~ ZHPDiag v2015.2.9.132 Par Nicolas Coolman (2015/09/2) ~ Démarré par nicolas (Administrator) (2015/09/03 10:56:42) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\nicolas\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\nicolas\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 40.0.3 (x86 fr) v40.0.3 MSIE: Internet Explorer v11.0.9600.17937 ---\\ Informations sur les produits Windows (9) - 4s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : 7CC43 Windows License : OK ~ Windows Remaining Initializations Number : 1000 Windows Automatic Updates : OK (Demand) Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 0s Avira Antivirus v15.0.12.420 Windows Defender (Deactivate) ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 18 NPAPI Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 69 Stepping 1, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8266.712 MB (67% free) ~ System Restore: Activé (Enable) ~ System drive C: has 476 GB free of 944 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC_NICO ~ User Name: nicolas ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 476 GB free of 944 GB (System) ~ Drive E: has 0 GB free of 0 GB ~ Drive X: has 0 GB free of 0 GB ~ Drive Y: has 0 GB free of 8 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2501368] © [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [54784] © [MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [145920] © [MD5.C555B5C8142844DED9E3BD94E6313000] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427904] © [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [572416] © [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [447488] © [MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [657920] © [MD5.BD9C7A068C46053F8747CEA73B5930AB] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [498688] © [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] © [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [563200] © [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [26464] © [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [88576] © [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [164352] © [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [134144] © [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [76800] © [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [108544] © [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [142848] © [MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\Windows\System32\drivers\MRxSmb.sys [401408] © [MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [282624] © [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [2025792] © [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [94208] © [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [120832] © [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\Windows\System32\drivers\rdpdr.sys [195584] © [MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [107520] © [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [310080] © ---\\ Processus lancés (52) - 1s [MD5.497D44465C4FD98FD8F2C5C951595AC7] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [239616] [PID.936] © [MD5.DDF3EFB4AD226C61D0ADA6E779E3D968] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488] [PID.1040] © [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1660] © [MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.1676] © [MD5.612CB66D93ED0F2F21BB109840C7D813] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128] [PID.1736] © [MD5.6E70B87C65E9610891B18DDC5BF0D7AE] - (.Windows (R) Win 7 DDK provider - Windows Setup API.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [317568] [PID.1780] © [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1828] © [MD5.0DB1E3F6189C628675F855C0EB510419] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696] [PID.1988] © [MD5.20372BE109FEE1C37E2D5216680DB9EB] - (.pdfforge GmbH - PDF Architect Helper Service.) -- C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496] [PID.1080] © [MD5.B90A279073A815A4AA2C45A09EE004FA] - (.pdfforge GmbH - PDF Architect Conversion Service.) -- C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280] [PID.1908] © [MD5.8FA3C188F04B9288B35DC7DBA9E3956D] - (.Dell Inc. - Service.) -- C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [20648] [PID.2112] © [MD5.6B572F7A4BF21250BBCF7071F565C4AF] - (.Dell Inc. - Dell Data Vault Wizard.) -- C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201936] [PID.4068] © [MD5.0C03FB91E17987EED93F60007B08DAA0] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [PID.2576] © [MD5.20E83F4632E15A5E9E716FF2E8AC7FAE] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720] [PID.3300] © [MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.2824] © [MD5.3ED2B00729E2D4F974C1418F1B2CDF60] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler.exe [245064] [PID.3488] © [MD5.042ED5CED9032D093CACF785BFA39D65] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.13\GoogleCrashHandler64.exe [305992] [PID.2808] © [MD5.6DC3A4E939B0F3EE16B54C5EC431D8C1] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.836] © [MD5.CBE300DA6064C31F2AC4ED8A0722BEF0] - (.CyberLink - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776] [PID.1300] © [MD5.9F9D5D67E746D9B509EE8E23B3723652] - (.SoftThinks SAS - SoftThinks Agent Service.) -- C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [1924328] [PID.2664] © [MD5.FD2B661335F35AC52B23488CCF2162B7] - (.Dell Inc. - Dell Data Vault Service.) -- C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2573520] [PID.2108] © [MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672] [PID.6768] © [MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672] [PID.4332] © [MD5.094F3AC18AF083D542D96EBEF1F28161] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [632152] [PID.3812] © [MD5.2B7690544EC46C76809ED6F1DEC3BB52] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [571904] [PID.2872] © [MD5.59F8DA04498B80D58FD8638370C5C84F] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.1724] © [MD5.59F8DA04498B80D58FD8638370C5C84F] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.4252] © [MD5.E38B453152C9D62B0EF6F11FD0629F4A] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400] [PID.244] © [MD5.DD20CEAD08A474579E828419E664E4E1] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [182000] [PID.6856] © [MD5.75A0617ECCDAE4C4CF8624422EB7C46F] - (.Qualcomm®Atheros® - Extension Core.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [132736] [PID.7504] © [MD5.813CBC4B2A6E993F7D1CF16B35C8A24C] - (...) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe [12928] [PID.7432] [MD5.5BAD798CBAB39F3A56A9CD495320F67E] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520] [PID.2744] © [MD5.59F8DA04498B80D58FD8638370C5C84F] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.6984] © [MD5.59F8DA04498B80D58FD8638370C5C84F] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.8080] © [MD5.F36CA74F2FC302EED565E79BA7958780] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [391152] [PID.4604] © [MD5.95702FE2589E6A1C349B80F87D0FCC6F] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [844784] [PID.6444] © [MD5.0E129C925B4A7096E02B10C8DD94B8CF] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [771056] [PID.1208] © [MD5.01AA1D9C5F45D9380D47715A4E485975] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [769520] [PID.4652] © [MD5.9709A4AE6D5D6B047AC2ED0A0C129879] - (.Dell Inc. - QuickSet.) -- C:\Program Files\Dell\QuickSet\quickset.exe [5762408] [PID.1356] © [MD5.775F47E28C96739D0B81DF8A46116EFB] - (...) -- C:\Users\nicolas\AppData\Roaming\cacaoweb\cacaoweb.exe [532784] [PID.6728] =>PUP.Optional.CacaoWeb [MD5.BADF6C22FBAA3ED3E2413A60411425AC] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299520] [PID.2984] © [MD5.27F8A7A78773427E5D931628F89D6839] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008] [PID.4224] © [MD5.319313BD72F82F4B6C70523CB618CA97] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299520] [PID.6056] © [MD5.EABAB863E4451B22CA44A4919E59D2B8] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110144] [PID.4732] © [MD5.3D45AD2B246B90DBD3E6F213E7AEBF64] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592] [PID.5072] © [MD5.C9336298DE22EBCE8D4281C73CEB47EA] - (.SoftThinks - Dell - Dell Backup And Recovery Update Launcher.) -- C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUpd.exe [493288] [PID.7516] © [MD5.91B0C76FB80567E995E43B8A870E1436] - (.SoftThinks - Dell - Dell Backup And Recovery Toaster.) -- C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe [4167912] [PID.7948] © [MD5.BC92D403A050072C604D91DB2E8AA0F5] - (.Copyright © 2013 - DBRCrawler.) -- C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe [487144] [PID.300] [MD5.345886D0A81F2318E6FB4362E480BF97] - (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe [1541352] [PID.5592] © [MD5.345886D0A81F2318E6FB4362E480BF97] - (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe [1541352] [PID.268] © [MD5.05299546F243159CB8A42906ACB219A8] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] [PID.7872] © [MD5.F65F5B02F72BD88128C36C9041B260B6] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\nicolas\ZHPDiag3.exe [1917952] [PID.3020] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 1s M0 - MFSP: prefs.js [nicolas - ml917m9t.default] http://www.google.fr/ P2 - EXT FILE: (...) -- C:\Users\nicolas\AppData\Roaming\Mozilla\Firefox\Profiles\ml917m9t.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}.xpi P2 - EXT FILE: (...) -- C:\Users\nicolas\AppData\Roaming\Mozilla\Firefox\Profiles\ml917m9t.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.http://www.cacaoweb.org/ - cacaoweb.) -- C:\Users\nicolas\AppData\Roaming\Mozilla\Firefox\Profiles\ml917m9t.default\extensions\cacaoweb@cacaoweb.org =>PUP.Optional.CacaoWeb P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll © O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL © ---\\ Applications lancées au démarrage du système (24) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe © O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe © O4 - HKLM\..\Run: [RtHDVBg_PushButton] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe © O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe © O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe © O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe © O4 - HKLM\..\Run: [QuickSet] . (.Dell Inc. - QuickSet.) -- c:\Program Files\Dell\QuickSet\quickset.exe © O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe © O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe © O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\nicolas\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\nicolas\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\nicolas\AppData\Local\Facebook\Update\FacebookUpdate.exe © O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe © O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe © O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe © O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe © O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe © O4 - HKLM\..\Wow6432Node\Run: [GoPro Studio Importer] . (.GoPro - GoPro Importer.) -- C:\Program Files (x86)\GoPro\Tools\Importer\GoPro Importer.exe © O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm®Atheros® - Extension Core.) -- C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe © O4 - HKUS\S-1-5-21-3560149195-3477210978-3253478076-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\nicolas\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-21-3560149195-3477210978-3253478076-1001\..\Run: [cacaoweb] . (...) -- C:\Users\nicolas\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O4 - HKUS\S-1-5-21-3560149195-3477210978-3253478076-1001\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\nicolas\AppData\Local\Facebook\Update\FacebookUpdate.exe © O4 - HKUS\S-1-5-21-3560149195-3477210978-3253478076-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Protocole additionnel (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (24) - 0s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe © O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe © O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe © O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe © O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe © O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider - Windows Setup API.) - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe © O23 - Service: Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe © O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe © O23 - Service: Dell Data Vault (DellDataVault) . (.Dell Inc. - Dell Data Vault Service.) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe © O23 - Service: Dell Data Vault Wizard (DellDataVaultWiz) . (.Dell Inc. - Dell Data Vault Wizard.) - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe © O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH - PDF Architect Helper Service.) - C:\Program Files (x86)\PDF Architect\HelperService.exe © O23 - Service: PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH - PDF Architect Conversion Service.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe © O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.CyberLink - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe © O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe © O23 - Service: SoftThinks Agent Service (SftService) . (.SoftThinks SAS - SoftThinks Agent Service.) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe © O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc. - Service.) - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe © ---\\ Tâches planifiées en automatique (29) - 3s [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] © [MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.EABAB863E4451B22CA44A4919E59D2B8] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110144] © [MD5.B545F8575AF154A5690B5EACECEE1B5E] [APT] [CLVDLauncher] (.CyberLink Corp..) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [340440] © [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001Core] (.Facebook Inc..) -- C:\Users\nicolas\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] © [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001UA] (.Facebook Inc..) -- C:\Users\nicolas\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] © [MD5.0C03FB91E17987EED93F60007B08DAA0] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.0C03FB91E17987EED93F60007B08DAA0] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.00000000000000000000000000000000] [APT] [MySearchDial] (...) -- C:\Users\nicolas\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE (.not file.) [0] =>PUP.Optional.MySearchDial [MD5.6EA9333DF6FB999A2A40B51254A5DEF6] [APT] [PCDoctorBackgroundMonitorTask] (.PC-Doctor, Inc..) -- C:\Program Files\Dell\SupportAssist\uaclauncher.exe [1216680] © [MD5.E38B453152C9D62B0EF6F11FD0629F4A] [APT] [Synaptics TouchPad Enhancements] (.Synaptics Incorporated.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400] © [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001Core - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001Core.job [930] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001UA - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001UA.job [952] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1088] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1092] © O39 - APT: MySearchDial - (...) -- C:\Windows\Tasks\MySearchDial.job [316] =>PUP.Optional.MySearchDial O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890] © O39 - APT: CLMLSvc_P2G8 - (.CyberLink.) -- C:\Windows\System32\Tasks\CLMLSvc_P2G8 [3160] © O39 - APT: CLVDLauncher - (.CyberLink Corp..) -- C:\Windows\System32\Tasks\CLVDLauncher [3160] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001Core - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001Core [3454] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001UA - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3560149195-3477210978-3253478076-1001UA [3804] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3828] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4064] © O39 - APT: MySearchDial - (...) -- C:\Windows\System32\Tasks\MySearchDial [2654] =>PUP.Optional.MySearchDial O39 - APT: PCDoctorBackgroundMonitorTask - (.PC-Doctor, Inc..) -- C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask [4030] © O39 - APT: Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements [2990] © ---\\ Logiciels installés (69) - 4s O42 - Logiciel: Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/0 - (.GoPro.) [HKLM][64Bits] -- 0B624A43DD66DBF5CF3EDFA9741A364E688062A4 © O42 - Logiciel: Free Convert FLAC To MP3 (remove only) - (...) [HKLM][64Bits] -- Free Convert FLAC To MP3 O42 - Logiciel: GIMP 2.8.14 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 © O42 - Logiciel: Dell SupportAssist - (.Dell.) [HKLM][64Bits] -- PC-Doctor for Windows © O42 - Logiciel: Dell Touchpad - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey © O42 - Logiciel: WinRAR 5.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {05DCE321-7560-A57C-9CFF-417661CFEC4C} © O42 - Logiciel: Canon MP550 series MP Drivers - (...) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP550_series O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {34397444-D51C-ADCC-799D-82361E573488} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} © O42 - Logiciel: VFW_Codec64 - (.GoPro, Inc..) [HKLM][64Bits] -- {4C110871-BAC2-43D8-A892-C30FD0F58D83} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: Quickset64 - (.Dell Inc..) [HKLM][64Bits] -- {87CF757E-C1F1-4D22-865C-00C6950B5258} © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {89AFB053-A343-46EF-97E4-D593AD7184E6} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {93F2A022-6C37-48B8-B241-FFABD9F60C30} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {93F692D4-0C4D-4EED-9BFE-657C1D5959FE} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {C4123106-B685-48E6-B9BD-E4F911841EB4} © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D7B824DE-DA32-4772-9E5E-39C5158136A7} © O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} © O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Avira Antivirus v15.0.12.420 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus © O42 - Logiciel: CyberLink Media Suite Essentials - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7} © O42 - Logiciel: ITN Converter 1.87 - (.Benichou Software.) [HKLM][64Bits] -- ITN Converter_is1 © O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 40.0.3 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: Shape3D X Lite 9.0.8.7 - (.Awacs.) [HKLM][64Bits] -- Shape3D X_is1 O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} © O42 - Logiciel: PDF Architect - (.pdfforge GmbH.) [HKLM][64Bits] -- {064A929A-4DE8-40CF-A901-BD40C14E4D25} © O42 - Logiciel: Dell Backup and Recovery - (.Dell Inc..) [HKLM][64Bits] -- {0ED7EE95-6A97-47AA-AD73-152C08A15B04} © O42 - Logiciel: Avira v1.1.17.31000 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {142be4a8-895b-4ed9-b1ff-11c76357e3df} © O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} © O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} © O42 - Logiciel: Skype™ 7.7 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: Dell WLAN and Bluetooth Client Installation - (.Dell Inc..) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} © O42 - Logiciel: Dell SupportAssistAgent - (.Dell.) [HKLM][64Bits] -- {287348C8-8B47-4C36-AF28-441A3B7D8722} © O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} © O42 - Logiciel: FreeCAD 0.13 - (.Juergen Riegel (FreeCAD@juergen-riegel.net).) [HKLM][64Bits] -- {2B2B5D2B-0F01-410B-843B-8F437FD75FBF} O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} © O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090} © O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM][64Bits] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} © O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} © O42 - Logiciel: Easy2Convert RAW to JPG 1.9 - (.Easy2Convert Software.) [HKLM][64Bits] -- {861F7125-C9A3-4564-8C60-ED7E0F5DDEE2}_is1 O42 - Logiciel: GoPro Studio 2.5.6 - (.GoPro, Inc..) [HKLM][64Bits] -- {8850d4d9-a0fc-453f-ba03-ec084375d0c2} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} © O42 - Logiciel: Avira v1.1.25.25607 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {9480d4af-12b9-4e56-8034-4031ef6ab39d} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} © O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {AFA1153A-F547-409B-B837-3A0D6C5A3FEC} © O42 - Logiciel: VFW_Codec32 - (.GoPro, Inc..) [HKLM][64Bits] -- {AFEF72F3-EDEC-4B70-BB25-4CEA1FCBF425} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} © O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} © O42 - Logiciel: CyberLink LabelPrint 2.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} © O42 - Logiciel: Avira v1.1.25.25607 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2} © O42 - Logiciel: Dell Digital Delivery - (.Dell Products, LP.) [HKLM][64Bits] -- {D850CB7E-72BC-4510-BA4F-48932BFAB295} © O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: GoPro App - (.GoPro, Inc..) [HKLM][64Bits] -- {FA856359-2B03-4ABC-AC82-E69AF9F405CE} O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FD286527-7076-4988-A436-BEE53EA1B900} © O42 - Logiciel: Download & Install Packages - (...) [HKCU][64Bits] -- Download & Install Packages =>Adware.InstallCore O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe © O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer © O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (94) - 4s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ATHEROS HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\Avira HKLM\SOFTWARE\Wow6432Node\Canon HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Dell HKLM\SOFTWARE\Wow6432Node\Dell Inc. HKLM\SOFTWARE\Wow6432Node\DellBackupandRecovery HKLM\SOFTWARE\Wow6432Node\Dell_Wlan HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\GoPro HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\McAfee HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\MimarSinan HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\PC-Doctor HKLM\SOFTWARE\Wow6432Node\PDFCreator HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SoftThinks HKLM\SOFTWARE\Wow6432Node\SuppHelpDir HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\webtogo HKLM\SOFTWARE\Wow6432Node\X-AVCSD HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKLM\SOFTWARE\Wow6432Node\VolDellBackupAndRecovery HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Avira HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Brother HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb HKCU\SOFTWARE\Canon HKCU\SOFTWARE\CineForm HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Dassault Systemes HKCU\SOFTWARE\Download4windows HKCU\SOFTWARE\eDrawings HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\FreeCAD HKCU\SOFTWARE\Google HKCU\SOFTWARE\GoPro HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\ITNConv HKCU\SOFTWARE\Leadertech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\mysearchdial.com =>PUP.Optional.MySearchDial HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PC-Doctor HKCU\SOFTWARE\PDF Architect HKCU\SOFTWARE\PDFCreator HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Shape3d HKCU\SOFTWARE\skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\SolidWorks HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Waves Audio HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (216) - 5s O43 - CFD: 2015/01/12 13:15:13 - [] D -- C:\Program Files (x86)\4dots Software O43 - CFD: 2014/06/07 13:39:36 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2014/01/31 08:26:52 - [] D -- C:\Program Files (x86)\Amazon O43 - CFD: 2014/01/31 08:12:22 - [] D -- C:\Program Files (x86)\AMD AVT O43 - CFD: 2014/04/23 17:38:58 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2014/01/31 08:12:05 - [] D -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 2014/11/14 15:32:44 - [] D -- C:\Program Files (x86)\Avira O43 - CFD: 2014/04/23 17:38:44 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2014/12/07 20:29:31 - [] D -- C:\Program Files (x86)\CineForm O43 - CFD: 2015/07/23 22:08:33 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/01/31 08:26:16 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 2015/02/12 17:54:36 - [] D -- C:\Program Files (x86)\Dell O43 - CFD: 2015/09/03 09:02:34 - [] D -- C:\Program Files (x86)\Dell Backup and Recovery O43 - CFD: 2014/12/07 20:48:05 - [] D -- C:\Program Files (x86)\Dell Digital Delivery O43 - CFD: 2014/01/31 08:20:13 - [] D -- C:\Program Files (x86)\Dell Wireless O43 - CFD: 2015/08/26 21:45:36 - [] D -- C:\Program Files (x86)\Easy2Convert Software O43 - CFD: 2014/05/24 14:24:50 - [] D -- C:\Program Files (x86)\FreeCAD0.13 O43 - CFD: 2015/05/29 14:44:23 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/07/22 10:28:15 - [] D -- C:\Program Files (x86)\GoPro O43 - CFD: 2014/01/31 08:31:37 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2014/01/31 08:12:54 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/08/13 17:34:18 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/06/22 22:06:53 - [] D -- C:\Program Files (x86)\ITN Converter O43 - CFD: 2015/04/11 19:22:43 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 2014/08/25 17:24:37 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2014/08/25 17:27:13 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2014/08/23 11:29:47 - [] D -- C:\Program Files (x86)\Microsoft Office 15 O43 - CFD: 2015/08/13 12:12:26 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2014/05/06 13:03:17 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive O43 - CFD: 2014/08/25 17:27:12 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2014/08/25 17:27:12 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework O43 - CFD: 2014/08/25 17:27:49 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services O43 - CFD: 2014/08/25 17:25:36 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2014/08/25 17:27:12 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/08/28 23:55:43 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/08/28 23:55:43 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2014/08/25 17:28:33 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2014/05/18 19:11:18 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 2014/04/16 15:06:51 - [] D -- C:\Program Files (x86)\PDF Architect O43 - CFD: 2014/04/16 15:10:14 - [] D -- C:\Program Files (x86)\PDFCreator O43 - CFD: 2015/01/18 13:12:26 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 2014/01/31 07:50:55 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/01/28 21:43:39 - [] D -- C:\Program Files (x86)\Shape3d X O43 - CFD: 2015/07/23 22:14:08 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2015/08/13 17:42:17 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2014/01/31 08:27:55 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2015/03/08 14:53:13 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/03/08 14:53:12 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2015/03/08 14:53:13 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2015/03/08 14:53:07 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2015/03/08 14:53:12 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2013/08/22 17:36:30 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2015/03/08 14:57:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/03/11 01:24:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/08 14:57:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/01/31 08:12:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 2015/09/01 16:11:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 2014/01/31 08:15:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program O43 - CFD: 2015/04/06 12:41:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP550 series O43 - CFD: 2014/01/31 08:26:19 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite O43 - CFD: 2015/06/24 15:42:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell O43 - CFD: 2015/08/26 21:45:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy2Convert Software O43 - CFD: 2015/01/12 13:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Convert FLAC To MP3 O43 - CFD: 2014/05/24 14:25:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCAD 0.13 O43 - CFD: 2015/07/22 10:28:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoPro O43 - CFD: 2014/01/31 08:13:07 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/06/22 22:06:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ITN Converter O43 - CFD: 2015/04/11 19:23:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/08/25 17:29:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/08/13 12:13:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2014/05/18 19:12:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005 O43 - CFD: 2014/04/16 15:06:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect O43 - CFD: 2014/04/16 15:06:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator O43 - CFD: 2015/01/18 13:12:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2015/01/28 21:43:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shape3D X O43 - CFD: 2014/08/25 17:29:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 2015/07/23 22:08:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2014/12/07 20:29:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/03/08 14:57:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2013/08/23 00:27:43 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/05/17 11:22:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/01/18 13:08:55 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 2014/06/11 19:04:56 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2014/01/31 08:12:22 - [] D -- C:\ProgramData\AMD O43 - CFD: 2014/04/23 17:38:55 - [] D -- C:\ProgramData\Apple O43 - CFD: 2014/04/23 17:40:20 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2014/04/07 22:40:00 - [] D -- C:\ProgramData\Atheros O43 - CFD: 2014/04/05 23:19:24 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/04/08 12:47:05 - [] D -- C:\ProgramData\Avira O43 - CFD: 2014/04/05 15:57:20 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/03/03 12:07:53 - [] HD -- C:\ProgramData\CanonBJ O43 - CFD: 2014/01/31 08:21:44 - [] D -- C:\ProgramData\CLSK O43 - CFD: 2014/12/04 00:04:57 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2014/05/18 19:06:04 - [0] D -- C:\ProgramData\DassaultSystemes O43 - CFD: 2014/01/31 08:37:52 - [] D -- C:\ProgramData\Dell O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/04/11 19:23:18 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2014/05/17 20:24:57 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 2014/01/31 08:25:48 - [] D -- C:\ProgramData\install_clap O43 - CFD: 2014/01/31 08:12:55 - [] D -- C:\ProgramData\Intel O43 - CFD: 2014/06/07 20:04:23 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/06/06 12:54:21 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 2014/04/05 15:57:20 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/04/15 17:05:36 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/08/13 12:07:47 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2014/05/06 13:03:07 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2014/08/22 17:24:18 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 2014/04/05 15:57:20 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2014/04/05 23:50:04 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/07/22 10:29:01 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/06/24 15:42:52 - [] D -- C:\ProgramData\PC-Doctor for Windows O43 - CFD: 2015/06/24 15:42:11 - [] D -- C:\ProgramData\PCDr O43 - CFD: 2015/03/08 14:53:01 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/07/23 22:08:37 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/04/08 12:50:08 - [] D -- C:\ProgramData\softthinks O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/06/24 16:00:55 - [] D -- C:\ProgramData\SupportAssistAgent O43 - CFD: 2015/06/02 16:57:58 - [] AD -- C:\ProgramData\Temp O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/06/24 16:02:07 - [] HDC -- C:\ProgramData\{8AF32939-989B-460A-8726-CA2C776032A1} O43 - CFD: 2014/06/07 13:39:42 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/04/11 19:22:40 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2014/01/31 08:15:16 - [] D -- C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 2014/01/31 08:12:22 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies O43 - CFD: 2014/01/31 08:22:58 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 2014/08/26 19:23:16 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2014/01/31 08:08:00 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2014/01/31 08:13:43 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 2014/08/26 19:27:47 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2014/01/31 08:12:31 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/07/23 22:08:33 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2015/03/08 14:53:02 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2014/01/31 08:27:00 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2014/04/17 18:14:31 - [] D -- C:\Users\nicolas\AppData\Roaming\0D1F2W1G1I1F1T1QyE2W1L1G1Q1F2W1B O43 - CFD: 2014/06/09 23:10:33 - [] D -- C:\Users\nicolas\AppData\Roaming\Adobe O43 - CFD: 2014/04/24 10:30:42 - [] D -- C:\Users\nicolas\AppData\Roaming\Apple Computer O43 - CFD: 2015/08/21 14:35:15 - [] D -- C:\Users\nicolas\AppData\Roaming\Atheros O43 - CFD: 2014/04/05 23:19:24 - [] D -- C:\Users\nicolas\AppData\Roaming\ATI O43 - CFD: 2015/04/08 12:47:51 - [] D -- C:\Users\nicolas\AppData\Roaming\Avira O43 - CFD: 2014/04/20 23:37:28 - [0] D -- C:\Users\nicolas\AppData\Roaming\BitTorrent O43 - CFD: 2014/07/01 14:49:33 - [] RD -- C:\Users\nicolas\AppData\Roaming\Brother O43 - CFD: 2015/09/03 10:56:57 - [] D -- C:\Users\nicolas\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb O43 - CFD: 2014/12/04 00:05:01 - [] D -- C:\Users\nicolas\AppData\Roaming\CyberLink O43 - CFD: 2014/05/18 19:06:04 - [0] D -- C:\Users\nicolas\AppData\Roaming\DassaultSystemes O43 - CFD: 2015/08/26 21:45:41 - [] D -- C:\Users\nicolas\AppData\Roaming\Easy2Convert O43 - CFD: 2015/01/12 13:15:58 - [] D -- C:\Users\nicolas\AppData\Roaming\Free Audio Converter 4dots O43 - CFD: 2014/05/24 20:10:12 - [] D -- C:\Users\nicolas\AppData\Roaming\FreeCAD O43 - CFD: 2015/07/22 10:29:02 - [] D -- C:\Users\nicolas\AppData\Roaming\GoPro O43 - CFD: 2015/03/08 21:40:19 - [] D -- C:\Users\nicolas\AppData\Roaming\Identities O43 - CFD: 2014/04/05 23:20:19 - [] D -- C:\Users\nicolas\AppData\Roaming\Intel Corporation O43 - CFD: 2014/04/05 23:19:27 - [] D -- C:\Users\nicolas\AppData\Roaming\Leadertech O43 - CFD: 2014/04/05 23:32:30 - [] D -- C:\Users\nicolas\AppData\Roaming\Macromedia O43 - CFD: 2015/02/12 17:54:49 - [] SD -- C:\Users\nicolas\AppData\Roaming\Microsoft O43 - CFD: 2014/04/05 23:50:28 - [] D -- C:\Users\nicolas\AppData\Roaming\Mozilla O43 - CFD: 2014/07/16 14:02:23 - [] D -- C:\Users\nicolas\AppData\Roaming\PCDr O43 - CFD: 2014/04/16 15:26:40 - [] D -- C:\Users\nicolas\AppData\Roaming\PDF Architect O43 - CFD: 2014/04/16 15:06:30 - [] D -- C:\Users\nicolas\AppData\Roaming\pdfforge O43 - CFD: 2015/08/06 14:04:10 - [] D -- C:\Users\nicolas\AppData\Roaming\Skype O43 - CFD: 2014/04/11 11:52:26 - [] D -- C:\Users\nicolas\AppData\Roaming\SolidWorks O43 - CFD: 2015/02/23 02:41:18 - [] D -- C:\Users\nicolas\AppData\Roaming\uTorrent O43 - CFD: 2014/05/17 11:22:46 - [] D -- C:\Users\nicolas\AppData\Roaming\WinRAR O43 - CFD: 2015/09/03 10:56:52 - [] D -- C:\Users\nicolas\AppData\Roaming\ZHP O43 - CFD: 2015/01/12 13:15:40 - [] D -- C:\Users\nicolas\AppData\Local\A O43 - CFD: 2014/12/23 17:33:47 - [] D -- C:\Users\nicolas\AppData\Local\Adobe O43 - CFD: 2014/04/23 17:38:59 - [] D -- C:\Users\nicolas\AppData\Local\Apple O43 - CFD: 2014/12/07 20:59:58 - [] D -- C:\Users\nicolas\AppData\Local\Apple Computer O43 - CFD: 2014/04/05 23:17:25 - [0] SHD -- C:\Users\nicolas\AppData\Local\Application Data O43 - CFD: 2014/04/05 23:19:24 - [] D -- C:\Users\nicolas\AppData\Local\ATI O43 - CFD: 2014/04/05 23:19:33 - [] D -- C:\Users\nicolas\AppData\Local\BMExplorer O43 - CFD: 2015/09/03 08:58:15 - [] D -- C:\Users\nicolas\AppData\Local\CrashDumps O43 - CFD: 2014/12/04 00:04:52 - [] D -- C:\Users\nicolas\AppData\Local\CyberLink O43 - CFD: 2014/05/18 19:06:04 - [0] D -- C:\Users\nicolas\AppData\Local\DassaultSystemes O43 - CFD: 2015/01/10 12:36:41 - [0] D -- C:\Users\nicolas\AppData\Local\Diagnostics O43 - CFD: 2014/09/24 13:01:09 - [0] D -- C:\Users\nicolas\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/07/26 01:06:17 - [0] SHD -- C:\Users\nicolas\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/07/26 01:06:17 - [0] SHD -- C:\Users\nicolas\AppData\Local\EmieSiteList O43 - CFD: 2015/07/26 01:06:17 - [0] SHD -- C:\Users\nicolas\AppData\Local\EmieUserList O43 - CFD: 2014/07/07 23:29:33 - [] D -- C:\Users\nicolas\AppData\Local\Facebook O43 - CFD: 2015/01/20 21:34:02 - [] D -- C:\Users\nicolas\AppData\Local\fontconfig O43 - CFD: 2015/01/20 21:33:57 - [] D -- C:\Users\nicolas\AppData\Local\gegl-0.2 O43 - CFD: 2015/05/29 14:43:48 - [] D -- C:\Users\nicolas\AppData\Local\Google O43 - CFD: 2015/07/22 10:29:10 - [] D -- C:\Users\nicolas\AppData\Local\GoPro O43 - CFD: 2015/09/02 17:16:06 - [] D -- C:\Users\nicolas\AppData\Local\gtk-2.0 O43 - CFD: 2015/06/02 20:51:19 - [] D -- C:\Users\nicolas\AppData\Local\GWX O43 - CFD: 2014/04/05 23:17:25 - [0] SHD -- C:\Users\nicolas\AppData\Local\Historique O43 - CFD: 2015/05/05 12:34:08 - [] D -- C:\Users\nicolas\AppData\Local\Intel_Corporation O43 - CFD: 2015/07/26 00:35:49 - [] D -- C:\Users\nicolas\AppData\Local\IsolatedStorage O43 - CFD: 2014/04/06 01:40:18 - [] D -- C:\Users\nicolas\AppData\Local\Macromedia O43 - CFD: 2015/05/03 22:27:36 - [] D -- C:\Users\nicolas\AppData\Local\Microsoft O43 - CFD: 2014/08/23 12:12:06 - [0] D -- C:\Users\nicolas\AppData\Local\Microsoft Help O43 - CFD: 2014/04/05 23:50:28 - [] D -- C:\Users\nicolas\AppData\Local\Mozilla O43 - CFD: 2015/08/06 09:51:56 - [] D -- C:\Users\nicolas\AppData\Local\Packages O43 - CFD: 2014/04/05 23:19:57 - [] D -- C:\Users\nicolas\AppData\Local\Power2Go8 O43 - CFD: 2014/04/16 14:59:23 - [] D -- C:\Users\nicolas\AppData\Local\Programs O43 - CFD: 2015/07/23 22:08:44 - [] D -- C:\Users\nicolas\AppData\Local\Skype O43 - CFD: 2014/04/06 20:45:49 - [0] D -- C:\Users\nicolas\AppData\Local\softthinks O43 - CFD: 2015/09/03 10:56:35 - [] D -- C:\Users\nicolas\AppData\Local\Temp O43 - CFD: 2014/04/05 23:17:25 - [0] SHD -- C:\Users\nicolas\AppData\Local\Temporary Internet Files O43 - CFD: 2015/06/16 19:10:28 - [] D -- C:\Users\nicolas\AppData\Local\Unity O43 - CFD: 2014/05/06 12:57:39 - [] D -- C:\Users\nicolas\AppData\Local\VirtualStore O43 - CFD: 2015/04/29 12:07:42 - [] D -- C:\Users\nicolas\AppData\Local\Win7UI O43 - CFD: 2015/05/03 22:27:35 - [] D -- C:\Users\nicolas\AppData\Local\Windows Live O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/07/16 21:58:59 - [] RD -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/03 08:57:35 - [] RD -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/16 21:58:59 - [] RD -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2014/05/17 11:22:20 - [] D -- C:\Users\nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Liste des pilotes du système (65) - 7s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] © O58 - SDL:2013/05/22 14:38:50 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\Windows\System32\drivers\amdkmpfd.sys [36096] © O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] © O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] © O58 - SDL:2013/10/18 05:46:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athwbx.sys [3858944] © O58 - SDL:2013/08/20 12:06:16 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [12521472] © O58 - SDL:2013/08/20 10:42:28 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [617472] © O58 - SDL:2015/09/01 16:10:43 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [137288] © O58 - SDL:2015/09/01 16:10:43 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [148632] © O58 - SDL:2014/05/16 08:59:06 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [28600] © O58 - SDL:2015/03/10 15:53:07 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [43576] © O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2013/10/29 23:50:12 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [338120] © O58 - SDL:2013/10/29 23:50:12 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\Windows\System32\drivers\btath_avdt.sys [116424] © O58 - SDL:2013/10/29 23:50:14 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [34384] © O58 - SDL:2013/10/29 23:50:14 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [89800] © O58 - SDL:2013/10/29 23:50:14 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [179432] © O58 - SDL:2013/10/29 23:50:14 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [77464] © O58 - SDL:2013/10/29 23:50:14 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [137928] © O58 - SDL:2013/10/29 23:50:14 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [596168] © O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2013/03/05 13:01:42 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\Windows\System32\drivers\CLVirtualDrive.sys [91712] © O58 - SDL:2015/01/31 00:36:11 A . (.Dell Computer Corporation - DDDriver.sys.) -- C:\Windows\System32\drivers\DDDriver64Dcsa.sys [23760] © O58 - SDL:2015/05/22 18:41:57 A . (.Dell Computer Corporation - DellProf.sys.) -- C:\Windows\System32\drivers\DellProf.sys [24240] © O58 - SDL:2013/01/25 04:12:08 A . (.OSR Open Systems Resources, Inc. - Airplane Mode Switch Driver.) -- C:\Windows\System32\drivers\DellRbtn.sys [10752] O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] © O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] © O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] © O58 - SDL:2013/08/02 19:40:04 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [644968] © O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] © O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2013/10/01 20:16:26 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4185600] © O58 - SDL:2013/10/01 20:25:24 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [449528] © O58 - SDL:2013/09/26 11:08:22 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [39320] © O58 - SDL:2013/09/26 11:08:22 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [27032] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] © O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] © O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] © O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] © O58 - SDL:2013/06/22 03:35:14 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [816344] © O58 - SDL:2013/08/21 22:50:02 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3591000] © O58 - SDL:2013/07/10 00:35:38 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUVStor.sys [329944] © O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2013/09/06 10:17:34 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448] © O58 - SDL:2013/09/06 10:17:36 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [34544] © O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] © O58 - SDL:2013/09/06 10:17:36 A . (.Synaptics Incorporated - Synaptics Touchpad 64-bit Driver.) -- C:\Windows\System32\drivers\SynTP.sys [531184] © O58 - SDL:2013/08/28 12:02:56 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [99288] © O58 - SDL:2014/08/16 00:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2013/10/17 03:46:02 N . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\athwbx.sys [3858944] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (4) - 33s O61 - LFC: 2015/08/26 21:44:54 A . (.Easy2Convert Software.) -- C:\Users\nicolas\Downloads\raw2jpg.exe [1914697] O61 - LFC: 2015/09/03 08:57:33 A . (..) -- C:\Users\nicolas\Desktop\cacaoweb.exe [532784] =>PUP.Optional.CacaoWeb O61 - LFC: 2015/08/27 21:13:49 A . (..) -- C:\Users\nicolas\AppData\Local\Microsoft\Windows\INetCache\IE\XN665MM3\urlblockindex[1].bin [16] O61 - LFC: 2015/09/03 08:58:10 A . (..) -- C:\Users\nicolas\AppData\Local\ATI\ACE\Manifest.Bin [28212] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (3) - 6s O69 - SBI: prefs.js [nicolas - ml917m9t.default] user_pref("browser.search.selectedEngine", "sweet-page"); =>PUP.Optional.SweetPage O69 - SBI: prefs.js [nicolas - ml917m9t.default] user_pref("extensions.xpiState", "{\"app-profile\":{\"cacaoweb@cacaoweb.org\":{\"d\":\"C:\\\\Users\\\\nicolas\\\\AppData\\\\Roamin[...] =>PUP.Optional.CacaoWeb O69 - SBI: SearchScopes [HKCU] {A339E93D-9496-4144-A2B6-74172DE34A39} - (Mysearchdial) - http://start.mysearchdial.com/ =>PUP.Optional.MySearchDial ---\\ Enumère les services démarrés par Svchost (34) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1084416] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [227328] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3704320] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] © ---\\ Liste des exceptions du parefeu Windows (16) - 2s O87 - FAEL: "{AC2DB605-0553-4433-9807-BD3B3337F828}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{B297C9DC-0721-4027-9B63-3EF8920A7B6F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{EFEF3A1B-1C97-42EB-8CC6-4297361C4443}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{FD2FB732-30A5-410E-8B19-4FB80C338890}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{49296F0D-A90E-42FD-9CA5-46A95564DEA2}" [In-None-P6-TRUE] .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{DBC928DE-333C-4126-AC73-703BE677EC25}" [In-None-P17-TRUE] .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{73C5EFD3-27DA-4C46-8E36-3756579DD3F3}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\nicolas\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{83751FBD-6E3D-45BD-AB9B-099925565656}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\nicolas\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{202B8673-EC85-4F7C-B2FA-F56B011DD1D0}" [In-None-P17-TRUE] .(...) -- C:\Users\nicolas\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (.not file.) O87 - FAEL: "{A327B601-32EB-4A9E-8BA5-9B87990B23AB}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (.not file.) O87 - FAEL: "TCP Query User{DAFD57FA-2C27-4D27-A9E2-B3CDD6231D12}C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "UDP Query User{C11C1243-5830-43C7-805A-437F88B44650}C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "TCP Query User{598F18D5-D580-4814-8D49-B19558FD6382}C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "UDP Query User{47899146-A4B2-489F-BAFD-9B89B0BB35FE}C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\nicolas\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "TCP Query User{443A5138-53D0-4820-82EC-E5ECA14924B5}C:\users\nicolas\appdata\roaming\cacaoweb\cacaonew9aecd4.exe" [In-None-P6-TRUE] .(...) -- C:\users\nicolas\appdata\roaming\cacaoweb\cacaonew9aecd4.exe (.not file.) =>PUP.Optional.CacaoWeb O87 - FAEL: "UDP Query User{A1B0CCDB-98D2-41FF-8366-B3ADA334AF5B}C:\users\nicolas\appdata\roaming\cacaoweb\cacaonew9aecd4.exe" [In-None-P17-TRUE] .(...) -- C:\users\nicolas\appdata\roaming\cacaoweb\cacaonew9aecd4.exe (.not file.) =>PUP.Optional.CacaoWeb ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (32) - 11s SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/08/11 23:10:12] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2009/11/18 03:14:26] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe © SR - Auto [2013/08/20 11:09:22] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe © SS - Auto [2015/09/01 16:10:25] [ 887128] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe © SR - Auto [2015/09/01 16:10:39] [ 461672] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe © SR - Auto [2015/09/01 16:10:24] [ 461672] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe © SS - Disabled [2015/09/01 16:10:28] [ 1213072] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe © SR - Auto [2015/01/19 23:30:38] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [2013/10/30 00:15:36] [ 317568] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe © SS - Auto [2014/10/22 16:16:38] [ 164656] Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe © SR - Auto [2011/08/30 23:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Demand [2013/10/05 09:32:26] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SR - Auto [2015/05/22 18:44:25] [ 2573520] Dell Data Vault (DellDataVault) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe © SR - Auto [2015/05/22 18:45:36] [ 201936] Dell Data Vault Wizard (DellDataVaultWiz) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe © SS - Auto [2015/05/29 14:43:52] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/05/29 14:43:52] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [2013/08/07 15:24:00] [ 15720] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © SR - Auto [2013/05/11 18:45:38] [ 733696] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe © SS - Demand [2013/05/11 18:45:54] [ 822232] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe © SS - Demand [2015/04/07 00:28:50] [ 643880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SR - Auto [2013/08/28 12:02:56] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [2013/08/28 12:02:58] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Demand [2015/08/28 01:51:00] [ 149160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SR - Auto [2013/04/08 18:44:12] [ 1320496] PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\HelperService.exe © SR - Auto [2013/04/08 18:43:36] [ 799280] PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe © SR - Auto [2013/07/30 07:38:52] [ 253776] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe © SR - Auto [2013/06/19 05:18:38] [ 246488] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe © SR - Auto [2014/09/18 23:02:14] [ 1924328] SoftThinks Agent Service (SftService) . (.SoftThinks SAS.) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe © SS - Auto [2015/06/25 20:09:34] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SR - Auto [2015/06/11 13:15:34] [ 20648] Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc..) - C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe © ---\\ Scan Additionnel (10) - 0s C:\Users\nicolas\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb C:\Users\nicolas\AppData\Roaming\Mozilla\Firefox\Profiles\ml917m9t.default\extensions\cacaoweb@cacaoweb.org =>PUP.Optional.CacaoWeb C:\Windows\Tasks\MySearchDial.job =>PUP.Optional.MySearchDial C:\Windows\System32\Tasks\MySearchDial =>PUP.Optional.MySearchDial HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Download & Install Packages =>Adware.InstallCore HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb HKCU\SOFTWARE\mysearchdial.com =>PUP.Optional.MySearchDial C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\nicolas\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb C:\Users\nicolas\Desktop\cacaoweb.exe =>PUP.Optional.CacaoWeb ---\\ Récapitulatif des éléments trouvées sur votre station (5) - 0s http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb http://www.nicolascoolman.fr/blog =>PUP.Optional.MySearchDial http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/pup-sweetpage/ =>PUP.Optional.SweetPage ~ End of the scan, 37572 items in 104 seconds (855)(0)()