~ ZHPDiag v2015.7.14.89 Par Nicolas Coolman (2015/07/14) ~ Démarré par TWINS (Administrator) (2015/07/14 17:14:16) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\TWINS\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\TWINS\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) ~ Windows 7, 64-bit (Build 7600) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v43.0.2357.132 MSIE: Internet Explorer v8.0.7600.16385 ---\\ Logiciels de protection (1) - 0s Malwarebytes Anti-Malware version 2.1.8.1057 ---\\ Surveillance de Logiciels (2) - 0s Adobe Flash Player 17 ActiveX Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) ~ Total physical RAM (KB): 4127096 ~ System Restore: Activé (Enable) ~ System drive C: has 124 GB free of 156 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: INFO-PC ~ User Name: TWINS ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 124 GB free of 156 GB (System) ~ Drive D: has 101 GB free of 156 GB ~ Drive E: has 58 GB free of 164 GB ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.C235A51CB740E45FFA0EBFB9BAFCDA64] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2868224] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] [MD5.B1037F0131C9A010D611F6914E03CD92] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1193472] [MD5.132328DF455B0028F13BF0ABEE51A63A] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [389120] [MD5.] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [231936] [MD5.F2521C3173E6027B3FBD5E44272BDF6C] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] [MD5.B9384E03479D2506BC924C16A3DB87BC] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [500224] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] [MD5.83D2D75E1EFB81B3450C18131443F7DB] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] [MD5.3F1DC527070ACB87E40AFE46EF6DA749] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] [MD5.0A49913402747A0B67DE940FB42CBDBB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] [MD5.CFDCD8CA87C2A657DEBC150AC35B5E08] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [157184] [MD5.9162B273A44AB9DCE5B44362731D062A] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [259072] [MD5.356698A13C4630D5B31C37378D469196] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1659984] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] [MD5.87A6E852A22991580D6D39ADC4790463] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [130048] [MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165376] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] [MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [99840] [MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [294992] ---\\ Processus lancés (15) - 1s [MD5.953195F47B1AF3C7875EC324D98C17EC] - (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Service.) -- c:\Program Files (x86)\AVG\AVG2015\avgrsa.exe [1110440] [PID.448] [MD5.DDB142E2F82CEE854AC8CBECC6D24D91] - (.AVG Technologies CZ, s.r.o. - AVG Scanning Core Module - Server Part.) -- C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe [923048] [PID.488] [MD5.00BDDA7936154C0D6946F059FFD2FD6F] - (.Copyright (C) 2015 - WtuSyste Application.) -- C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1195920] [PID.768] =>Toolbar.AVGSafeGuard [MD5.0CDEA5ACBB69C45F642E96D81E906CCD] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [296448] [PID.1272] [MD5.AA224B1BA5B2093DE97D6FCDDCF5D13B] - (.DigitalPersona, Inc. - DigitalPersona Local Host.) -- C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [481104] [PID.1960] [MD5.A6FB9DB8F1A86861D955FD6975977AE0] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\IDT\WDM\AESTSr64.exe [89600] [PID.2312] [MD5.4C4A576818EA028257C624AE36FF7A03] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400] [PID.2360] [MD5.684B36CA4067DA7000CF95771A3CF0E7] - (.Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [53920] [PID.2420] [MD5.E7FAE655001C18A7ECBD58B3BA971BF9] - (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) -- C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3518376] [PID.2492] [MD5.FE9742B20DD5FCF12D245D08BF5AAF98] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [314304] [PID.2560] [MD5.238BD8F8EF852815E6D3AA9E83BC30CC] - (.AVG Secure Search - ToolbarU Application.) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe [1874320] [PID.2512] =>Toolbar.AVGSearch [MD5.F97961FD74E83E3E96DB45B69B33B157] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [3105144] [PID.2892] [MD5.72A707DFBE911E0D9F19D25DD399FC34] - (.Copyright (C) 2013 - loggings Application.) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\loggingserver.exe [168336] [PID.3096] =>Toolbar.AVGSearch [MD5.B5BB2B365A884533F6228B198D7E16B1] - (.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe [1464232] [PID.3864] [MD5.93684ADA04C91702A6F2B71A37D90835] - (.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2015\avgemca.exe [795048] [PID.3772] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (2) - 0s G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (3) - 0s P2 - FPN: [HKLM] [@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin] - (...) -- C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.7.0\\npsitesafety.dll =>Toolbar.AVGSearch P2 - FPN: [HKLM] [@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6] - (.Yahoo! Inc..) -- C:\Program Files (x86)\Yahoo!\Shared\npYState.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.3] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer, Proxy Management (R5) (3) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ Browser Helper Object de navigateur (BHO) (O2) (5) - 0s O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} (Orphean) O2 - BHO: ???????@Mail.Ru [64Bits] - {8984B388-A5BB-4DF7-B274-77B879E179DB} (Orphean) O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} (Orphean) O2 - BHO: (no name) [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} (Orphean) O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} (Orphean) ---\\ Internet Explorer Toolbars (O3) (2) - 1s O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.) O3 - Toolbar: 0xE80D9009CA1D3F44924326FF581438AF - [HKCU]{09900DE8-1DCA-443F-9243-26FF581438AF} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du sytème (O4) (1) - 0s O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\AVG2015\avgui.exe ---\\ Raccourcis Global Startup (O4G) (4) - 3s O4 - GS\Desktop [Administrateur]: MapSource.lnk . (.GARMIN Corp. - MapSource Application.) C:\Garmin\MapSource.exe => O4 - GS\Desktop [HelpAssistant]: MapSource.lnk . (.GARMIN Corp. - MapSource Application.) C:\Garmin\MapSource.exe => O4 - GS\Desktop [Invité]: MapSource.lnk . (.GARMIN Corp. - MapSource Application.) C:\Garmin\MapSource.exe => O4 - GS\Desktop [TWINS]: MapSource.lnk . (.GARMIN Corp. - MapSource Application.) C:\Garmin\MapSource.exe => ---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = domain.name O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = domain.name O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = domain.name ---\\ Liste des services NT non Microsoft et non désactivés (O23) (20) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\IDT\WDM\AESTSr64.exe O23 - Service: Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security (DpHost) . (.DigitalPersona, Inc. - DigitalPersona Local Host.) - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe O23 - Service: hpHotkeyMonitor (hpHotkeyMonitor) . (.Hewlett-Packard Company - hpHotkeyMonitor Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe O23 - Service: HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\system32\Hpservice.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @C:\Windows\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: (vToolbarUpdater18.7.0) . (.AVG Secure Search - ToolbarU Application.) - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe =>Toolbar.AVGSearch O23 - Service: WtuSystemSupport (WtuSystemSupport) . (.Copyright (C) 2015 - WtuSyste Application.) - C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe =>Toolbar.AVGSafeGuard ---\\ Tâches planifiées en automatique (O39) (14) - 1s [MD5.0C5C64AB1402F93013B4A24D09D2EC90] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268464] [MD5.00000000000000000000000000000000] [APT] [avast! Emergency Update] (.Adobe Systems Incorporated.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe (.not file.) [0] [MD5.0C03FB91E17987EED93F60007B08DAA0] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [MD5.0C03FB91E17987EED93F60007B08DAA0] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [MD5.B63E5C7807334A3A8F731062F15462CC] [APT] [Programme de mise … jour en ligne de Adobe] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Programme de mise à jour en ligne de Adobe [3694] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{3024A47B-EC98-4084-BB60-BD46B6107249} [3110] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{4692AA69-1ABE-4351-9F28-C413E7FAC488} [3112] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{6C46927B-62FF-4D85-8320-B1BC04EF7210} [3112] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{77D0E6B6-4607-447D-AACD-CC4B8EE9926F} [3182] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{78A21D99-A210-48CA-890E-BECD973C38C0} [3138] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{84E05C01-77D7-4F52-9FBD-3734DDC67600} [3282] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{C3222C83-F44B-49D4-BC45-9D95EE27D7CA} [2968] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{E654AC53-91A9-453D-A6AA-8641248AE964} [2866] ---\\ Logiciels installés (O42) (59) - 7s O42 - Logiciel: AVG 2015 - (.AVG Technologies.) [HKLM][64Bits] -- AVG O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: Bluetooth Win7 Suite (64) - (.Atheros Communications.) [HKLM][64Bits] -- {230D1595-57DA-4933-8C4E-375797EBB7E1} O42 - Logiciel: AVG 2015 - (.AVG Technologies.) [HKLM][64Bits] -- {3B3927B0-0A21-4B4C-9FF3-AB4C42E2AF79} O42 - Logiciel: HP ProtectTools Security Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {422BA615-2133-4DC0-8673-09C8CC7557F2} O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {7D75E270-0888-4331-96CC-B2A823B1C370} O42 - Logiciel: HP HotKey Support - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {8263B36C-A41E-4422-9031-1AE3641263AE} O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} O42 - Logiciel: AVG 2015 - (.AVG Technologies.) [HKLM][64Bits] -- {ACCD4860-2B38-4301-B7C4-F27F567FE3EA} O42 - Logiciel: Adobe Flash Player 17 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM][64Bits] -- AIMP3 O42 - Logiciel: ArcSoft TotalMedia - (.ArcSoft.) [HKLM][64Bits] -- ArcSoft TotalMedia O42 - Logiciel: AVG Web TuneUp - (.AVG Technologies.) [HKLM][64Bits] -- AVG Web TuneUp =>Toolbar.AVGSafeGuard O42 - Logiciel: Ela-Salaty - (.Ela-Salaty.) [HKLM][64Bits] -- Ela-Salaty O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Helicopter Game - (.MyPlayCity, Inc..) [HKLM][64Bits] -- Helicopter Game_is1 O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: HSPA USB Modem - (.Nom de votre société.) [HKLM][64Bits] -- InstallShield_{06ADE2A0-E46A-4A84-A211-64CF50520185} O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} O42 - Logiciel: K-Lite Codec Pack 8.0.0 (Full) - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: SuperCopier2 - (...) [HKLM][64Bits] -- SuperCopier2 O42 - Logiciel: VLC media player 2.0.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: Archiveur WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger O42 - Logiciel: Your Uninstaller! 2010 - (.URSoft, Inc..) [HKLM][64Bits] -- YU2010_is1 O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: HSPA USB Modem - (.Nom de votre société.) [HKLM][64Bits] -- {06ADE2A0-E46A-4A84-A211-64CF50520185} O42 - Logiciel: Larousse Médical - (...) [HKLM][64Bits] -- {11DA34AE-A565-4659-86BE-11252557783F} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: JMicron Flash Media Controller Driver - (.JMicron Technology Corp..) [HKLM][64Bits] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C} O42 - Logiciel: TL-WN721N/TL-WN722N Driver - (.TP-LINK.) [HKLM][64Bits] -- {38A1E3ED-D913-41D2-9953-A93D5ACE3ADF} O42 - Logiciel: HP Webcam Driver - (.Sonix.) [HKLM][64Bits] -- {399C37FB-08AF-493B-BFED-20FBD85EDF7F} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: ArcSoft TotalMedia - (.ArcSoft.) [HKLM][64Bits] -- {4114A073-7385-4742-8A5E-A5788FAC838F} O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Garmin Trip and Waypoint Manager v4 - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {67B9AF41-C0B9-4960-84D9-A61D23DE85D8} O42 - Logiciel: Macromedia Flash Player 8 - (.Macromedia.) [HKLM][64Bits] -- {6815FCDD-401D-481E-BA88-31B4754C2B46} O42 - Logiciel: MainConcept DTV Decoder Pro - (.MainConcept GmbH.) [HKLM][64Bits] -- {793FCE60-DE5E-4977-A942-A7B69A45B17D} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM][64Bits] -- {981029E0-7FC9-4CF3-AB39-6F133621921A} O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Reader X (10.1.4) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AA1000000001} O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} O42 - Logiciel: Nero 7 Ultra Edition - (.Nero AG.) [HKLM][64Bits] -- {CF097717-F174-4144-954A-FBC4BF301036} O42 - Logiciel: Skype™ 4.2 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {D103C4BA-F905-437A-8049-DB24763BBE36} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Realtek Ethernet Controller All-In-One Windows Driver - (.Realtek.) [HKLM][64Bits] -- {F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F} ---\\ HKCU & HKLM Software Keys (156) - 7s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\Ahead HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\ArcSoft HKLM\SOFTWARE\Wow6432Node\Atheros HKLM\SOFTWARE\Wow6432Node\Audible HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\Avg HKLM\SOFTWARE\Wow6432Node\AVG Tuneup HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\BenVista HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\Computer Systems HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Debug HKLM\SOFTWARE\Wow6432Node\DigitalPersona HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\EFREESKY SOFTWARE HKLM\SOFTWARE\Wow6432Node\FastStone Soft HKLM\SOFTWARE\Wow6432Node\FCTB000063009 HKLM\SOFTWARE\Wow6432Node\FLEXnet HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\Gabest HKLM\SOFTWARE\Wow6432Node\Garmin HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\GRETECH HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Havas Interactive HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\HSPA HKLM\SOFTWARE\Wow6432Node\IDT HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\InterVideo HKLM\SOFTWARE\Wow6432Node\Kaydara HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\Larousse HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Mail.Ru HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Ontrack HKLM\SOFTWARE\Wow6432Node\PegasusImaging HKLM\SOFTWARE\Wow6432Node\Pinnacle Systems HKLM\SOFTWARE\Wow6432Node\QueTek HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Runtime Software HKLM\SOFTWARE\Wow6432Node\Serif HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Sonix HKLM\SOFTWARE\Wow6432Node\Swearware HKLM\SOFTWARE\Wow6432Node\TDS HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\TP-LINK HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WIBU-SYSTEMS HKLM\SOFTWARE\Wow6432Node\Wise Solutions HKLM\SOFTWARE\Wow6432Node\wtu HKLM\SOFTWARE\Wow6432Node\yahoo HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\3rd Eye Solutions HKCU\SOFTWARE\Ada99 HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\Amigo HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\Avg HKCU\SOFTWARE\Avg Secure Update HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\BenVista HKCU\SOFTWARE\Big Fish Games HKCU\SOFTWARE\Code Sector HKCU\SOFTWARE\Computer Systems HKCU\SOFTWARE\CoreAAC HKCU\SOFTWARE\COWON HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\dahanco HKCU\SOFTWARE\Data HKCU\SOFTWARE\DigitalPersona HKCU\SOFTWARE\DigitalPictureRecovery2 HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\Ela-Salaty HKCU\SOFTWARE\FastStone Soft HKCU\SOFTWARE\FLEXnet HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Garmin HKCU\SOFTWARE\GetData HKCU\SOFTWARE\Google HKCU\SOFTWARE\GRETECH HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JufSoft HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\LAV HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madFlac HKCU\SOFTWARE\Mail.Ru HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Media Research Group HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MultimediaPhoto HKCU\SOFTWARE\NeoAspire HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\O&O HKCU\SOFTWARE\Object Rescue HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PearlMountainSoft HKCU\SOFTWARE\Perfect Uninstaller HKCU\SOFTWARE\PhotoInstrument HKCU\SOFTWARE\Pinnacle Systems HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Project07 HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\SamLab.ws HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\Serif HKCU\SOFTWARE\SFX TEAM HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SoftLogica HKCU\SOFTWARE\Sunisoft HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\user HKCU\SOFTWARE\Ut Video Codec Suite HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VOB HKCU\SOFTWARE\Wget HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Xpom HKCU\SOFTWARE\yahoo HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Mail.Ru HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (264) - 7s O43 - CFD: 2014/08/16 19:28:27 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2012/12/27 13:47:54 - [] D -- C:\Program Files (x86)\Adobe Flash Player 10 O43 - CFD: 2014/06/24 19:31:43 - [] D -- C:\Program Files (x86)\AIMP3 O43 - CFD: 2013/04/22 11:20:55 - [] D -- C:\Program Files (x86)\AnyReader O43 - CFD: 2011/11/17 13:30:00 - [] D -- C:\Program Files (x86)\ArcSoft O43 - CFD: 2013/04/20 12:58:48 - [] D -- C:\Program Files (x86)\Athan O43 - CFD: 2011/11/17 13:06:51 - [] D -- C:\Program Files (x86)\Atheros O43 - CFD: 2015/06/07 15:57:35 - [] D -- C:\Program Files (x86)\Auslogics O43 - CFD: 2015/07/12 17:49:50 - [] D -- C:\Program Files (x86)\AVG O43 - CFD: 2015/07/14 04:32:33 - [] D -- C:\Program Files (x86)\AVG Web TuneUp =>Toolbar.AVGSafeGuard O43 - CFD: 2013/03/10 14:19:23 - [] D -- C:\Program Files (x86)\Axon Data O43 - CFD: 2011/11/17 12:58:56 - [] D -- C:\Program Files (x86)\Bluetooth Suite O43 - CFD: 2011/11/17 13:06:44 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 2014/11/13 22:48:39 - [] D -- C:\Program Files (x86)\CodeMeter O43 - CFD: 2015/07/14 16:59:15 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2012/04/06 19:39:18 - [] D -- C:\Program Files (x86)\CS Odessa O43 - CFD: 2011/11/17 13:54:47 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 2014/11/18 07:28:46 - [] D -- C:\Program Files (x86)\Digital Photo Recovery O43 - CFD: 2012/05/05 09:49:24 - [] D -- C:\Program Files (x86)\EarthTime O43 - CFD: 2014/08/16 21:05:28 - [] D -- C:\Program Files (x86)\EASEUS O43 - CFD: 2013/04/20 12:53:57 - [] D -- C:\Program Files (x86)\Ela-Salaty O43 - CFD: 2015/06/15 23:26:08 - [] D -- C:\Program Files (x86)\GetData O43 - CFD: 2015/07/12 20:52:50 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2013/04/21 16:29:02 - [0] D -- C:\Program Files (x86)\GRETECH O43 - CFD: 2011/11/17 13:31:40 - [] D -- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 2014/08/14 16:56:24 - [] D -- C:\Program Files (x86)\HSPA USB Modem O43 - CFD: 2015/07/12 14:57:24 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2011/11/17 13:04:15 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2011/11/17 13:04:37 - [] D -- C:\Program Files (x86)\JMicron O43 - CFD: 2011/12/18 15:43:57 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 2014/08/21 21:16:13 - [0] D -- C:\Program Files (x86)\Kroll Ontrack O43 - CFD: 2012/08/26 10:52:32 - [] D -- C:\Program Files (x86)\Larousse O43 - CFD: 2012/10/23 11:20:25 - [] D -- C:\Program Files (x86)\MainConcept O43 - CFD: 2015/07/14 04:05:41 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 2013/04/20 13:01:55 - [] D -- C:\Program Files (x86)\Mgutil O43 - CFD: 2011/12/18 15:42:28 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2011/11/17 13:41:06 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2011/11/17 13:41:04 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 2011/11/17 13:39:35 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2011/11/17 13:41:14 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 2011/11/17 13:40:55 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/07/12 18:06:03 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2011/11/17 13:41:10 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/07/12 18:55:33 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2012/06/14 13:37:06 - [0] D -- C:\Program Files (x86)\MyPlayCity Toolbar O43 - CFD: 2013/03/02 18:37:46 - [] D -- C:\Program Files (x86)\MyPlayCity.com O43 - CFD: 2011/11/17 13:50:11 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 2012/10/26 09:23:45 - [] D -- C:\Program Files (x86)\Paprikari O43 - CFD: 2012/04/27 12:54:15 - [] D -- C:\Program Files (x86)\Pirate Poppers =>Trojan.Vonteera O43 - CFD: 2011/11/17 13:05:24 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2011/11/17 13:05:00 - [] D -- C:\Program Files (x86)\Renesas Electronics O43 - CFD: 2013/04/29 12:46:35 - [0] D -- C:\Program Files (x86)\Runtime Software O43 - CFD: 2014/08/01 18:04:18 - [] D -- C:\Program Files (x86)\SAM CoDeC Pack O43 - CFD: 2011/11/17 13:38:20 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2012/06/17 09:19:21 - [] D -- C:\Program Files (x86)\SuperCopier2 O43 - CFD: 2012/06/17 08:09:49 - [] D -- C:\Program Files (x86)\TeraCopy O43 - CFD: 2009/07/14 05:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2011/11/17 13:36:02 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2012/08/26 11:34:21 - [] D -- C:\Program Files (x86)\Votre santé au quotidien O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2011/12/18 15:42:23 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2011/12/18 15:42:13 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2009/07/14 06:32:40 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2011/12/18 15:38:32 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2012/04/20 08:56:30 - [] D -- C:\Program Files (x86)\Yahoo! O43 - CFD: 2015/07/12 14:29:46 - [] D -- C:\Program Files (x86)\Your Uninstaller 2010 O43 - CFD: 2011/11/17 12:59:07 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2011/11/17 12:49:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/06/24 19:31:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3 O43 - CFD: 2013/04/22 09:24:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyReader O43 - CFD: 2011/11/17 13:30:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft TotalMedia Suite O43 - CFD: 2015/07/14 02:15:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG O43 - CFD: 2013/04/22 11:21:14 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BadCopy Pro O43 - CFD: 2011/11/17 13:54:51 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam O43 - CFD: 2015/01/06 19:45:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Photo Recovery [Demo] O43 - CFD: 2012/04/06 19:40:08 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastSatfinder O43 - CFD: 2011/11/17 12:49:25 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2012/04/04 12:38:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin O43 - CFD: 2014/03/19 23:25:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2011/11/17 13:31:51 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2014/08/14 16:53:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB Modem O43 - CFD: 2011/11/17 13:04:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2011/12/18 15:43:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2012/11/08 04:57:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Larousse O43 - CFD: 2009/07/14 05:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/14 04:05:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2011/11/17 13:41:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2013/03/02 18:37:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPlayCity.com O43 - CFD: 2011/11/17 13:53:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition O43 - CFD: 2012/04/20 17:14:53 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\O&O Software O43 - CFD: 2013/04/22 09:35:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObjectRescue Pro O43 - CFD: 2014/11/22 07:10:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paprikari O43 - CFD: 2011/11/17 13:38:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2013/04/21 21:42:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftLogica O43 - CFD: 2015/07/12 14:11:52 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2009/07/14 16:35:02 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/04/03 19:56:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2011/12/18 15:42:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2011/12/18 15:38:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2011/12/18 15:42:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger O43 - CFD: 2015/07/12 14:29:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller 2010 O43 - CFD: 2014/08/16 19:30:08 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2011/11/17 13:50:44 - [] D -- C:\ProgramData\Ahead O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2013/03/28 09:58:33 - [] HD -- C:\ProgramData\ArcSoft O43 - CFD: 2011/11/17 13:06:59 - [] D -- C:\ProgramData\Atheros O43 - CFD: 2015/04/23 23:16:36 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 2015/07/14 04:32:38 - [] D -- C:\ProgramData\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 2015/07/14 04:33:07 - [] D -- C:\ProgramData\AVG Security Toolbar =>Toolbar.AVGSearch O43 - CFD: 2015/07/12 18:06:08 - [] D -- C:\ProgramData\AVG Web TuneUp =>Toolbar.AVGSafeGuard O43 - CFD: 2015/07/14 02:15:28 - [] D -- C:\ProgramData\AVG2015 O43 - CFD: 2012/08/04 13:21:53 - [] D -- C:\ProgramData\Big Finish O43 - CFD: 2011/11/17 12:51:45 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2012/10/23 11:55:29 - [] D -- C:\ProgramData\CMUV O43 - CFD: 2012/11/08 04:49:36 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2012/03/16 10:13:25 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2011/11/17 12:51:45 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2011/11/17 13:31:35 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 2012/04/16 13:53:16 - [] D -- C:\ProgramData\FloodLightGames O43 - CFD: 2015/07/12 20:13:24 - [] D -- C:\ProgramData\Google O43 - CFD: 2015/07/11 15:25:25 - [] D -- C:\ProgramData\Guard.Mail.Ru O43 - CFD: 2011/11/17 16:38:27 - [] D -- C:\ProgramData\HPQLOG O43 - CFD: 2011/11/17 13:31:48 - [] D -- C:\ProgramData\Macrovision O43 - CFD: 2015/07/14 04:05:39 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2011/11/17 12:51:45 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/07/14 15:22:41 - [] D -- C:\ProgramData\MFAData O43 - CFD: 2012/03/29 08:21:09 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2014/07/30 16:00:28 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2012/04/04 13:45:08 - [] D -- C:\ProgramData\Mixesoft O43 - CFD: 2011/11/17 12:51:45 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2011/11/17 13:50:11 - [] D -- C:\ProgramData\Nero O43 - CFD: 2014/07/27 14:16:05 - [] D -- C:\ProgramData\Pinnacle O43 - CFD: 2013/04/19 13:21:41 - [] D -- C:\ProgramData\Pinnacle Studio Ultimate Collection O43 - CFD: 2015/07/14 15:57:45 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 2011/11/17 13:38:15 - [] D -- C:\ProgramData\Skype O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2012/10/23 11:20:33 - [] D -- C:\ProgramData\Technisat O43 - CFD: 2015/07/14 16:54:56 - [] AD -- C:\ProgramData\Temp O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/07/11 13:50:33 - [] D -- C:\ProgramData\TP-LINK O43 - CFD: 2012/11/08 04:50:31 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2011/12/18 15:42:53 - [] D -- C:\ProgramData\Yahoo! O43 - CFD: 2012/11/08 04:56:49 - [0] SHD -- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} O43 - CFD: 2012/11/08 04:56:49 - [0] SHD -- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} O43 - CFD: 2014/08/16 19:28:33 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2011/11/17 13:50:35 - [] D -- C:\Program Files (x86)\Common Files\Ahead O43 - CFD: 2011/11/17 13:30:10 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 2011/11/17 12:58:22 - [] D -- C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 2015/07/14 04:32:45 - [] D -- C:\Program Files (x86)\Common Files\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 2012/12/27 14:00:00 - [] D -- C:\Program Files (x86)\Common Files\Bcgsoft O43 - CFD: 2011/11/17 13:41:04 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2014/08/21 21:14:59 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2011/11/17 13:03:33 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2011/12/18 15:42:18 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2013/04/19 13:22:31 - [] D -- C:\Program Files (x86)\Common Files\Pinnacle O43 - CFD: 2011/11/17 13:02:43 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2011/11/17 13:38:15 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2011/11/17 13:00:41 - [] D -- C:\Program Files (x86)\Common Files\SNP2UVC O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2011/11/17 13:39:30 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2011/12/18 15:41:03 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2012/04/20 16:39:59 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 2012/05/05 09:43:50 - [] D -- C:\Users\TWINS\AppData\Roaming\.marble O43 - CFD: 2014/08/18 21:20:28 - [] D -- C:\Users\TWINS\AppData\Roaming\.oit O43 - CFD: 2014/08/16 19:29:15 - [] D -- C:\Users\TWINS\AppData\Roaming\Adobe O43 - CFD: 2013/03/28 09:50:31 - [] D -- C:\Users\TWINS\AppData\Roaming\Ahead O43 - CFD: 2014/12/02 14:24:25 - [] D -- C:\Users\TWINS\AppData\Roaming\AIMP3 O43 - CFD: 2013/03/28 09:58:47 - [] D -- C:\Users\TWINS\AppData\Roaming\ArcSoft O43 - CFD: 2015/07/14 04:00:47 - [] D -- C:\Users\TWINS\AppData\Roaming\AVG2015 O43 - CFD: 2012/12/23 21:48:44 - [] D -- C:\Users\TWINS\AppData\Roaming\Awem O43 - CFD: 2012/08/04 13:21:53 - [] D -- C:\Users\TWINS\AppData\Roaming\Big Finish O43 - CFD: 2012/07/28 11:04:55 - [] D -- C:\Users\TWINS\AppData\Roaming\CasualMechanics O43 - CFD: 2012/12/23 18:38:57 - [] D -- C:\Users\TWINS\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant O43 - CFD: 2014/06/24 19:35:45 - [0] D -- C:\Users\TWINS\AppData\Roaming\COWON O43 - CFD: 2012/03/16 10:13:10 - [] D -- C:\Users\TWINS\AppData\Roaming\CyberLink O43 - CFD: 2011/11/17 16:38:25 - [] D -- C:\Users\TWINS\AppData\Roaming\DigitalPersona O43 - CFD: 2012/03/21 15:15:35 - [0] D -- C:\Users\TWINS\AppData\Roaming\DMCache O43 - CFD: 2012/07/17 15:01:26 - [] D -- C:\Users\TWINS\AppData\Roaming\ERS Game Studios O43 - CFD: 2011/11/17 13:31:41 - [] D -- C:\Users\TWINS\AppData\Roaming\FLEXnet O43 - CFD: 2012/04/16 13:53:16 - [] D -- C:\Users\TWINS\AppData\Roaming\FloodLightGames O43 - CFD: 2012/04/16 14:12:26 - [] D -- C:\Users\TWINS\AppData\Roaming\Freeze Tag O43 - CFD: 2014/03/20 06:29:50 - [] D -- C:\Users\TWINS\AppData\Roaming\Google O43 - CFD: 2011/11/17 13:01:08 - [0] D -- C:\Users\TWINS\AppData\Roaming\Hewlett-Packard O43 - CFD: 2012/11/08 04:56:49 - [] D -- C:\Users\TWINS\AppData\Roaming\hpqLog O43 - CFD: 2011/11/17 12:52:18 - [] D -- C:\Users\TWINS\AppData\Roaming\Identities O43 - CFD: 2012/11/10 11:02:31 - [] D -- C:\Users\TWINS\AppData\Roaming\IDT O43 - CFD: 2011/11/17 13:00:28 - [] D -- C:\Users\TWINS\AppData\Roaming\InstallShield O43 - CFD: 2011/11/17 13:13:55 - [] D -- C:\Users\TWINS\AppData\Roaming\Intel Corporation O43 - CFD: 2012/08/12 10:20:37 - [] D -- C:\Users\TWINS\AppData\Roaming\Kunnafoni O43 - CFD: 2012/07/30 22:53:52 - [] D -- C:\Users\TWINS\AppData\Roaming\LegacyInteractive O43 - CFD: 2012/03/18 15:06:15 - [] D -- C:\Users\TWINS\AppData\Roaming\Macromedia O43 - CFD: 2011/11/17 13:31:45 - [] D -- C:\Users\TWINS\AppData\Roaming\Macrovision O43 - CFD: 2015/07/11 15:25:34 - [] D -- C:\Users\TWINS\AppData\Roaming\MailProducts O43 - CFD: 2009/07/14 16:35:02 - [0] D -- C:\Users\TWINS\AppData\Roaming\Media Center Programs O43 - CFD: 2012/04/19 15:14:52 - [] D -- C:\Users\TWINS\AppData\Roaming\Media Player Classic O43 - CFD: 2015/06/16 17:27:20 - [] SD -- C:\Users\TWINS\AppData\Roaming\Microsoft O43 - CFD: 2013/04/05 10:57:06 - [] D -- C:\Users\TWINS\AppData\Roaming\Mozilla O43 - CFD: 2012/07/31 09:43:51 - [] D -- C:\Users\TWINS\AppData\Roaming\My Games O43 - CFD: 2012/12/27 14:50:33 - [] D -- C:\Users\TWINS\AppData\Roaming\Netscape O43 - CFD: 2012/12/27 14:50:18 - [] D -- C:\Users\TWINS\AppData\Roaming\Photodex O43 - CFD: 2012/07/28 10:55:05 - [] D -- C:\Users\TWINS\AppData\Roaming\PopCap Games O43 - CFD: 2013/04/21 18:02:38 - [0] D -- C:\Users\TWINS\AppData\Roaming\Samsung O43 - CFD: 2013/04/05 10:57:22 - [] D -- C:\Users\TWINS\AppData\Roaming\Serif O43 - CFD: 2015/06/16 17:45:23 - [0] D -- C:\Users\TWINS\AppData\Roaming\Skype O43 - CFD: 2011/11/17 13:13:51 - [] D -- C:\Users\TWINS\AppData\Roaming\Synaptics O43 - CFD: 2012/06/17 08:09:36 - [] D -- C:\Users\TWINS\AppData\Roaming\TeraCopy O43 - CFD: 2012/03/18 13:35:04 - [] D -- C:\Users\TWINS\AppData\Roaming\Thinstall O43 - CFD: 2015/07/12 17:50:34 - [] D -- C:\Users\TWINS\AppData\Roaming\TuneUp Software O43 - CFD: 2015/07/12 14:29:48 - [] D -- C:\Users\TWINS\AppData\Roaming\URSoft O43 - CFD: 2013/04/28 21:57:59 - [] D -- C:\Users\TWINS\AppData\Roaming\ViquaSoft O43 - CFD: 2015/06/15 15:44:21 - [] D -- C:\Users\TWINS\AppData\Roaming\vlc O43 - CFD: 2011/12/18 15:39:11 - [0] D -- C:\Users\TWINS\AppData\Roaming\WinRAR O43 - CFD: 2012/04/20 08:56:30 - [] D -- C:\Users\TWINS\AppData\Roaming\Yahoo! O43 - CFD: 2015/07/14 17:14:18 - [] D -- C:\Users\TWINS\AppData\Roaming\ZHP O43 - CFD: 2014/08/01 18:00:39 - [] D -- C:\Users\TWINS\AppData\Roaming\{DCD48218-E972-4D0C-9E5F-43462BC13E3B} O43 - CFD: 2014/08/16 19:27:04 - [] D -- C:\Users\TWINS\AppData\Local\Adobe O43 - CFD: 2013/05/10 15:24:04 - [] D -- C:\Users\TWINS\AppData\Local\Ahead O43 - CFD: 2011/11/17 12:51:54 - [0] SHD -- C:\Users\TWINS\AppData\Local\Application Data O43 - CFD: 2012/04/20 14:52:35 - [] D -- C:\Users\TWINS\AppData\Local\Apps O43 - CFD: 2013/03/28 09:58:28 - [] D -- C:\Users\TWINS\AppData\Local\ArcSoft O43 - CFD: 2015/07/12 18:06:10 - [] D -- C:\Users\TWINS\AppData\Local\AVG Web TuneUp =>Toolbar.AVGSafeGuard O43 - CFD: 2015/07/14 04:30:42 - [] D -- C:\Users\TWINS\AppData\Local\Avg2015 O43 - CFD: 2012/06/17 08:35:44 - [0] D -- C:\Users\TWINS\AppData\Local\Axialis O43 - CFD: 2011/11/17 13:13:45 - [] D -- C:\Users\TWINS\AppData\Local\BMExplorer O43 - CFD: 2015/07/14 04:07:33 - [] D -- C:\Users\TWINS\AppData\Local\CrashDumps O43 - CFD: 2012/03/16 10:13:10 - [] D -- C:\Users\TWINS\AppData\Local\CyberLink O43 - CFD: 2011/11/17 16:38:25 - [] D -- C:\Users\TWINS\AppData\Local\DigitalPersona O43 - CFD: 2013/04/19 13:22:14 - [] D -- C:\Users\TWINS\AppData\Local\Downloaded Installations O43 - CFD: 2015/06/16 17:21:19 - [] D -- C:\Users\TWINS\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/07/12 20:32:24 - [] D -- C:\Users\TWINS\AppData\Local\Google O43 - CFD: 2011/11/17 12:51:54 - [0] SHD -- C:\Users\TWINS\AppData\Local\Historique O43 - CFD: 2012/08/12 10:20:37 - [] D -- C:\Users\TWINS\AppData\Local\Kunnafoni O43 - CFD: 2015/07/12 17:39:41 - [] D -- C:\Users\TWINS\AppData\Local\MFAData O43 - CFD: 2015/06/16 17:27:20 - [] D -- C:\Users\TWINS\AppData\Local\Microsoft O43 - CFD: 2012/10/27 16:44:35 - [] D -- C:\Users\TWINS\AppData\Local\Microsoft Games O43 - CFD: 2011/11/17 13:39:24 - [0] D -- C:\Users\TWINS\AppData\Local\Microsoft Help O43 - CFD: 2014/05/10 21:15:34 - [0] D -- C:\Users\TWINS\AppData\Local\NFS Underground 2 O43 - CFD: 2013/05/08 07:07:01 - [] D -- C:\Users\TWINS\AppData\Local\Pinnacle O43 - CFD: 2013/03/03 16:51:27 - [] D -- C:\Users\TWINS\AppData\Local\Programs O43 - CFD: 2015/07/14 17:14:14 - [] D -- C:\Users\TWINS\AppData\Local\Temp O43 - CFD: 2011/11/17 12:51:54 - [0] SHD -- C:\Users\TWINS\AppData\Local\Temporary Internet Files O43 - CFD: 2012/03/18 13:10:08 - [] D -- C:\Users\TWINS\AppData\Local\Thinstall O43 - CFD: 2011/11/17 12:52:09 - [0] D -- C:\Users\TWINS\AppData\Local\VirtualStore O43 - CFD: 2009/07/14 05:54:32 - [] RD -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2011/11/17 12:52:40 - [] RD -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/05/10 21:15:25 - [] D -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2012/10/23 11:20:26 - [] D -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MainConcept O43 - CFD: 2009/07/14 05:49:38 - [] RD -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/11/22 07:42:32 - [0] D -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Paprikari O43 - CFD: 2015/04/23 23:27:56 - [] D -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recuva O43 - CFD: 2015/07/14 15:18:10 - [] RD -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2012/06/17 09:19:22 - [] D -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2 O43 - CFD: 2011/12/18 15:38:32 - [] D -- C:\Users\TWINS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (29) - 0s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\AthBtTray [Key] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe O53 - SMSR:HKLM\...\startupreg\AtherosBtStack [Key] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe O53 - SMSR:HKLM\...\startupreg\DTRun [Key] . (.ArcSoft Inc. - ArcSoft TotalMedia Theatre.) -- C:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O53 - SMSR:HKLM\...\startupreg\HSPALauncher [Key] . (.Copyright (C) 2010 - HSDPALauncher MFC Application.) -- C:\Program Files (x86)\HSPA USB Modem\HSPALauncher.exe O53 - SMSR:HKLM\...\startupreg\IAStorIcon [Key] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O53 - SMSR:HKLM\...\startupreg\MailRuUpdater [Key] . (...) -- C:\Users\TWINS\AppData\Local\Mail.Ru\MailRuUpdater.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Messenger (Yahoo!) [Key] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O53 - SMSR:HKLM\...\startupreg\NUSB3MON [Key] . (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O53 - SMSR:HKLM\...\startupreg\QLBController [Key] . (.Hewlett-Packard Company - QLBController.) -- C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe O53 - SMSR:HKLM\...\startupreg\RadioRage AppIntegrator 32-bit [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\2.bin\AppIntegrator.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RadioRage AppIntegrator 64-bit [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\2.bin\AppIntegrator64.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RadioRage EPM Support [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\2.bin\4jmedint.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RadioRage Home Page Guard 64 bit [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\1.bin\AppIntegrator64.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RadioRage Search Scope Monitor [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\1.bin\4jsrchmn.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RadioRage_4j Browser Plugin Loader [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\1.bin\4jbrmon.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RadioRage_4j Browser Plugin Loader 64 [Key] . (...) -- C:\PROGRA~2\RADIOR~2\bar\1.bin\4jbrmon64.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O53 - SMSR:HKLM\...\startupreg\SuperCopier2.exe [Key] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe O53 - SMSR:HKLM\...\startupreg\swg [Key] . (...) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\SysTrayApp [Key] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe O53 - SMSR:HKLM\...\startupreg\vProt [Key] . (.Copyright (C) 2012 - VProtect Application.) -- C:\Program Files (x86)\AVG Web TuneUp\vprot.exe =>Toolbar.AVGSafeGuard O53 - SMSR:HKLM\...\startupreg\YouCam Mirage [Key] . (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe O53 - SMSR:HKLM\...\startupreg\YouCam Tray [Key] . (.CyberLink Corp. - CyberLink YouCam Tray.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe ---\\ Liste des pilotes du système (SDL) (O58) (90) - 4s O58 - SDL:2011/01/26 16:01:00 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [43320] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [106576] O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [28752] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2011/01/08 08:16:24 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2698240] O58 - SDL:2011/04/20 03:07:48 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athurx.sys [1930240] O58 - SDL:2015/03/11 12:16:06 A . (.AVG Technologies CZ, s.r.o. - AVG File Vault Driver.) -- C:\Windows\System32\drivers\avgdiska.sys [162784] O58 - SDL:2015/06/26 09:49:10 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\Windows\System32\drivers\avgidsdrivera.sys [293296] O58 - SDL:2015/05/12 14:36:54 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\Windows\System32\drivers\avgidsha.sys [253408] O58 - SDL:2015/06/16 15:55:04 A . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\Windows\System32\drivers\avgldx64.sys [259040] O58 - SDL:2015/05/07 13:50:22 A . (.AVG Technologies CZ, s.r.o. - AVG Logging Driver.) -- C:\Windows\System32\drivers\avgloga.sys [378336] O58 - SDL:2015/06/10 16:38:48 A . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\Windows\System32\drivers\avgmfx64.sys [226784] O58 - SDL:2015/03/20 12:18:18 A . (.AVG Technologies CZ, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\Windows\System32\drivers\avgrkx64.sys [40928] O58 - SDL:2015/05/12 14:39:14 A . (.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) -- C:\Windows\System32\drivers\avgtdia.sys [281568] O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2011/01/06 20:07:26 A . (.Atheros - Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [298144] O58 - SDL:2011/01/06 20:07:26 A . (.Atheros - Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [28832] O58 - SDL:2011/01/06 20:07:28 A . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [36000] O58 - SDL:2011/01/06 20:07:30 A . (.Atheros - Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [201376] O58 - SDL:2011/01/06 20:07:30 A . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [55456] O58 - SDL:2011/01/06 20:07:30 A . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [154272] O58 - SDL:2011/01/06 20:07:32 A . (.Atheros - BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [279200] O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2010/08/20 10:49:06 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\Windows\System32\drivers\clwvd.sys [31088] O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2008/08/29 17:54:30 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [118144] O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2006/02/20 18:25:16 A . (.GARMIN Corp. - grmn0200 driver.) -- C:\Windows\System32\drivers\grmn0200.sys [17536] O58 - SDL:2006/04/11 19:51:08 A . (.GARMIN Corp. - grmn0400.) -- C:\Windows\System32\drivers\grmn0400.sys [16512] O58 - SDL:2006/07/11 19:50:24 A . (.GARMIN Corp. - grmn1200.) -- C:\Windows\System32\drivers\grmn1200.sys [11776] O58 - SDL:2003/09/23 14:42:34 A . (.Walter Oney Software - Generic WDM Support Driver.) -- C:\Windows\System32\drivers\grmngen.sys [17024] O58 - SDL:2003/09/23 14:42:34 A . (.GARMIN Corp. - grmnusb.sys.) -- C:\Windows\System32\drivers\grmnusb.sys [7296] O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2010/10/20 02:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] O58 - SDL:2011/01/26 16:01:00 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [30008] O58 - SDL:2010/12/02 17:02:58 A . (.Hewlett-Packard Company - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\HpqKbFiltr.sys [25912] O58 - SDL:2009/07/14 02:47:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [77888] O58 - SDL:2011/01/13 02:51:44 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [439320] O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410688] O58 - SDL:2011/03/26 05:17:50 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12262336] O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2010/10/15 12:28:18 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [317440] O58 - SDL:2011/01/31 11:04:42 A . (.JMicron Technology Corporation - JMicron PCIe Flash Media Controller Driver.) -- C:\Windows\System32\drivers\jmcr.sys [174168] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2005/09/23 22:18:34 A . (.Pinnacle Systems GmbH - Pinnacle Marvin Discrete Bus Enumerator.) -- C:\Windows\System32\drivers\MarvinBus64.sys [261120] O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] O58 - SDL:2015/07/14 17:02:46 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2015/06/18 08:41:56 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] O58 - SDL:2010/05/10 09:09:34 A . (.PLX Technology, Inc. (visit www.PlxTech.com) - PLX's IRP, power and PnP management driver.) -- C:\Windows\System32\drivers\NcGen_AMD64.sys [35416] O58 - SDL:2010/05/10 09:09:34 A . (.PLX Technology, Inc. (visit www.PlxTech.com) - Remote PCI (RPCI) driver library (amd64).) -- C:\Windows\System32\drivers\NcRemotePci_AMD64.sys [34904] O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2010/12/10 22:50:36 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [80384] O58 - SDL:2010/12/10 22:50:36 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [181248] O58 - SDL:2009/07/14 02:48:27 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [149056] O58 - SDL:2009/07/14 02:45:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [167488] O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2010/11/30 17:32:38 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [406632] O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2010/12/21 10:21:14 A . (.Copyright 2004-2007 - USBCAMD for Sonix UVC.) -- C:\Windows\System32\drivers\sncduvc.sys [40064] O58 - SDL:2010/12/21 10:21:16 A . (.Copyright 2004-2010 - UVC Camera Streaming Driver.) -- C:\Windows\System32\drivers\snp2uvc.sys [1826048] O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2011/01/27 10:52:00 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt64.sys [520192] O58 - SDL:2011/02/04 04:59:06 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [1413680] O58 - SDL:2015/07/14 15:58:29 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [37624] O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] O58 - SDL:2011/11/17 13:32:03 A . (...) -- C:\Windows\System32\drivers\wdiadh.sys [3120] O58 - SDL:2011/04/20 03:07:48 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\athurx.sys [1930240] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (3) - 14s O61 - LFC: 2015/07/12 14:56:33 A . (.AVG Technologies.) -- C:\Users\TWINS\Desktop\avg_avct_x64_all_2015_5557a8402.exe [174022504] O61 - LFC: 2015/07/14 16:55:13 R . (.Swearware.) -- C:\Users\TWINS\Desktop\ComboFix.exe [5632449] O61 - LFC: 2015/07/14 15:54:37 A . (..) -- C:\Users\TWINS\Desktop\RogueKillerX64.exe [21971528] ---\\ Associations Shell Spawning (O67) (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (3) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} [DefaultScope] - (AVG Secure Search) - http://mysearch.avg.com/ ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [235520] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [776192] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [845824] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [676864] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [343552] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [706560] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\system32\qmgr.dll [848384] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [369664] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [565760] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [104960] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1104384] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [208384] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (12) - 1s O87 - FAEL: "{A888B2FC-AB2F-4267-BEFD-2B19AC9F354C}" [In-None-P6-TRUE] .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O87 - FAEL: "{981B1780-1DEE-4FBD-B9B5-DDEFFBDF30B7}" [In-None-P17-TRUE] .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe O87 - FAEL: "{15095086-7920-4D84-9029-EEB91A9882C3}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe O87 - FAEL: "{5C28837E-3212-4F55-BD28-6E02FAD8F501}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe O87 - FAEL: "{6298EDBB-2065-4105-9B1C-2B6EE358A406}" [In-None-P6-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe O87 - FAEL: "{9851A6FC-03FD-47A4-B9E9-C0B1BF2D7760}" [In-None-P17-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG Online Shield Service.) -- C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe O87 - FAEL: "{B3132509-2DBB-4D72-94B9-19BAA8875D4E}" [In-None-P6-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG Diagnostics.) -- C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe O87 - FAEL: "{173E39D8-2BFB-4BDA-A0D5-1545902DC2C0}" [In-None-P17-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG Diagnostics.) -- C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe O87 - FAEL: "{780C38D9-0D6E-41C0-9441-68957EEC34C3}" [In-None-P6-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG Installer Application.) -- C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe O87 - FAEL: "{8B18BE25-C0B0-4FCA-8911-01E2B7D3675A}" [In-None-P17-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG Installer Application.) -- C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe O87 - FAEL: "{859EF9EF-EDF1-4F09-9ADC-13F783DC0C87}" [In-None-P6-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2015\avgemca.exe O87 - FAEL: "{E795317D-5468-4540-A7B8-C1DCC75880FA}" [In-None-P17-TRUE] .(.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\AVG2015\avgemca.exe ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (28) - 11s SS - Demand [2010/03/18 11:19:26] [ 113152] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe SR - Auto [2012/07/27 21:51:26] [ 63960] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - Demand [2015/07/11 14:17:15] [ 268464] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - Auto [2009/03/03 11:42:00] [ 89600] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\IDT\WDM\AESTSr64.exe SR - Auto [2011/01/06 20:08:38] [ 138400] Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe SR - Auto [2011/01/06 20:06:56] [ 53920] AtherosSvc (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe SR - Auto [2015/07/07 14:35:34] [ 3518376] AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe SR - Auto [2015/07/07 14:28:04] [ 314304] AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe SR - Auto [2013/11/27 12:26:14] [ 3105144] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe SR - Auto [2011/02/11 20:07:16] [ 481104] @C:\Program Files\Hewlett-Packard\HP ProtectTools Security (DpHost) . (.DigitalPersona, Inc..) - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe SS - Auto [2015/07/11 14:03:01] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - Demand [2015/07/11 14:03:01] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - Demand [2011/01/12 11:12:06] [ 36864] HP ProtectTools Service (HP ProtectTools Service) . (.Hewlett-Packard Development Company, L.P.) - C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe SR - Auto [2011/01/11 10:57:16] [ 92216] HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe SR - Auto [2011/01/28 15:27:06] [ 281656] hpHotkeyMonitor (hpHotkeyMonitor) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe SR - Demand [2011/01/11 10:52:32] [ 788536] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe SR - Auto [// ::] [ 30520] HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\system32\Hpservice.exe SR - Auto [2011/01/26 18:00:00] [ 13336] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe SS - Demand [2004/10/22 02:24:18] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe SR - Auto [2011/01/17 20:42:02] [ 326168] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SS - Auto [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe SS - Demand [2007/06/29 19:16:56] [ 800040] NBService (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe SS - Demand [2007/06/27 19:04:00] [ 279848] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe SR - Auto [2011/01/27 10:52:00] [ 296448] @C:\Windows\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv64.exe SR - Auto [2011/01/17 20:42:04] [ 2656280] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SR - Auto [2015/07/14 04:32:21] [ 1874320] (vToolbarUpdater18.7.0) . (.AVG Secure Search.) - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe SR - Auto [2015/07/14 04:32:21] [ 1195920] WtuSystemSupport (WtuSystemSupport) . (.Copyright (C) 2015.) - C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe ---\\ Scan Additionnel (O88) (18) - 0s C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe =>Toolbar.AVGSafeGuard C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe =>Toolbar.AVGSearch C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\loggingserver.exe =>Toolbar.AVGSearch HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.7.0 =>Toolbar.AVGSearch HKLM\SYSTEM\CurrentControlSet\Services\WtuSystemSupport =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\Program Files (x86)\Pirate Poppers =>Trojan.Vonteera C:\ProgramData\AVG Secure Search =>Toolbar.AVGSearch C:\ProgramData\AVG Security Toolbar =>Toolbar.AVGSearch C:\ProgramData\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\Program Files (x86)\Common Files\AVG Secure Search =>Toolbar.AVGSearch C:\Users\TWINS\AppData\Local\AVG Web TuneUp =>Toolbar.AVGSafeGuard C:\Program Files (x86)\AVG Web TuneUp\vprot.exe =>Toolbar.AVGSafeGuard ---\\ Récapitulatif des éléments trouvées sur votre station (4) - 0s http://www.nicolascoolman.fr/blog =>Toolbar.AVGSafeGuard http://www.nicolascoolman.fr/blog =>Toolbar.AVGSearch http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/trojan-vonteera/ =>Trojan.Vonteera ~ End of the scan, 28744 items in 56 seconds (889)(0)()