08/2011 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 12/01/2012 - [] D -- C:\Program Files (x86)\Alliance MCA
O43 - CFD: 02/04/2011 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.®
O43 - CFD: 14/08/2011 - [] D -- C:\Program Files (x86)\ArcGIS
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\Avira
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\Boingo =>.Boingo Wireless®
O43 - CFD: 19/01/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 28/12/2011 - [] D -- C:\Program Files (x86)\Conduit =>.Superfluous.Conduit
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink®
O43 - CFD: 01/08/2011 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite =>.DT Soft Ltd®
O43 - CFD: 15/09/2013 - [] D -- C:\Program Files (x86)\DVDVIDEOSOFT
O43 - CFD: 01/08/2011 - [] D -- C:\Program Files (x86)\ESRI
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 27/11/2010 - [] D -- C:\Program Files (x86)\GPLGS
O43 - CFD: 30/01/2012 - [] D -- C:\Program Files (x86)\HP =>.Hewlett Packard®
O43 - CFD: 20/12/2015 - [] D -- C:\Program Files (x86)\Incredibar.com =>PUP.Optional.IncrediBar
O43 - CFD: 29/01/2012 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 20/12/2015 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 29/07/2012 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\JMicron =>.JMicron Technology Corp.®
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files (x86)\JRE =>.Sun Microsystems, Inc.®
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files (x86)\Kaspersky Lab
O43 - CFD: 14/08/2011 - [] D -- C:\Program Files (x86)\Leica Geosystems
O43 - CFD: 30/01/2012 - [] D -- C:\Program Files (x86)\Lexmark 2500 Series =>.Lexmark International, Inc.®
O43 - CFD: 30/01/2012 - [] D -- C:\Program Files (x86)\Lexmark Toolbar
O43 - CFD: 08/08/2015 - [] D -- C:\Program Files (x86)\MediaCoder
O43 - CFD: 28/08/2012 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation®
O43 - CFD: 27/08/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 06/10/2010 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework
O43 - CFD: 24/11/2010 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 24/11/2010 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 25/11/2010 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 01/12/2010 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 22/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 22/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 24/11/2010 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 25/12/2010 - [] D -- C:\Program Files (x86)\Nikon
O43 - CFD: 20/12/2015 - [] D -- C:\Program Files (x86)\OfferBox =>PUP.Optional.OfferBox
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 29/07/2012 - [] D -- C:\Program Files (x86)\Oracle =>.Oracle America, Inc.®
O43 - CFD: 22/04/2011 - [] D -- C:\Program Files (x86)\Orange
O43 - CFD: 20/12/2015 - [] D -- C:\Program Files (x86)\PC Connectivity Solution =>.Microsoft Windows®
O43 - CFD: 27/12/2012 - [] D -- C:\Program Files (x86)\Perion
O43 - CFD: 07/01/2014 - [] D -- C:\Program Files (x86)\Picasa2 =>.Google Inc®
O43 - CFD: 02/04/2011 - [] D -- C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
O43 - CFD: 25/01/2011 - [] D -- C:\Program Files (x86)\Real =>.RealNetworks, Inc.®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 19/01/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 30/03/2011 - [] D -- C:\Program Files (x86)\Transparent
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 10/10/2010 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 18/05/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 22/07/2012 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 06/10/2010 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 28/10/2010 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 21/07/2016 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 10/10/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/10/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
O43 - CFD: 18/11/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boingo
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 18/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 27/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CutePDF
O43 - CFD: 01/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Park
O43 - CFD: 10/10/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 30/01/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 20/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus
O43 - CFD: 30/01/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark 2500 Series
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon
O43 - CFD: 10/10/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 11/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaCoder
O43 - CFD: 30/03/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2
O43 - CFD: 10/10/2010 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.2
O43 - CFD: 22/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange
O43 - CFD: 17/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 01/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.4
O43 - CFD: 02/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 25/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real
O43 - CFD: 19/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs
O43 - CFD: 29/01/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 30/03/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Transparent Language, Inc
O43 - CFD: 27/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 28/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 21/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 06/08/2011 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\Apple
O43 - CFD: 02/04/2011 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 05/12/2010 - [] D -- C:\ProgramData\ASUS
O43 - CFD: 16/06/2010 - [] D -- C:\ProgramData\ATI
O43 - CFD: 02/03/2015 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 27/10/2015 - [] D -- C:\ProgramData\Avira
O43 - CFD: 01/08/2011 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 01/08/2011 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 13/10/2010 - [] D -- C:\ProgramData\DivX
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 20/12/2015 - [] D -- C:\ProgramData\Driver Mender =>.Superfluous.DriverMender
O43 - CFD: 20/12/2015 - [] D -- C:\ProgramData\Driver Whiz =>.Superfluous.DriverWhiz
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\EnterNHelp
O43 - CFD: 14/08/2011 - [] D -- C:\ProgramData\ESRI
O43 - CFD: 10/10/2010 - [] D -- C:\ProgramData\f-secure
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 06/10/2010 - [] D -- C:\ProgramData\fssg
O43 - CFD: 16/06/2010 - [] D -- C:\ProgramData\GoBoingo
O43 - CFD: 05/04/2011 - [] D -- C:\ProgramData\Google
O43 - CFD: 06/05/2011 - [] D -- C:\ProgramData\HP
O43 - CFD: 13/07/2014 - [] D -- C:\ProgramData\Installations
O43 - CFD: 29/01/2012 - [] D -- C:\ProgramData\InstallShield
O43 - CFD: 20/12/2015 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files
O43 - CFD: 01/08/2011 - [] D -- C:\ProgramData\Macrovision
O43 - CFD: 23/10/2010 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 14/05/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 10/06/2012 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\Nikon
O43 - CFD: 16/06/2010 - [] D -- C:\ProgramData\OberonGameConsole
O43 - CFD: 05/04/2011 - [0] D -- C:\ProgramData\Orange
O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\P4G
O43 - CFD: 13/07/2014 - [] D -- C:\ProgramData\PC Suite
O43 - CFD: 01/07/2011 - [] D -- C:\ProgramData\Real
O43 - CFD: 15/04/2011 - [] D -- C:\ProgramData\SafeNet Sentinel
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 08/10/2010 - [] D -- C:\ProgramData\Sun
O43 - CFD: 12/10/2010 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 16/12/2015 - [] D -- C:\ProgramData\Tmp0x0x =>PUP.Optional.WpManager
O43 - CFD: 12/01/2012 - [] D -- C:\ProgramData\tpfmon
O43 - CFD: 30/03/2011 - [] D -- C:\ProgramData\Transparent
O43 - CFD: 25/12/2010 - [] D -- C:\ProgramData\Ultima_T15
O43 - CFD: 06/05/2011 - [] D -- C:\ProgramData\Vodafone
O43 - CFD: 30/03/2011 - [] HDC -- C:\ProgramData\{7D4B3D1D-104E-4507-9123-568BC721B7E2}
O43 - CFD: 02/04/2011 - [] D -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 06/08/2011 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 14/08/2011 - [0] D -- C:\Program Files (x86)\Common Files\AnswerWorks 4.0
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\Common Files\ControlDeck
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 15/09/2013 - [] D -- C:\Program Files (x86)\Common Files\DVDVIDEOSOFT
O43 - CFD: 14/08/2011 - [] D -- C:\Program Files (x86)\Common Files\ESRI
O43 - CFD: 22/04/2011 - [] D -- C:\Program Files (x86)\Common Files\France Telecom
O43 - CFD: 04/05/2011 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 29/07/2012 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 07/02/2012 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 25/12/2010 - [] D -- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 16/06/2010 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 15/11/2011 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 19/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 18/10/2015 - [] D -- C:\Program Files (x86)\Common Files\SPSS
O43 - CFD: 15/05/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 06/10/2010 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 25/01/2011 - [] D -- C:\Program Files (x86)\Common Files\xing shared
O43 - CFD: 23/01/2011 - [] D -- C:\Users\CamS\AppData\Roaming\Adobe
O43 - CFD: 10/08/2012 - [] D -- C:\Users\CamS\AppData\Roaming\Apple Computer
O43 - CFD: 14/07/2012 - [] D -- C:\Users\CamS\AppData\Roaming\Asus WebStorage
O43 - CFD: 06/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\ATI
O43 - CFD: 20/12/2015 - [] D -- C:\Users\CamS\AppData\Roaming\Azureus
O43 - CFD: 01/08/2011 - [] D -- C:\Users\CamS\AppData\Roaming\CyberLink
O43 - CFD: 01/08/2011 - [] D -- C:\Users\CamS\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 04/08/2014 - [] D -- C:\Users\CamS\AppData\Roaming\dvdcss
O43 - CFD: 15/09/2013 - [] D -- C:\Users\CamS\AppData\Roaming\DVDVideoSoft
O43 - CFD: 18/03/2012 - [] D -- C:\Users\CamS\AppData\Roaming\EeeStorageUploader
O43 - CFD: 14/08/2011 - [] D -- C:\Users\CamS\AppData\Roaming\ESRI
O43 - CFD: 13/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Google
O43 - CFD: 01/07/2011 - [] D -- C:\Users\CamS\AppData\Roaming\gtk-2.0
O43 - CFD: 06/05/2011 - [0] D -- C:\Users\CamS\AppData\Roaming\HpUpdate
O43 - CFD: 10/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Identities
O43 - CFD: 22/03/2015 - [] D -- C:\Users\CamS\AppData\Roaming\inkscape
O43 - CFD: 30/01/2012 - [] D -- C:\Users\CamS\AppData\Roaming\Lexmark Productivity Studio
O43 - CFD: 06/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Macromedia
O43 - CFD: 07/02/2011 - [] D -- C:\Users\CamS\AppData\Roaming\MapInfo
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\CamS\AppData\Roaming\Media Center Programs
O43 - CFD: 20/12/2015 - [] SD -- C:\Users\CamS\AppData\Roaming\Microsoft
O43 - CFD: 10/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Mozilla
O43 - CFD: 25/12/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Nikon
O43 - CFD: 14/07/2014 - [] D -- C:\Users\CamS\AppData\Roaming\Nokia
O43 - CFD: 20/12/2015 - [] D -- C:\Users\CamS\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
O43 - CFD: 10/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\OpenOffice.org
O43 - CFD: 14/07/2014 - [] D -- C:\Users\CamS\AppData\Roaming\PC Suite
O43 - CFD: 14/06/2011 - [] D -- C:\Users\CamS\AppData\Roaming\Real
O43 - CFD: 13/05/2016 - [] D -- C:\Users\CamS\AppData\Roaming\Skype
O43 - CFD: 21/08/2011 - [] D -- C:\Users\CamS\AppData\Roaming\skypePM
O43 - CFD: 25/08/2011 - [] D -- C:\Users\CamS\AppData\Roaming\SPSSInc
O43 - CFD: 20/12/2015 - [] D -- C:\Users\CamS\AppData\Roaming\SudrDujr
O43 - CFD: 15/03/2011 - [] D -- C:\Users\CamS\AppData\Roaming\Tinn-R
O43 - CFD: 18/07/2016 - [] D -- C:\Users\CamS\AppData\Roaming\vlc
O43 - CFD: 04/05/2011 - [] D -- C:\Users\CamS\AppData\Roaming\Vodafone
O43 - CFD: 28/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\WinRAR
O43 - CFD: 21/07/2016 - [] D -- C:\Users\CamS\AppData\Roaming\ZHP
O43 - CFD: 20/12/2015 - [] D -- C:\Users\CamS\AppData\Local\85CE8E80-1450024981-81DF-3C7C-485B398D70D4
O43 - CFD: 08/10/2010 - [] D -- C:\Users\CamS\AppData\Local\Adobe
O43 - CFD: 02/04/2011 - [] D -- C:\Users\CamS\AppData\Local\Apple
O43 - CFD: 02/04/2011 - [] D -- C:\Users\CamS\AppData\Local\Apple Computer
O43 - CFD: 06/10/2010 - [0] SHD -- C:\Users\CamS\AppData\Local\Application Data
O43 - CFD: 22/09/2012 - [] D -- C:\Users\CamS\AppData\Local\Apps
O43 - CFD: 05/12/2010 - [] D -- C:\Users\CamS\AppData\Local\ASUS
O43 - CFD: 06/10/2010 - [] D -- C:\Users\CamS\AppData\Local\ATI
O43 - CFD: 15/09/2013 - [] D -- C:\Users\CamS\AppData\Local\avgchrome
O43 - CFD: 30/01/2016 - [] D -- C:\Users\CamS\AppData\Local\CEF
O43 - CFD: 14/12/2015 - [] D -- C:\Users\CamS\AppData\Local\Chromium
O43 - CFD: 14/06/2015 - [] D -- C:\Users\CamS\AppData\Local\CutePDF Writer
O43 - CFD: 22/09/2012 - [0] D -- C:\Users\CamS\AppData\Local\Deployment
O43 - CFD: 21/07/2016 - [] D -- C:\Users\CamS\AppData\Local\Diagnostics
O43 - CFD: 19/06/2015 - [0] D -- C:\Users\CamS\AppData\Local\ElevatedDiagnostics
O43 - CFD: 13/12/2015 - [0] SHD -- C:\Users\CamS\AppData\Local\EmieBrowserModeList
O43 - CFD: 13/12/2015 - [0] SHD -- C:\Users\CamS\AppData\Local\EmieSiteList
O43 - CFD: 13/12/2015 - [0] SHD -- C:\Users\CamS\AppData\Local\EmieUserList
O43 - CFD: 09/10/2013 - [] D -- C:\Users\CamS\AppData\Local\Facebook
O43 - CFD: 22/03/2015 - [] D -- C:\Users\CamS\AppData\Local\fontconfig
O43 - CFD: 31/10/2015 - [] D -- C:\Users\CamS\AppData\Local\gegl-0.2
O43 - CFD: 27/10/2015 - [] D -- C:\Users\CamS\AppData\Local\Google
O43 - CFD: 21/07/2016 - [] D -- C:\Users\CamS\AppData\Local\gtk-2.0
O43 - CFD: 02/06/2015 - [] D -- C:\Users\CamS\AppData\Local\GWX
O43 - CFD: 06/10/2010 - [0] SHD -- C:\Users\CamS\AppData\Local\Historique
O43 - CFD: 06/05/2011 - [] D -- C:\Users\CamS\AppData\Local\HP
O43 - CFD: 25/11/2012 - [] D -- C:\Users\CamS\AppData\Local\Macromedia
O43 - CFD: 07/02/2011 - [] D -- C:\Users\CamS\AppData\Local\MapInfo
O43 - CFD: 08/08/2015 - [] D -- C:\Users\CamS\AppData\Local\Microsoft
O43 - CFD: 21/09/2012 - [] D -- C:\Users\CamS\AppData\Local\Microsoft Games
O43 - CFD: 07/03/2011 - [] D -- C:\Users\CamS\AppData\Local\Microsoft Help
O43 - CFD: 04/08/2015 - [] D -- C:\Users\CamS\AppData\Local\Mozilla
O43 - CFD: 25/12/2010 - [] D -- C:\Users\CamS\AppData\Local\Nikon
O43 - CFD: 10/10/2010 - [] D -- C:\Users\CamS\AppData\Local\Orange
O43 - CFD: 06/10/2010 - [] D -- C:\Users\CamS\AppData\Local\Power2Go
O43 - CFD: 27/10/2015 - [] D -- C:\Users\CamS\AppData\Local\Programs
O43 - CFD: 22/01/2016 - [0] D -- C:\Users\CamS\AppData\Local\Skype
O43 - CFD: 10/10/2010 - [] D -- C:\Users\CamS\AppData\Local\SRS Labs
O43 - CFD: 21/07/2016 - [] D -- C:\Users\CamS\AppData\Local\Temp
O43 - CFD: 14/12/2015 - [0] D -- C:\Users\CamS\AppData\Local\Tempfolder
O43 - CFD: 06/10/2010 - [0] SHD -- C:\Users\CamS\AppData\Local\Temporary Internet Files
O43 - CFD: 06/04/2012 - [] D -- C:\Users\CamS\AppData\Local\VirtualStore
O43 - CFD: 06/04/2011 - [] D -- C:\Users\CamS\AppData\Local\WMTools Downloaded Files
O43 - CFD: 04/05/2011 - [] D -- C:\Users\CamS\AppData\Local\{DA6A30CA-2668-4F5F-93A5-9BDA19E3CCC4}
O43 - CFD: 07/01/2014 - [0] D -- C:\Users\CamS\AppData\Local\Programs\Common
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 20/12/2015 - [] RD -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 15/02/2011 - [] D -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Analytic Technologies
O43 - CFD: 18/11/2011 - [0] D -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audiograbber
O43 - CFD: 20/12/2015 - [] D -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard =>PUP.Optional.BitGuard
O43 - CFD: 10/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 20/12/2015 - [] RD -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 28/10/2010 - [] D -- C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 19/03/2011 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (1) - 1s
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (...) -- C:\Users\CamS\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)

---\\ Liste des pilotes du système (64) - 7s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2010/03/02 10:45:23 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [1594368] =>.Atheros Communications, Inc.
O58 - SDL:2009/09/30 03:34:31 A . (.ATI Technologies, Inc. - ATI High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtiHdmi.sys [121872] =>.ATI Technologies, Inc®
O58 - SDL:2010/01/22 03:13:23 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [6233088] =>.ATI Technologies Inc.
O58 - SDL:2010/01/22 02:07:55 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [161280] =>.Advanced Micro Devices, Inc.
O58 - SDL:2010/01/22 03:13:23 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atipmdag.sys [6233088] =>.ATI Technologies Inc.
O58 - SDL:2009/05/13 18:07:20 A . (.ASUS - ATK0100 ACPI Utility.) -- C:\Windows\System32\drivers\ATK64AMD.sys [15928] =>.ASUSTeK Computer Inc.®
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/10/30 04:50:03 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\Windows\System32\drivers\CHDRT64.sys [704512] =>.Conexant Systems Inc.
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2011/08/01 14:39:45 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [254528] =>.DT Soft Ltd®
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2010/01/18 14:37:57 A . (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Windows\System32\drivers\ETD.sys [128512] =>.ELAN Microelectronic Corp.
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2008/03/07 13:46:30 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [112512] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/09/17 21:54:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation®
O58 - SDL:2010/11/20 15:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2010/03/03 13:51:39 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [540696] =>.Intel Corporation®
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/08/18 10:23:31 A . (.JMicron Technology Corporation - JMicron JMB38X Flash Media Controller Drive.) -- C:\Windows\System32\drivers\jmcr.sys [143472] =>.JMicron Technology Corp.®
O58 - SDL:2010/02/25 05:26:57 A . (.JMicron Technology Corp. - JMicron NDIS6.20 Driver.) -- C:\Windows\System32\drivers\JME.sys [115312] =>.JMicron Technology Corp.®
O58 - SDL:2009/07/20 11:29:39 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [15416] =>.ASUSTeK Computer Inc.®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2009/06/18 21:18:10 A . (.Windows (R) Win 7 DDK provider - ASUS CopyProtect driver.) -- C:\Windows\System32\drivers\lullaby.sys [15928] =>.ASUSTeK Computer Inc.®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2012/06/11 12:33:46 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfdx64.sys [26112] =>.Nokia
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2007/05/14 17:06:18 A . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\Windows\System32\drivers\RimUsb_AMD64.sys [27520] =>.Research In Motion Limited
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:35:57 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSG664.sys [56832] =>.Silicon Integrated Systems Corp.
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2008/12/29 11:14:27 A . (.Copyright 2004-2007 - USBCAMD for Sonix UVC.) -- C:\Windows\System32\drivers\sncduvc.sys [35456]
O58 - SDL:2009/08/20 04:41:37 A . (.Copyright 2004-2008 - UVC Camera Streaming Driver.) -- C:\Windows\System32\drivers\snp2uvc.sys [1800192]
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2011/02/18 16:36:58 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [51712] =>.Apple, Inc.
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 21s
O61 - LFC: 2016/07/21 11:33:59 A . (..) -- C:\Users\CamS\AppData\Local\ATI\ACE\Manifest.Bin [26869]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (11) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\CamS\AppData\Local\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\CamS\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\CamS\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\CamS\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (5) - 13s
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [DefaultScope] - (MyStart Search) - http://mystart.incredibar.com/ =>PUP.Optional.IncrediBar
O69 - SBI: SearchScopes [HKLM] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (DVDVideoSoftTB Customized Web Search) - http://search.conduit.com/ =>.Superfluous.Conduit

---\\ Enumère les services démarrés par Svchost (32) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2607104] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (36) - 8s
O87 - FAEL: "TCP Query User{DB714978-2399-460E-B429-F23C6E110353}C:\program files (x86)\limewire\limewire.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\limewire\limewire.exe (.not file.)
O87 - FAEL: "UDP Query User{FB216413-52C5-49D2-90B5-AF4EEBD7262C}C:\program files (x86)\limewire\limewire.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\limewire\limewire.exe (.not file.)
O87 - FAEL: "TCP Query User{06C50868-E09F-4989-9C94-E7E9AF18EF58}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "UDP Query User{3CDBBB1B-7348-4214-8124-438639989ACC}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "TCP Query User{443C82BD-E976-47C0-AF51-48AD52C9FCCC}C:\program files (x86)\orange\telephone sur pc\telephonesurpc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\orange\telephone sur pc\telephonesurpc.exe (.not file.)
O87 - FAEL: "UDP Query User{476A1D6E-8A5E-4180-97E0-BE9A71DA631D}C:\program files (x86)\orange\telephone sur pc\telephonesurpc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\orange\telephone sur pc\telephonesurpc.exe (.not file.)
O87 - FAEL: "TCP Query User{BC75B1CB-D802-451D-891D-1A899B579122}C:\program files (x86)\google\google earth\client\googleearth.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\google\google earth\client\googleearth.exe (.not file.)
O87 - FAEL: "UDP Query User{CC84711A-8E3E-4E7B-8CF5-380E9FD59790}C:\program files (x86)\google\google earth\client\googleearth.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\google\google earth\client\googleearth.exe (.not file.)
O87 - FAEL: "TCP Query User{52106BAD-D54D-48C1-90CF-39038F4A3F28}C:\program files (x86)\google\google earth\plugin\geplugin.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\google\google earth\plugin\geplugin.exe (.not file.)
O87 - FAEL: "UDP Query User{8C1E17C2-5941-4F21-966D-533C026E1008}C:\program files (x86)\google\google earth\plugin\geplugin.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\google\google earth\plugin\geplugin.exe (.not file.)
O87 - FAEL: "{D74C1E35-94E8-47E2-B1FA-5F1DAC48E03B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\ma-config.com\x64\maconfservice.exe (.not file.)
O87 - FAEL: "{51A6B92D-AD29-48A9-AE2E-49A6D9D6CC81}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ma-config.com\x64\maconfservice.exe (.not file.)
O87 - FAEL: "TCP Query User{93BCC443-C7B7-430B-A02F-92C72E6C3353}C:\program files (x86)\lexmark 2500 series\lxddamon.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\lexmark 2500 series\lxddamon.exe
O87 - FAEL: "UDP Query User{0A3FC060-2BDE-49FD-B031-E3ADF62C270C}C:\program files (x86)\lexmark 2500 series\lxddamon.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\lexmark 2500 series\lxddamon.exe
O87 - FAEL: "TCP Query User{09665F07-8A63-46F2-B7B3-AA9733E5159E}C:\program files (x86)\google\google earth\client\googleearth.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\google\google earth\client\googleearth.exe (.not file.)
O87 - FAEL: "UDP Query User{18B25BC7-30EF-42C8-82F8-5A5D0916A1C3}C:\program files (x86)\google\google earth\client\googleearth.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\google\google earth\client\googleearth.exe (.not file.)
O87 - FAEL: "{4B35136A-ABAE-4F44-90CF-A101832FE7DB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.)
O87 - FAEL: "{B3D1D05A-CE77-44D7-AFDA-16FAF29C3809}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.)
O87 - FAEL: "{7BA2330D-431E-4DB4-A986-539C093BBDDC}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\SPSSInc\Statistics17\statistics.com (.not file.)
O87 - FAEL: "{C93F0D1E-70B5-45B4-96FB-0C720F8605EB}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\SPSSInc\Statistics17\statistics.exe (.not file.)
O87 - FAEL: "{3F1366F1-654A-47CA-A9B3-93CC062CC20E}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\SPSSInc\Statistics17\statistics.com (.not file.)
O87 - FAEL: "{09DC816B-34CD-4A1A-BCD5-DE9B9074C430}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\SPSSInc\Statistics17\SPSSWinWrapIDE.exe (.not file.)
O87 - FAEL: "{2678C900-E14D-4EF3-B9A4-9069EF30CC1E}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\SPSSInc\Statistics17\statistics.exe (.not file.)
O87 - FAEL: "{876DA745-E7CB-440D-8CA6-54E4013B49F8}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\SPSSInc\Statistics17\SPSSWinWrapIDE.exe (.not file.)
O87 - FAEL: "{227812D2-2045-4044-B373-A94EA0185A0E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86) (x86)\Lexmark 2500 Series\App4R.exe
O87 - FAEL: "{F099783C-44D6-40CD-9A9E-DD2786124E6D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86) (x86)\Lexmark 2500 Series\App4R.exe
O87 - FAEL: "{D96A96E0-1665-4A3C-B801-B4FA121E9386}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86) (x86)\Lexmark 2500 Series\App4R.exe
O87 - FAEL: "{575C00AF-1C91-459D-B632-2180DC16188A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86) (x86)\Lexmark 2500 Series\App4R.exe
O87 - FAEL: "{E0241100-203A-43B3-9FA6-09742F85518E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Lexmark 2500 Series\lxddamon.exe
O87 - FAEL: "{8C29DFB6-5BD2-4F7D-AFC4-F43617DB7FB8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Lexmark 2500 Series\lxddamon.exe
O87 - FAEL: "TCP Query User{946D72D2-E89D-40F3-B960-0222C8A94C98}C:\program files (x86)\spssinc\statistics17\statistics.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\spssinc\statistics17\statistics.exe (.not file.)
O87 - FAEL: "UDP Query User{4D76E50A-73D2-4550-A1C6-02BB65722253}C:\program files (x86)\spssinc\statistics17\statistics.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\spssinc\statistics17\statistics.exe (.not file.)
O87 - FAEL: "TCP Query User{D50BCFAD-A875-448A-BCF0-D5E31D1A0D34}C:\users\cams\appdata\roaming\spotify\spotify.exe" [In-None-P6-TRUE] .(...) -- C:\users\cams\appdata\roaming\spotify\spotify.exe (.not file.)
O87 - FAEL: "UDP Query User{83ADA5AE-E5B0-454F-9D6C-3D531AC93F91}C:\users\cams\appdata\roaming\spotify\spotify.exe" [In-None-P17-TRUE] .(...) -- C:\users\cams\appdata\roaming\spotify\spotify.exe (.not file.)
O87 - FAEL: "TCP Query User{6CDD7FDA-6100-4A9E-840B-237951274614}C:\users\cams\appdata\roaming\spotify\spotify.exe" [In-None-P6-TRUE] .(...) -- C:\users\cams\appdata\roaming\spotify\spotify.exe (.not file.)
O87 - FAEL: "UDP Query User{A606170C-B774-42C7-A713-B7465499B484}C:\users\cams\appdata\roaming\spotify\spotify.exe" [In-None-P17-TRUE] .(...) -- C:\users\cams\appdata\roaming\spotify\spotify.exe (.not file.)

---\\ Scan Additionnel (36) - 0s
C:\Windows\System32\Tasks\DGChrome5372 Watcher =>PUP.Optional.InstallBrain
C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{57752979-A1C9-4C02-856B-FBB27AC4E02C} =>Riskware.QuickTime
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{77236F9C-987C-40EC-832B-5BD6181E4846} =>PUP.Optional.SocialSkinz
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\incredibar =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{57752979-A1C9-4C02-856B-FBB27AC4E02C} =>Riskware.QuickTime
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{77236F9C-987C-40EC-832B-5BD6181E4846} =>PUP.Optional.SocialSkinz
HKLM\SOFTWARE\Wow6432Node\5855dad0e738ba40 =>PUP.Optional.Heuristic
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\BrowserMngr =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\IB Updater =>PUP.Optional.InstallBrain
HKLM\SOFTWARE\Wow6432Node\Incredibar.com =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Wow6432Node\OfferBox =>PUP.Optional.OfferBox
HKCU\SOFTWARE\5855dad0e738ba40 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\BrowserMngr =>PUP.Optional.Babylon
HKCU\SOFTWARE\FissaSearch =>PUP.Optional.OfferBox
HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail
HKCU\SOFTWARE\OfferBox =>PUP.Optional.OfferBox
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\WideStream =>PUP.Optional.SPointer
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow\Software\PriceGong =>PUP.Optional.PriceGong
C:\Program Files (x86)\Conduit =>.Superfluous.Conduit
C:\Program Files (x86)\Incredibar.com =>PUP.Optional.IncrediBar
C:\Program Files (x86)\OfferBox =>PUP.Optional.OfferBox
C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
C:\ProgramData\Driver Mender =>.Superfluous.DriverMender
C:\ProgramData\Driver Whiz =>.Superfluous.DriverWhiz
C:\ProgramData\Tmp0x0x =>PUP.Optional.WpManager
C:\Users\CamS\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
C:\Users\CamS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard =>PUP.Optional.BitGuard
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} =>PUP.Optional.IncrediBar
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} =>.Superfluous.Conduit

---\\ Récapitulatif des éléments trouvés sur votre station (18) - 0s
http://www.nicolascoolman.fr/?p=600 =>PUP.Optional.InstallBrain
http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/?p=175 =>PUP.Optional.IncrediBar
https://www.nicolascoolman.info/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
http://www.nicolascoolman.fr/?p=195 =>PUP.Optional.SocialSkinz
https://www.nicolascoolman.info/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Heuristic
http://www.nicolascoolman.fr/?p=345 =>PUP.Optional.OfferBox
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.IncrediMail
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Softonic
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=205 =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/?p=387 =>PUP.Optional.PriceGong
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.DriverMender
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.DriverWhiz
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy
http://www.nicolascoolman.fr/?p=403 =>PUP.Optional.BitGuard

~ End of the scan, 75269 items in 00h11mn57s (1094)(0)

Publicité


Signaler le contenu de ce document

Publicité