~ ZHPDiag v2015.8.31.131 Par Nicolas Coolman (2015/08/31) ~ Démarré par Utilisateur (Administrator) (2015/09/01 10:42:23) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Utilisateur.WIN-QA1LPCHUG38\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v44.0.2403.157 MSIE: Internet Explorer v11.0.9600.17937 ---\\ Informations sur les produits Windows (9) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : CJ8YG Windows License : OK ~ Windows Remaining Initializations Number : 1000 Windows Automatic Updates : OK (Demand) Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 0s Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender (Activate) ---\\ Logiciels d'optimisation (1) - 0s CCleaner v5.09 ---\\ Surveillance de Logiciels (1) - 0s Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4070.68 MB (71% free) ~ System Restore: Activé (Enable) ~ System drive C: has 421 GB free of 475 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: WIN-QA1LPCHUG38 ~ User Name: Utilisateur ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 0s ~ Drive C: has 421 GB free of 475 GB (System) ---\\ Etat du Centre de Sécurité Windows (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 0s [MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368] © [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] © [MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920] © [MD5.C555B5C8142844DED9E3BD94E6313000] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2427904] © [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416] © [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] © [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] © [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200] © [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] © [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] © [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] © [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] © [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] © [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] © [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] © [MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408] © [MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624] © [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] © [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] © [MD5.1BD3022FD6E450B00DE560265638FD2A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] © [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] © [MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520] © [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] © ---\\ Processus lancés (16) - 1s [MD5.690EB331346D7ADFDA18E50042DEA4B4] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984] [PID.2676] © [MD5.C81BE8900130833C49BBCDB8EAF78CD4] - (.Sony Corporation - VAIO Control Center (Network Setting Client.) -- C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE [1688152] [PID.3320] © [MD5.8EDBBF91D68B84220AD9C79C1AFF0262] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [844760] [PID.3356] © [MD5.53621F723CF91434F1278AEDB7BF35EE] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [771032] [PID.3464] © [MD5.0394C29A20DFD3692B7C7254F1CCC026] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [769496] [PID.3528] © [MD5.5E53A66C680A06E26B1234CB0C3CD99B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608] [PID.3600] © [MD5.5E53A66C680A06E26B1234CB0C3CD99B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608] [PID.3636] © [MD5.4A0477ADCD07EC9D21257A2E456B16C5] - (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [36352] [PID.3692] © [MD5.73B2318039546A3CEF5508EEF321A62A] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3928264] [PID.3704] © [MD5.12CF6F359A3134B44E39DD369E35B634] - (.Sony Corporation - Store App Support Utility.) -- C:\Program Files\Sony\Store App Support Utility\StoreAppSupportUtility.exe [219736] [PID.3740] © [MD5.61252F5B3DC260E679F611DC5943CD17] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.3884] © [MD5.50D1476C84446135A990F4939DC2DC1D] - (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508656] [PID.3936] © [MD5.2E2F360FF158A67F8128EFAAF974189C] - (.Sony Corporation - ISB Utility.) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776] [PID.3964] © [MD5.F916BA0DA28A4B4F7B1ADE76EB42F088] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552] [PID.3984] © [MD5.FB5B78A3DE88FD3B725DA574497BC225] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8455960] [PID.3272] © [MD5.FE4DD1A2E417A772052A142AEAFE5EDD] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\ZHP\ZHPDiag3.exe [1915392] [PID.3864] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (24) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://ajax.googleapis.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.googleapis.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.getclicky.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.forum.nicolascoolman.fr/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.hebdotop.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.nicolascoolman.fr/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.facebook.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.youtube.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://soundcloud.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://127.0.0.1:4001/#/fr G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 1s P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © P2 - FPN: [HKLM] [@mcafee.com/McAfeeMssPlugin] - (.McAfee.) -- C:\Program Files (x86)\Sony\MSS\3.8.130\npMcAfeeMss.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll © O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll © O2 - BHO: Adblock Plus for IE Browser Helper Object [64Bits] - {FFCB3198-32F3-4E8B-9539-4324694ED664} . (.Eyeo GmbH - Adblock Plus BHO for Internet Explorer.) -- C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll © ---\\ Applications lancées au démarrage du système (14) - 0s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe © O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe © O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe © O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe © O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe © O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe © O4 - HKLM\..\Run: [BTMTrayAgent] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe © O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe © O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKLM\..\Wow6432Node\Run: [Dolby Home Theater v4] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe © O4 - HKLM\..\Wow6432Node\Run: [ISBMgr.exe] . (.Sony Corporation - ISB Utility.) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe © O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe © O4 - HKUS\S-1-5-21-633741617-361655334-2252051013-1004\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ---\\ Protocole additionnel (17) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © ---\\ Liste des services NT non Microsoft et non désactivés (1) - 0s O23 - Service: @C:\Program Files (x86)\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (.not file.) ---\\ Tâches planifiées en automatique (11) - 4s [MD5.70685AC6E02E9C2DFB88D4851954F5B4] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998088] © [MD5.7245B4C192D20107B4A3E887AED3F76E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6490904] © [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] © [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] © [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1104] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1108] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3886] © O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2816] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3844] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4080] © ---\\ Logiciels installés (54) - 2s O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler © O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey © O42 - Logiciel: VAIO Care Recovery - (.Sony Corporation.) [HKLM][64Bits] -- {15B9204E-BA09-485E-8F2C-094AC0077664} © O42 - Logiciel: VCCx64 - (.Sony Corporation.) [HKLM][64Bits] -- {25ECAFCB-DCFB-4FCE-A5B2-772A57F59860} © O42 - Logiciel: SSLx64 - (.Sony Corporation .) [HKLM][64Bits] -- {312395BC-7CC2-434C-A660-30250276A926} © O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {3181229B-05DA-46F9-B8D4-4966BDA99A74} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} © O42 - Logiciel: Intel(R) WiDi - (.Intel Corporation.) [HKLM][64Bits] -- {6097158B-0184-4140-BEC3-7885794D2571} © O42 - Logiciel: VU5x64 - (.Sony Corporation .) [HKLM][64Bits] -- {6B7DE186-374B-4873-AEC1-7464DA337DD6} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {6F280399-F8BD-4F2E-BCA4-207BEBCDE33A} © O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {840C85B7-D3D6-4143-9AF9-DAE80FD54CFC} © O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} © O42 - Logiciel: Adblock Plus pour IE (32-bits et 64-bits) - (.Eyeo GmbH.) [HKLM][64Bits] -- {92E167CC-3D19-47EB-AE7F-A135427C3220} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {93F2A022-6C37-48B8-B241-FFABD9F60C30} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {93F692D4-0C4D-4EED-9BFE-657C1D5959FE} © O42 - Logiciel: VAIO Care - (.Sony Corporation.) [HKLM][64Bits] -- {A2DAB821-75CD-4052-815B-02E1443C11D5} © O42 - Logiciel: VCCx64 - (.Sony Corporation.) [HKLM][64Bits] -- {AB447E3B-7A95-4CA6-8ECD-B25C96314B67} © O42 - Logiciel: Store App Support Utility - (.Sony Corporation.) [HKLM][64Bits] -- {B93C07D4-49FF-440D-8A6A-054A42AEA960} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {C4123106-B685-48E6-B9BD-E4F911841EB4} © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D7B824DE-DA32-4772-9E5E-39C5158136A7} © O42 - Logiciel: VPMx64 - (.Sony Corporation .) [HKLM][64Bits] -- {DBEAA361-F8A4-4298-B41C-9E9DCB9AAB84} © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} © O42 - Logiciel: CleanUp! - (...) [HKLM][64Bits] -- CleanUp! O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 © O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {105fa5c4-72e1-41f2-a82c-884d8aa4b381} © O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} © O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: SSLx86 - (.Sony Corporation .) [HKLM][64Bits] -- {63C43435-F428-42BA-8E7B-5848749D9262} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: VAIO Easy Connect - (.Sony Corporation.) [HKLM][64Bits] -- {7C80D30A-AC02-4E3F-B95D-29F0E4FF937B} © O42 - Logiciel: KUx86 - (.Sony Corporation.) [HKLM][64Bits] -- {857087BB-A988-4462-A5C6-CF6739143B56} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: VAIO Control Center - (.Sony Corporation.) [HKLM][64Bits] -- {8E797841-A110-41FD-B17A-3ABC0641187A} © O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} © O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} © O42 - Logiciel: VU5x86 - (.Sony Corporation .) [HKLM][64Bits] -- {9D12A8B5-9D41-4465-BF11-70719EB0CD02} © O42 - Logiciel: VAIO Update - (.Sony Corporation.) [HKLM][64Bits] -- {9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824144531} © O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {AFA1153A-F547-409B-B837-3A0D6C5A3FEC} © O42 - Logiciel: VCCx86 - (.Sony Corporation.) [HKLM][64Bits] -- {AFDC0CC0-39E8-42C0-9823-2C1C182676DC} © O42 - Logiciel: Dolby Home Theater v4 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B26438B4-BF51-49C3-9567-7F14A5E40CB9} O42 - Logiciel: VCCx86 - (.Sony Corporation.) [HKLM][64Bits] -- {B31938C7-7E97-49EE-8F88-951E156268A3} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Dofus - (.Ankama.) [HKCU][64Bits] -- 2744A393-554C-4E35-A24F-DEF0392B4484-2 O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe © O42 - Logiciel: Popcorn Time - (.Popcorn Official.) [HKCU][64Bits] -- Popcorn Time © ---\\ HKCU & HKLM Software Keys (48) - 2s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\AVS4YOU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Sony Corporation HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Yahoo HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\AdblockPlus HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ankama HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\AVS4YOU HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Dolby HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\Google HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Intel Corporation HKCU\SOFTWARE\IvoSoft HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Sony Corporation HKCU\SOFTWARE\stevengould.org HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (143) - 5s O43 - CFD: 2015/08/30 21:45:56 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/04/13 14:45:53 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/06/12 16:02:18 - [0] D -- C:\Program Files (x86)\AVS4YOU O43 - CFD: 2015/04/13 14:44:55 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2015/04/02 16:54:22 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 2015/08/30 15:15:17 - [] D -- C:\Program Files (x86)\CleanUp! O43 - CFD: 2015/08/27 11:23:04 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/04/02 15:48:09 - [] D -- C:\Program Files (x86)\Dolby Home Theater v4 O43 - CFD: 2015/04/13 14:25:42 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/04/02 16:30:07 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/04/02 16:54:22 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/08/26 22:37:44 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/04/13 14:47:07 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 2015/08/27 11:22:01 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2015/08/30 15:27:40 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 2015/04/13 18:16:05 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/04/13 18:21:21 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/04/02 15:55:31 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2015/08/27 23:21:21 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 2015/04/02 15:48:12 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2015/08/29 19:16:53 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/04/02 12:52:41 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/04/02 12:52:41 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2015/08/27 11:25:12 - [] D -- C:\Program Files (x86)\Yahoo! O43 - CFD: 2015/09/01 10:37:48 - [] D -- C:\Program Files (x86)\ZHPFix O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/04/02 13:42:39 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/04/02 13:14:52 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/08/29 22:18:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/04/02 12:53:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell O43 - CFD: 2015/08/30 15:15:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CleanUp! O43 - CFD: 2015/08/30 22:25:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler O43 - CFD: 2015/04/13 14:25:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/04/02 15:54:10 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/04/02 16:00:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation O43 - CFD: 2015/04/02 16:54:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless O43 - CFD: 2015/04/13 14:48:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 2015/08/27 11:22:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/30 15:27:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2015/04/13 18:16:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/08/27 23:21:38 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2014/11/21 00:27:29 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/08/27 23:21:19 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care O43 - CFD: 2015/09/01 10:37:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2015/08/30 21:41:05 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/04/13 14:45:50 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/04/13 14:47:02 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/05/20 17:17:36 - [] D -- C:\ProgramData\AVS4YOU O43 - CFD: 2014/06/23 14:25:19 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2014/06/23 16:28:45 - [] D -- C:\ProgramData\ClassicShell O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/04/13 14:47:55 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2015/04/02 16:55:02 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/04/13 14:25:00 - [] D -- C:\ProgramData\iolo O43 - CFD: 2015/08/30 15:27:28 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2014/06/23 14:25:19 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/04/13 18:16:16 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/04/13 18:22:12 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2014/06/23 14:25:19 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/08/27 11:23:30 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/04/02 16:55:25 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/04/02 12:52:42 - [] D -- C:\ProgramData\PRICache O43 - CFD: 2015/08/23 16:13:44 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/04/02 15:52:51 - [] D -- C:\ProgramData\Roaming O43 - CFD: 2015/04/02 16:17:19 - [] D -- C:\ProgramData\Sony Corporation O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/05/28 05:08:33 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/08/30 21:46:25 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/04/13 14:45:01 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2015/06/12 16:02:29 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia O43 - CFD: 2015/07/24 15:31:02 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2015/04/02 15:47:31 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/04/02 12:21:54 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2015/04/02 15:55:06 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 2015/08/27 11:23:04 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/04/13 18:21:25 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2015/04/02 15:45:57 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/04/02 16:07:05 - [] D -- C:\Program Files (x86)\Common Files\Sony Shared O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/08/29 17:23:52 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft O43 - CFD: 2015/04/02 12:04:10 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Adobe O43 - CFD: 2015/04/13 16:06:46 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\AnkamaCertificates O43 - CFD: 2015/04/13 16:03:53 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\app O43 - CFD: 2015/04/14 12:42:47 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Apple Computer O43 - CFD: 2015/05/20 17:17:33 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\AVS4YOU O43 - CFD: 2015/08/31 23:23:06 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\ClassicShell O43 - CFD: 2015/07/29 19:32:38 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Dofus O43 - CFD: 2015/04/13 18:15:47 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Dofus-2 O43 - CFD: 2015/06/29 21:21:34 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Dofus-3 O43 - CFD: 2015/07/01 21:38:53 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Dofus-4 O43 - CFD: 2015/04/02 13:00:29 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Identities O43 - CFD: 2015/04/02 15:53:01 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Intel O43 - CFD: 2015/04/02 15:54:18 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Intel Corporation O43 - CFD: 2015/04/02 16:14:23 - [0] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\iolo O43 - CFD: 2015/08/23 17:13:16 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\java O43 - CFD: 2015/04/02 13:58:15 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Macromedia O43 - CFD: 2015/06/18 18:58:25 - [] SD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft O43 - CFD: 2015/04/13 16:03:53 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Reg O43 - CFD: 2015/04/02 16:06:10 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Sony Corporation O43 - CFD: 2015/08/27 11:22:54 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Sun O43 - CFD: 2015/09/01 10:42:28 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\ZHP O43 - CFD: 2015/08/30 21:13:10 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Adobe O43 - CFD: 2015/04/13 14:47:47 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Ankama O43 - CFD: 2015/04/13 14:45:55 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Apple O43 - CFD: 2015/04/13 14:48:38 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Apple Computer O43 - CFD: 2015/04/02 12:51:51 - [0] SHD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Application Data O43 - CFD: 2015/07/27 05:53:12 - [0] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/08/29 21:48:26 - [0] SHD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/08/29 21:48:26 - [0] SHD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\EmieSiteList O43 - CFD: 2015/08/29 21:48:26 - [0] SHD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\EmieUserList O43 - CFD: 2015/04/13 14:25:53 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Google O43 - CFD: 2015/06/09 21:35:04 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\GWX O43 - CFD: 2015/04/02 12:51:51 - [0] SHD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Historique O43 - CFD: 2015/08/31 23:18:43 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Microsoft O43 - CFD: 2015/04/02 13:01:37 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Packages O43 - CFD: 2015/08/23 20:46:01 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Popcorn Time O43 - CFD: 2015/08/29 17:56:08 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Popcorn-Time O43 - CFD: 2015/04/02 16:49:54 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Programs O43 - CFD: 2015/04/02 16:15:58 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Sony Corporation O43 - CFD: 2015/08/23 19:51:27 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\TagCraftMC O43 - CFD: 2015/09/01 10:42:19 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Temp O43 - CFD: 2015/04/02 12:51:51 - [0] SHD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Temporary Internet Files O43 - CFD: 2015/04/02 12:03:45 - [0] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\VirtualStore O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/07/29 18:58:39 - [] RD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/08/30 15:15:12 - [0] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CleanUp! O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/25 18:24:22 - [] D -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 2015/07/29 18:58:39 - [] RD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/04/02 12:52:17 - [] RD -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools ---\\ Liste des pilotes du système (56) - 8s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] © O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] © O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] © O58 - SDL:2013/07/29 04:01:36 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\WINDOWS\System32\drivers\AmpPal.sys [165344] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] © O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2013/04/23 15:50:24 A . (.Motorola Solutions, Inc. - Bluetooth Auxiliary Driver.) -- C:\WINDOWS\System32\drivers\btmaux.sys [132920] © O58 - SDL:2013/06/27 00:27:30 A . (.Motorola Solutions, Inc. - Bluetooth HighSpeed Filter Driver.) -- C:\WINDOWS\System32\drivers\btmhsf.sys [1385784] © O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] © O58 - SDL:2012/10/03 16:14:56 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2012/07/17 18:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] © O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] © O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] © O58 - SDL:2013/08/07 14:23:46 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [644968] © O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] © O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2013/04/23 13:24:26 A . (.Intel Corporation - Intel(R) Centrino(R) Wireless (Bluetooth Ad.) -- C:\WINDOWS\System32\drivers\iBtFltCoex.sys [69088] © O58 - SDL:2013/09/16 08:32:32 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [4170752] © O58 - SDL:2013/08/23 00:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [39320] © O58 - SDL:2012/10/09 18:48:50 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [25568] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/08/30 18:33:33 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [113880] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] © O58 - SDL:2013/09/23 08:31:40 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwew00.sys [3344864] © O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] © O58 - SDL:2012/10/01 04:06:46 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [683664] © O58 - SDL:2012/10/01 05:14:56 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4094608] © O58 - SDL:2013/12/19 07:13:12 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsPStor.sys [356056] © O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] © O58 - SDL:2015/08/27 23:18:47 A . (...) -- C:\WINDOWS\System32\drivers\semav6thermal64ro.sys [13792] O58 - SDL:2013/06/28 15:30:02 A . (.Sony Corporation - Sony Firmware Extension Parser driver.) -- C:\WINDOWS\System32\drivers\SFEP.sys [15360] © O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2015/05/27 11:13:24 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [42696] © O58 - SDL:2012/06/10 17:43:12 A . (.Sony Corporation - Sony Wireless State Device Driver.) -- C:\WINDOWS\System32\drivers\sows.sys [24280] © O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2015/05/27 11:13:24 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [626888] © O58 - SDL:2012/10/09 18:48:48 A . (.Windows (R) Win 7 DDK provider - usb3hub.sys.) -- C:\WINDOWS\System32\drivers\usb3Hub.sys [47072] © O58 - SDL:2014/08/15 22:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2012/10/09 18:48:48 A . (.Windows (R) Win 7 DDK provider - xHCIport.sys.) -- C:\WINDOWS\System32\drivers\xHCIPort.sys [188896] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (14) - 53s O61 - LFC: 2015/08/30 15:12:31 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\Downloads\CleanUp452.exe [339257] O61 - LFC: 2015/08/27 11:23:40 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\Downloads\Lifecraft.exe [282277] O61 - LFC: 2015/08/27 11:26:28 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\jinput-dx8.dll [61952] O61 - LFC: 2015/08/27 11:26:28 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\jinput-dx8_64.dll [65024] O61 - LFC: 2015/08/27 11:26:28 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\jinput-raw.dll [59392] O61 - LFC: 2015/08/27 11:26:28 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\jinput-raw_64.dll [62464] O61 - LFC: 2015/08/27 11:26:28 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\jinput-wintab.dll [56832] O61 - LFC: 2015/08/27 11:26:28 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\lwjgl.dll [294912] O61 - LFC: 2015/08/27 11:26:29 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\lwjgl64.dll [306176] O61 - LFC: 2015/08/27 11:26:29 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\OpenAL32.dll [390144] O61 - LFC: 2015/08/27 11:26:29 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Roaming\.lifecraft\bin\natives\OpenAL64.dll [382464] O61 - LFC: 2015/08/29 22:03:16 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [412543] O61 - LFC: 2015/09/01 10:39:49 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/08/30 21:13:14 A . (..) -- C:\Users\Utilisateur.WIN-QA1LPCHUG38\AppData\Local\Adobe\6C218B11-9E85-44DC-85C8-B87BC70DCCE2\gtcheck.exe [77312] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (2) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {B988F63A-BA88-4F9E-8353-E883223F10C1} - (Yahoo Search) - http://fr.search.yahoo.com/ ---\\ Enumère les services démarrés par Svchost (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1084416] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [227328] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3704320] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] © ---\\ Liste des exceptions du parefeu Windows (2) - 1s O87 - FAEL: "TCP Query User{7D611678-7D07-42EF-BDCB-A0A9EE59C173}C:\users\utilisateur.win-qa1lpchug38\appdata\local\popcorn time\nw.exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur.win-qa1lpchug38\appdata\local\popcorn time\nw.exe O87 - FAEL: "UDP Query User{C458C7F2-7323-43B4-9306-1516CC575C78}C:\users\utilisateur.win-qa1lpchug38\appdata\local\popcorn time\nw.exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur.win-qa1lpchug38\appdata\local\popcorn time\nw.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (33) - 12s SS - Disabled [2015/06/12 09:25:00] [ 82112] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Disabled [2013/07/29 04:01:08] [ 772064] Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) . (.Intel Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe © SS - Disabled [2015/01/19 23:30:38] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SS - Disabled [2013/06/25 09:12:32] [ 1132920] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe © SS - Disabled [2013/07/04 16:07:26] [ 1157496] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe © SS - Disabled [2011/08/30 23:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Disabled [2012/09/12 18:07:06] [ 135984] Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Sec (BTHSSecurityMgr) . (.Intel(R) Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe © SS - Disabled [2013/09/16 08:32:44] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SS - Disabled [2015/02/04 17:29:52] [ 377768] Energy Server Service (ESRV_SVC) . (.Intel Corporation.) - C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe © SS - Disabled [2013/10/11 13:41:56] [ 631024] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe © SS - Disabled [2015/04/13 14:24:24] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Disabled [2015/04/13 14:24:24] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Disabled [2013/08/07 14:24:00] [ 15720] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © SS - Disabled [2012/04/20 14:16:12] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe © SS - Disabled [2012/10/01 04:40:44] [ 128896] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe © SS - Disabled [2013/09/24 14:34:06] [ 157128] Intel(R) Wireless Bluetooth(R) 4.0 Radio Management (Intel(R) Wireless Bluetooth(R) 4.0 Radio Management) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe © SS - Disabled [2015/04/07 00:28:50] [ 643880] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SS - Disabled [2012/10/01 04:38:24] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SS - Disabled [2012/10/01 04:41:16] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Disabled [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe © SS - Disabled [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © SS - Disabled [2013/10/16 13:29:30] [ 235216] McAfee Security Scan Component Host Service for Sony (McComponentHostServiceSony) . (.McAfee, Inc..) - C:\Program Files (x86)\Sony\MSS\3.8.130\McCHSvc.exe © SS - Disabled [2013/10/11 13:42:20] [ 284912] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe © SS - Disabled [2013/09/28 04:45:04] [ 625240] NetworkSupport (NetworkSupport) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe © SS - Disabled [2013/10/11 13:41:28] [ 154864] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe © SS - Disabled [2012/10/01 04:41:42] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © SS - Disabled [2015/02/04 17:29:52] [ 377768] User Energy Server Service (USER_ESRV_SVC) . (.Intel Corporation.) - C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe © SS - Disabled [2012/08/18 05:36:14] [ 68776] VAIO Event Service (VAIO Event Service) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe © SS - Disabled [2012/07/19 18:55:44] [ 476328] VAIO Power Management (VAIO Power Management) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Power Management\SPMService.exe © SS - Disabled [2015/05/22 16:53:34] [ 59928] VCService (VCService) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Care\VCService.exe © SR - Demand [2014/02/28 17:05:06] [ 1642544] VUAgent (VUAgent) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Update\VUAgent.exe © SS - Disabled [2013/10/11 13:42:42] [ 3671792] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe © ---\\ Scan Additionnel (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ---\\ Récapitulatif des éléments trouvées sur votre station (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ~ End of the scan, 14770 items in 108 seconds (621)(0)()