~ ZHPDiag v2015.9.14.141 Par Nicolas Coolman (2015/09/12) ~ Démarré par PC (Administrator) (2015/09/14 23:56:07) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\PC\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\PC\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows Se7en Titan, 32-bit (Build 7600) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v45.0.2454.85 MSIE: Internet Explorer v8.0.7600.16385 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 10s Avast Free Antivirus v10.2.2218 Windows Defender W7 (Activate) ---\\ Logiciels de protection et autres (Superflus) (1) - 10s SUPERAntiSpyware v5.7.1026 ---\\ Surveillance de Logiciels (1) - 10s Adobe Flash Player 10 Plugin ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1825.496 MB (21% free) ~ System Restore: Activé (Enable) ~ System drive C: has 94 GB free of 199 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-PC ~ User Name: PC ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 94 GB free of 199 GB (System) ~ Drive D: has 84 GB free of 139 GB ~ Drive E: has 98 GB free of 136 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.2626FC9755BE22F805D3CFA0CE3EE727] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2614272] © [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] © [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256] © [MD5.78B9ADA2BC8946AF7B17678E0D07A773] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [981504] © [MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [285696] © [MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193024] © [MD5.6D5A49D6479EB753C7879F73A4C35E0F] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [269824] © [MD5.D8714A5FB3141F8226D16861F20C5AC4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] © [MD5.DDC040FDB01EF1712A6B13E52AFB104C] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944] © [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584] © [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656] © [MD5.BA6E70AA0E6091BC39DE29477D866A77] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544] © [MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336] © [MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544] © [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896] © [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888] © [MD5.F4A054BE78AF7F410129C4B64B07DC9B] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [123392] © [MD5.DD52A733BF4CA5AF84562A5E2F963B91] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904] © [MD5.3795DCD21F740EE799FB7223234215AF] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1210432] © [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] © [MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133120] © [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168] © [MD5.CB39E896A2A83702D1737BFD402B3542] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74240] © [MD5.58DF9D2481A56EDDE167E51B334D44FD] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245328] © ---\\ Processus lancés (31) - 2s [MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1388] © [MD5.72D6D8E2D4F82C6E829125C7EC2A88F9] - (.SUPERAntiSpyware.com - Core Service.) -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648] [PID.1868] © [MD5.8283E401C88D50687D2DD63214247C37] - (.Atheros Commnucations - AdminService Application.) -- C:\Program Files\Bluetooth Suite\adminservice.exe [38560] [PID.1932] © [MD5.1FCA854CEDFC2CCD0C22E46EA4EA18F1] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files\Launch Manager\dsiwmis.exe [321104] [PID.2112] © [MD5.2944A8AF3D8492CC8D5C1D2017153ABD] - (.Foxit Software Inc. - Foxit Cloud Safe Update Service.) -- C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [244392] [PID.2160] © [MD5.119EDA9D849D4DE0F42A5BCF757D6CE0] - (.SafeIP - .) -- C:\Program Files\SafeIP\SafeIPS.exe [3860480] [PID.2216] [MD5.86ECBC963D83443151E161D7C4451FEC] - (.Atheros Commnucations - Bluetooth Stack Server.) -- C:\Program Files\Bluetooth Suite\BtvStack.exe [470176] [PID.2308] © [MD5.EE7DF2D47D3239371CD281ED1D6DEDF8] - (.Atheros Commnucations - Bluetooth Tray.) -- C:\Program Files\Bluetooth Suite\AthBtTray.exe [289952] [PID.2616] © [MD5.5A5BF95C7410E96E04C57B06232E9965] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe [968272] [PID.2728] © [MD5.48584955B0CE8545BB31CF0D4459E525] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [170520] [PID.2872] © [MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.3204] © [MD5.BAC15D03EFC8249216D1D610F3B1E67F] - (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe [695528] [PID.3252] [MD5.422150F24F148708C9D3A57DF9C7FDD5] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files\Launch Manager\LMworker.exe [305744] [PID.3276] © [MD5.F916BA0DA28A4B4F7B1ADE76EB42F088] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552] [PID.3320] © [MD5.BCD2621B81474BE6B7436B215A9D72D8] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3425688] [PID.3448] © [MD5.9673485626808B1BB6B30D7F388A93FC] - (...) -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Little transparency.exe [402263] [PID.3584] [MD5.207B16FA69F61D1895F8D8532F587E4B] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [263600] [PID.3964] © [MD5.A72BB48D9014A7D7C05F02F595F52D60] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.28.15\GoogleCrashHandler.exe [245576] [PID.3328] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.3072] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.1644] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.6084] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.760] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.4736] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.5880] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.2888] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.5220] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.5068] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.2896] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.6060] © [MD5.16E1EA189D721E60D17D1BC8E0392702] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.6104] © [MD5.018B44D6E41ABDD08403E6B9EC3575B3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\PC\ZHPDiag3.exe [1929728] [PID.4364] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (13) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com/ G2 - GCE: Preference [User Data\Default] [acjpdakpjonkfmggcmanlhdakfkhloii] Yahoo Web G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [bdfkbdkkfmmckaadapdipihjfaacnkgd] __MSG_themeName__ G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [egekhjenodlmckpgpkkdpfnodobbgnkf] MusixLib Search G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [ldmiahjidflgnbiadknkmaimfpjkelng] Avira SafeSearch G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (3) - 1s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll © P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.default-search.net?sid=503&aid=112&itype=n&ver=13986&tm=491&src=hmp =>PUP.Optional.SearchNet R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/ =>PUP.Optional.Qone8 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://en.eazel.com/ R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (30) ---\\ Browser Helper Object de navigateur (BHO) (9) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll © O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll © O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll © O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll © O2 - BHO: BaseFlash Ads - {C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53} . (...) -- C:\Users\PC\AppData\Roaming\BaseFlash\IE\BaseFlash.dll (.not file.) O2 - BHO: wisen wizard - {d7bbe586-f42a-454b-9794-776b57483a40} (Orphean) O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll © O2 - BHO: DVDVideoSoft.WebPageAdjuster - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} . (.DVDVideoSoft Ltd. - DVDVideoSoft IE Extension.) -- C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll © ---\\ Applications lancées au démarrage du système (24) - 1s O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Commnucations - Bluetooth Stack Server.) -- C:\Program Files\Bluetooth Suite\BtvStack.exe © O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Tray.) -- C:\Program Files\Bluetooth Suite\AthBtTray.exe © O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe © O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe (.not file.) O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe © O4 - HKLM\..\Run: [C-cleaner] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O4 - HKLM\..\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe © O4 - HKLM\..\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe O4 - HKLM\..\Run: [VideoLAN] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O4 - HKLM\..\Run: [Andy] C:\Program Files\Andy\HandyAndy.exe (.not file.) O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files\BlueStacks\HD-Agent.exe (.not file.) O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe © O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe © O4 - HKUS\.DEFAULT\..\Run: [Welcome Center] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKUS\.DEFAULT\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-18\..\Run: [Welcome Center] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKUS\S-1-5-18\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-2933965939-3250110423-1575710206-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKUS\S-1-5-21-2933965939-3250110423-1575710206-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe © ---\\ Winsock hijacker (Layered Service Provider) (5) - 0s O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (.SafeIP.) -- C:\Windows\System32\SafeIPs.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (.SafeIP.) -- C:\Windows\System32\SafeIPs.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (.SafeIP.) -- C:\Windows\System32\SafeIPs.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (.SafeIP.) -- C:\Windows\System32\SafeIPs.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000016\Winsock LSP File . (.SafeIP.) -- C:\Windows\System32\SafeIPs.dll =>Hijacker.Winsock ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 ---\\ Protocole additionnel (25) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll © O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll © O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (10) - 1s O23 - Service: SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com - Core Service.) - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE © O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files\Bluetooth Suite\adminservice.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Skype Click to Call PNR Service (c2cpnrsvc) . (...) - C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (.not file.) O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe © O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Software Inc. - Foxit Cloud Safe Update Service.) - C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe © O23 - Service: SafeIPS (SafeIPS) . (.SafeIP - .) - C:\Program Files\SafeIP\SafeIPS.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe © O23 - Service: Util wisen wizard (Util wisen wizard) . (...) - C:\Program Files\wisen wizard\bin\utilwisenwizard.exe (.not file.) =>PUP.Optional.wisenwizard ---\\ Tâches planifiées en automatique (28) - 3s [MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.FAAE091936E04BDE3B6041AB5C16BC7B] [APT] [avast! Emergency Update] (.Avast Software s.r.o..) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1298776] © [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core] (.Facebook Inc..) -- C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] © [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA] (.Facebook Inc..) -- C:\Users\PC\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core] (.Google Inc..) -- C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA] (.Google Inc..) -- C:\Users\PC\AppData\Local\Google\Update\GoogleUpdate.exe [144200] © [MD5.00000000000000000000000000000000] [APT] [LaunchSignup] (...) -- C:\Program Files\MyPC Backup\Signup Wizard.exe (.not file.) [0] =>PUP.Optional.MyPCBackup [MD5.00000000000000000000000000000000] [APT] [YTDownloader] (...) -- C:\Program Files\YTDownloader\YTDownloader.exe (.not file.) [0] =>PUP.Optional.YTDownloader [MD5.16E1EA189D721E60D17D1BC8E0392702] [APT] [{592F44D0-8373-49A2-89D6-F69F4CF88BF1}] (.Google Inc..) -- c:\program files\Google\Chrome\application\chrome.exe [815944] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core.job [894] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA.job [916] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core.job [1014] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA.job [1066] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: avast! Emergency Update - (.Avast Software s.r.o..) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core [3518] © O39 - APT: FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA [3886] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3802] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4054] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000Core [3638] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2933965939-3250110423-1575710206-1000UA [4034] © O39 - APT: LaunchSignup - (...) -- C:\Windows\System32\Tasks\LaunchSignup [4002] =>PUP.Optional.MyPCBackup O39 - APT: YTDownloader - (...) -- C:\Windows\System32\Tasks\YTDownloader [3558] =>PUP.Optional.YTDownloader ---\\ Logiciels installés (85) - 7s O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin © O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast © O42 - Logiciel: Capture Ecran 1.1 - (...) [HKLM] -- Capture Ecran_is1 O42 - Logiciel: Counter-Strike 1.6 - (...) [HKLM] -- Counter-Strike 1.6 O42 - Logiciel: Dev-C++ - (.Bloodshed Software.) [HKLM] -- Dev-C++ O42 - Logiciel: EGR-ShellExtension - (.EasternGraphics.) [HKLM] -- EGR-ShellExtension O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM] -- Foxit Reader_is1 © O42 - Logiciel: Free YouTube Download version 3.2.52.113 - (.DVDVideoSoft Ltd..) [HKLM] -- Free YouTube Download_is1 © O42 - Logiciel: Free YouTube to MP3 Converter version 3.12.54.128 - (.DVDVideoSoft Ltd..) [HKLM] -- Free YouTube to MP3 Converter_is1 © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome © O42 - Logiciel: HashCheck Shell Extension (x86-32) - (.Kai Liu.) [HKLM] -- HashCheck Shell Extension © O42 - Logiciel: Internet Download Manager - (...) [HKLM] -- Internet Download Manager O42 - Logiciel: K-Lite Mega Codec Pack 4.1.4 - (...) [HKLM] -- KLiteCodecPack_is1 O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM] -- LManager © O42 - Logiciel: Microsoft Fortran PowerStation 4.0 - (...) [HKLM] -- MSFortranPowerStation O42 - Logiciel: MStudio MindLab - (...) [HKLM] -- MStudio MindLab O42 - Logiciel: SafeIP - (.SafeIP.) [HKLM] -- SAFEIP_is1 O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM] -- USB Disk Security_is1 O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver © O42 - Logiciel: WinSCP 5.5.6 - (.Martin Prikryl.) [HKLM] -- winscp3_is1 © O42 - Logiciel: Zune - (.Microsoft Corporation.) [HKLM] -- Zune © O42 - Logiciel: Zune Language Pack (PTB) - (.Microsoft Corporation.) [HKLM] -- {07EEE598-5F21-4B57-B40B-46592625B3D9} © O42 - Logiciel: Bluetooth Win7 Suite - (.Atheros Communications.) [HKLM] -- {101A497C-7EF6-4001-834D-E5FA1C70FEFA} © O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} © O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} © O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} © O42 - Logiciel: Zune Language Pack (CHS) - (.Microsoft Corporation.) [HKLM] -- {2A9DFFD8-4E09-4B91-B957-454805B0D7C4} © O42 - Logiciel: DevConfig version 1.0 - (...) [HKLM] -- {2CD216FC-DCB0-4234-ACD0-8053E550AA9E}_is1 O42 - Logiciel: Zune Language Pack (ELL) - (.Microsoft Corporation.) [HKLM] -- {3589A659-F732-4E65-A89A-5438C332E59D} © O42 - Logiciel: Foxit Cloud - (.Foxit Software Inc..) [HKLM] -- {41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1 © O42 - Logiciel: SPSS Statistics 17.0 - (.SPSS Inc..) [HKLM] -- {46B65150-F8AA-42F2-94FB-2729A8AE5F7E} O42 - Logiciel: Foxit PhantomPDF Standard - (.Foxit Software Inc..) [HKLM] -- {48373727-EF59-40C6-A52D-D24C3360F030} © O42 - Logiciel: Zune Language Pack (KOR) - (.Microsoft Corporation.) [HKLM] -- {51C839E1-2BE4-4E77-A1BA-CCEA5DAFA741} © O42 - Logiciel: Acer Crystal Eye webcam - (.Liteon.) [HKLM] -- {51F026FA-5146-4232-A8BA-1364740BD053} © O42 - Logiciel: Zune Language Pack (RUS) - (.Microsoft Corporation.) [HKLM] -- {57C51D56-B287-4C11-9192-EC3C46EF76A4} © O42 - Logiciel: Zune Language Pack (PTG) - (.Microsoft Corporation.) [HKLM] -- {5C93E291-A1CC-4E51-85C6-E194209FCDB4} © O42 - Logiciel: Zune Language Pack (NOR) - (.Microsoft Corporation.) [HKLM] -- {5DEFD397-4012-46C3-B6DA-E8013E660772} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Zune Language Pack (NLD) - (.Microsoft Corporation.) [HKLM] -- {6740BCB0-5863-47F4-80F4-44F394DE4FE2} © O42 - Logiciel: DataStudio - (.PASCO scientific.) [HKLM] -- {69CD58CD-D8EC-4DB4-981B-1C256F105C7B} O42 - Logiciel: Skype™ 7.9 - (.Skype Technologies S.A..) [HKLM] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: Zune Language Pack (ESP) - (.Microsoft Corporation.) [HKLM] -- {6B33492E-FBBC-4EC3-8738-09E16E395A10} © O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} © O42 - Logiciel: Zune Language Pack (SVE) - (.Microsoft Corporation.) [HKLM] -- {6EB931CD-A7DA-4A44-B74A-89C8EB50086F} © O42 - Logiciel: Zune Language Pack (MSL) - (.Microsoft Corporation.) [HKLM] -- {76BA306B-2AA0-47C0-AB6B-F313AB56C136} © O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} © O42 - Logiciel: Zune Language Pack (PLK) - (.Microsoft Corporation.) [HKLM] -- {8960A0A1-BB5A-479E-92CF-65AB9D684B43} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Zune Language Pack (DAN) - (.Microsoft Corporation.) [HKLM] -- {8B112338-2B08-4851-AF84-E7CAD74CEB32} © O42 - Logiciel: Hotfix for Office (KB966313) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C93C214-1FEF-43B5-A0D8-13D218C7A984} © O42 - Logiciel: Hotfix for Office (KB966310) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{15FD40FC-EDF4-4FC7-9ACC-0F51C983A2FE} © O42 - Logiciel: Hotfix for Office (KB968245) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3F4DDFFB-1564-44CD-8867-C71E15150FA4} © O42 - Logiciel: Hotfix for Office (KB961751) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{508D6ED7-0DBB-47FB-A567-CB3AAEA80B63} © O42 - Logiciel: Hotfix for Office (KB961752) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{76D5FE11-6417-405F-9AC1-9778D0D7D413} © O42 - Logiciel: Hotfix for Office (KB967701) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{789E311E-504C-4336-884D-17E3CF354088} © O42 - Logiciel: Hotfix for Office (KB966310) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{963E41D1-335F-423B-B2A9-4821FE768DC2} © O42 - Logiciel: Hotfix for Office (KB967698) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{9EEFE0D8-212A-49B8-919E-2581B7986107} © O42 - Logiciel: Hotfix for Office (KB967702) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BAE7E76D-2ABE-436C-8A08-0CA292168234} © O42 - Logiciel: Hotfix for Office (KB966310) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEB5AAEC-32D0-48EC-8A21-6F596F158242} © O42 - Logiciel: Hotfix for Office (KB967701) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C290F618-C1A4-46EC-8969-73130950B7BD} © O42 - Logiciel: Hotfix for Office (KB966312) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CDACFFD3-ECB5-4769-B92B-F6F830FE1EC9} © O42 - Logiciel: Hotfix for Office (KB967701) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{D12A39A2-0AC7-41EB-81A1-0AA486697DDE} © O42 - Logiciel: Hotfix for Office (KB967697) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{F9B00423-2DF0-4DC6-83CD-80EFBDC7183D} © O42 - Logiciel: Zune Language Pack (IND) - (.Microsoft Corporation.) [HKLM] -- {92ECE3F9-591E-4C12-8A62-B9FCE38BF646} © O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} © O42 - Logiciel: Zune - (.Microsoft Corporation.) [HKLM] -- {9B75648B-6C30-4A0D-9DE6-0D09D20AF5A5} © O42 - Logiciel: Zune Language Pack (CHT) - (.Microsoft Corporation.) [HKLM] -- {A5A53EA8-A11E-49F0-BDF5-AE536426A31A} © O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM] -- {A84DB02B-9C2B-4272-9D2D-A80E00A56513} © O42 - Logiciel: Zune Language Pack (CSY) - (.Microsoft Corporation.) [HKLM] -- {A8F2E50B-86E2-4D96-9BD2-9758BCC6F9B3} © O42 - Logiciel: Zune Language Pack (FIN) - (.Microsoft Corporation.) [HKLM] -- {B4870774-5F3A-46D9-9DFE-06FB5599E26B} © O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {B9DB4C76-01A4-46D5-8910-F7AA6376DBAF} © O42 - Logiciel: Nokia Connectivity Cable Driver - (...) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F} O42 - Logiciel: Zune Language Pack (DEU) - (.Microsoft Corporation.) [HKLM] -- {BE236D9A-52EC-4A17-82DA-84B5EAD31E3E} © O42 - Logiciel: Zune Language Pack (ITA) - (.Microsoft Corporation.) [HKLM] -- {C5D37FFA-7483-410B-982B-91E93FD3B7DA} © O42 - Logiciel: Zune Language Pack (FRA) - (.Microsoft Corporation.) [HKLM] -- {C68D33B1-0204-4EBE-BC45-A6E432B1D13A} © O42 - Logiciel: Zune Language Pack (HUN) - (.Microsoft Corporation.) [HKLM] -- {C6BE19C6-B102-4038-B2A6-1C313872DBB4} © O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM] -- {CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6} © O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} © O42 - Logiciel: Zune Language Pack (JPN) - (.Microsoft Corporation.) [HKLM] -- {D8A781C9-3892-4E2E-9320-480CF896CFBB} © O42 - Logiciel: IPtool - (.Mad Dog Apps.) [HKLM] -- {DD7FF68A-8032-4EA1-BC81-1EF926316B85} O42 - Logiciel: Scientific Notebook 5.5 - (.MacKichan Software.) [HKLM] -- {E066DE16-50F3-4A8C-953C-E67118894B2F} O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Windows Mobile Device Updater Component - (.Microsoft Corporation.) [HKLM] -- {F2CB8C3C-9C9E-4FAB-9067-655601C5F748} © O42 - Logiciel: Viber - (.Viber Media Inc.) [HKCU] -- Viber © ---\\ HKCU & HKLM Software Keys (151) - 7s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AGEIA Technologies HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\Atheros HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\Avg HKLM\SOFTWARE\BaseFlash HKLM\SOFTWARE\Broadcom HKLM\SOFTWARE\CLSYSTEM HKLM\SOFTWARE\Codec Tweak Tool HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\Dritek HKLM\SOFTWARE\DVDVideoSoft HKLM\SOFTWARE\EasternGraphics HKLM\SOFTWARE\Foxit Software HKLM\SOFTWARE\Gabest HKLM\SOFTWARE\GEAR Software HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\iTinySoft HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\Jodix HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\KLCodecPack HKLM\SOFTWARE\Liteon HKLM\SOFTWARE\MacKichan Software HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Martin Prikryl HKLM\SOFTWARE\MimarSinan HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MStudio HKLM\SOFTWARE\Ntpad HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OnlineTVPlayer HKLM\SOFTWARE\OpenVPN HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\PASCO scientific HKLM\SOFTWARE\PositiveFinds =>PUP.Optional.PositiveFinds HKLM\SOFTWARE\ProtectExtension HKLM\SOFTWARE\qone8Software HKLM\SOFTWARE\Rainbow Technologies HKLM\SOFTWARE\RealNetworks HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\S3R521 HKLM\SOFTWARE\SAMSUNG HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SmdmF =>PUP.Optional.SettingsManager HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SPSS HKLM\SOFTWARE\SUPERAntiSpyware.com HKLM\SOFTWARE\SuppHelpDir HKLM\SOFTWARE\TAP-Windows HKLM\SOFTWARE\ThinPrint HKLM\SOFTWARE\Valve HKLM\SOFTWARE\vLite HKLM\SOFTWARE\VMware, Inc. HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\ZbshaLab HKLM\SOFTWARE\zbshareware HKCU\SOFTWARE\4shared HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Andrew Zhezherun HKCU\SOFTWARE\Andy HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Avira HKCU\SOFTWARE\Backup_IDM HKCU\SOFTWARE\Boilsoft HKCU\SOFTWARE\CamStudioOpenSource for Nick HKCU\SOFTWARE\Capture Ecran HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dritek HKCU\SOFTWARE\DVDVideoSoft HKCU\SOFTWARE\EasternGraphics HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\FileHippo HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Generateur Mot de Passe HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Kiloo Games HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\Liteon HKCU\SOFTWARE\MacKichan Software HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mad Dog Apps HKCU\SOFTWARE\Martin Prikryl HKCU\SOFTWARE\Minuterie HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NJIT HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OnlineTVPlayer HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PASCO Scientific HKCU\SOFTWARE\PowerPack HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\RocketDock HKCU\SOFTWARE\SafeIP HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SciFace HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\speeditupfree =>PUP.Optional.SpeeditUp HKCU\SOFTWARE\SUPERAntiSpyware.com HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\Tango HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\USB Disk Security HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Viber HKCU\SOFTWARE\VirtualDub.org HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wintertree HKCU\SOFTWARE\wisen wizard =>PUP.Optional.wisenwizard HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\ThinPrint HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (234) - 10s O43 - CFD: 2014/09/20 12:38:46 - [0] D -- C:\Program Files\7-Zip O43 - CFD: 2014/03/20 22:22:38 - [] D -- C:\Program Files\Acer Crystal Eye webcam O43 - CFD: 2015/04/21 13:35:47 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2015/04/21 14:10:17 - [0] D -- C:\Program Files\Avira O43 - CFD: 2014/03/20 22:07:49 - [] D -- C:\Program Files\Bluetooth Suite O43 - CFD: 2014/03/20 23:34:27 - [] D -- C:\Program Files\Broadcom O43 - CFD: 2015/06/21 19:25:15 - [] D -- C:\Program Files\CaptureEcran11 O43 - CFD: 2014/12/17 13:58:14 - [] D -- C:\Program Files\CodeBlocks O43 - CFD: 2015/09/06 22:28:25 - [] D -- C:\Program Files\Common Files O43 - CFD: 2015/06/07 08:28:03 - [] D -- C:\Program Files\Counter-Strike 1.6 O43 - CFD: 2014/12/13 00:25:25 - [] D -- C:\Program Files\Dev-Cpp O43 - CFD: 2015/08/08 16:08:53 - [] D -- C:\Program Files\DevConfig O43 - CFD: 2009/07/14 10:01:30 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 2015/02/06 20:45:04 - [] D -- C:\Program Files\DVDVideoSoft O43 - CFD: 2015/07/13 19:41:12 - [] D -- C:\Program Files\EasternGraphics O43 - CFD: 2014/03/20 13:40:02 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2015/03/14 23:54:23 - [] D -- C:\Program Files\Foxit Software O43 - CFD: 2014/11/03 15:20:17 - [] D -- C:\Program Files\Google O43 - CFD: 2014/03/31 09:27:48 - [] D -- C:\Program Files\Intel O43 - CFD: 2015/05/24 16:44:27 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 2009/07/14 09:39:39 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2015/09/04 09:44:22 - [] D -- C:\Program Files\Java O43 - CFD: 2014/06/05 13:35:19 - [] D -- C:\Program Files\K-Lite Codec Pack O43 - CFD: 2014/03/20 23:02:49 - [] D -- C:\Program Files\Launch Manager O43 - CFD: 2015/08/08 16:09:02 - [] D -- C:\Program Files\Mad Dog Apps O43 - CFD: 2009/07/14 10:01:21 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2014/12/07 20:38:14 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/03/09 22:59:28 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2014/12/07 20:37:57 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 2014/12/07 20:33:25 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2015/03/10 21:50:16 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2015/05/29 12:27:51 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2014/12/07 20:38:25 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2014/03/20 22:12:26 - [] D -- C:\Program Files\NVIDIA Corporation O43 - CFD: 2015/04/21 20:04:44 - [] D -- C:\Program Files\Pasco scientific O43 - CFD: 2009/07/14 05:52:30 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2015/02/01 14:55:42 - [] D -- C:\Program Files\SafeIP O43 - CFD: 2015/09/06 22:28:25 - [] RD -- C:\Program Files\Skype O43 - CFD: 2015/04/09 13:29:29 - [] D -- C:\Program Files\SPSSInc O43 - CFD: 2014/10/07 20:36:10 - [] D -- C:\Program Files\SUPERAntiSpyware O43 - CFD: 2015/04/22 17:54:55 - [] D -- C:\Program Files\USB Disk Security O43 - CFD: 2009/07/14 09:39:39 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/03/11 15:43:30 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2015/03/13 00:00:46 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/03/11 15:13:15 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2014/03/20 13:40:02 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2009/07/14 09:39:39 - [] D -- C:\Program Files\Windows Photo Viewer O43 - CFD: 2009/07/14 05:52:32 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2015/04/21 13:37:01 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2015/04/21 14:23:14 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2014/11/26 00:20:28 - [] D -- C:\Program Files\WinSCP O43 - CFD: 2014/04/17 22:43:13 - [] D -- C:\Program Files\Zune O43 - CFD: 2014/03/20 22:18:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2014/03/20 22:22:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye webcam O43 - CFD: 2014/03/20 13:23:28 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/05/29 13:49:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Andy O43 - CFD: 2014/10/02 02:35:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aptana O43 - CFD: 2015/06/07 21:09:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 2014/12/13 00:27:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloodshed Dev-C++ O43 - CFD: 2014/03/20 22:08:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Suite O43 - CFD: 2015/03/30 00:00:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capture Ecran O43 - CFD: 2014/10/18 23:48:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 O43 - CFD: 2015/04/21 20:05:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DataStudio O43 - CFD: 2015/08/08 16:08:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DevConfig O43 - CFD: 2015/02/06 20:44:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft O43 - CFD: 2014/11/30 15:11:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fortran PowerStation 4.0 O43 - CFD: 2015/03/14 23:56:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF O43 - CFD: 2015/04/30 19:03:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader O43 - CFD: 2014/03/20 13:23:25 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/03/20 22:34:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2014/10/14 21:40:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/09/04 09:44:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2014/03/20 13:41:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2009/07/14 05:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/12/07 20:40:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/03/09 15:49:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2014/11/04 21:16:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MStudio MindLab O43 - CFD: 2015/02/01 14:55:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SafeIP O43 - CFD: 2014/12/12 19:36:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scientific Notebook 5.5 O43 - CFD: 2015/09/06 22:28:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/04/09 13:32:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPSS Inc O43 - CFD: 2015/04/21 20:05:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2014/07/11 14:56:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware O43 - CFD: 2009/07/14 10:00:32 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/06/12 01:49:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows O43 - CFD: 2015/08/07 15:20:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TimeLeft 3 O43 - CFD: 2009/10/28 18:53:22 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titan-Se7en™ O43 - CFD: 2015/04/22 17:54:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security O43 - CFD: 2014/10/14 22:29:58 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Valve O43 - CFD: 2015/04/21 14:23:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2014/04/17 22:41:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune O43 - CFD: 2014/05/03 23:04:44 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/04/21 13:28:08 - [] D -- C:\ProgramData\Apple O43 - CFD: 2014/11/25 23:46:02 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2014/11/29 21:23:15 - [] D -- C:\ProgramData\Atheros O43 - CFD: 2015/04/21 13:35:35 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2015/04/21 14:10:17 - [] D -- C:\ProgramData\Avira O43 - CFD: 2015/04/21 13:33:26 - [] D -- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB O43 - CFD: 2015/05/30 02:08:49 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 2015/09/11 14:05:26 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 2014/03/20 13:40:01 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/04/21 14:45:52 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2015/08/07 15:15:32 - [] D -- C:\ProgramData\Computamus O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/07/13 19:38:26 - [] D -- C:\ProgramData\EasternGraphics O43 - CFD: 2014/03/20 13:40:01 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/08/07 15:14:04 - [] D -- C:\ProgramData\HWtmyP0CdAHVgdj O43 - CFD: 2014/05/29 23:47:22 - [] D -- C:\ProgramData\Logs O43 - CFD: 2014/03/20 13:40:02 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/04/21 20:02:37 - [] D -- C:\ProgramData\MFAData O43 - CFD: 2015/04/07 17:25:52 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/03/12 10:13:17 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2014/03/20 13:40:02 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/09/04 09:51:10 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/04/21 13:25:11 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2014/03/20 13:41:30 - [0] D -- C:\ProgramData\Real O43 - CFD: 2014/05/03 23:04:46 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2015/04/09 13:32:19 - [] D -- C:\ProgramData\SafeNet Sentinel O43 - CFD: 2015/05/29 12:34:58 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2015/09/06 22:28:45 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/04/09 13:29:30 - [] D -- C:\ProgramData\SPSS O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/05/05 08:45:10 - [] D -- C:\ProgramData\Sun O43 - CFD: 2014/07/11 14:56:07 - [] D -- C:\ProgramData\SUPERAntiSpyware.com O43 - CFD: 2014/05/29 23:47:19 - [] D -- C:\ProgramData\TEMP O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2014/12/28 18:42:22 - [] D -- C:\ProgramData\VMware O43 - CFD: 2015/04/21 14:43:12 - [0] D -- C:\ProgramData\Zbshareware Lab O43 - CFD: 2015/07/13 19:37:38 - [] HD -- C:\ProgramData\{5EE865C2-E8FF-4231-A2B8-0188FEFBCE3D} O43 - CFD: 2014/05/03 23:04:43 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2014/12/07 20:37:56 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2015/02/06 20:44:30 - [] D -- C:\Program Files\Common Files\DVDVideoSoft O43 - CFD: 2014/12/12 19:33:52 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 2014/03/20 23:33:35 - [] D -- C:\Program Files\Common Files\Intel O43 - CFD: 2015/09/04 09:43:51 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2015/03/10 21:50:29 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2015/09/06 22:28:25 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2015/04/09 13:29:30 - [] D -- C:\Program Files\Common Files\SPSS O43 - CFD: 2015/03/12 01:42:20 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2015/03/09 14:28:19 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 2014/05/03 23:05:01 - [] D -- C:\Users\PC\AppData\Roaming\Adobe O43 - CFD: 2014/11/25 23:53:02 - [] D -- C:\Users\PC\AppData\Roaming\Apple Computer O43 - CFD: 2015/04/21 13:40:40 - [] D -- C:\Users\PC\AppData\Roaming\AVAST Software O43 - CFD: 2014/09/26 23:21:00 - [] D -- C:\Users\PC\AppData\Roaming\Boilsoft O43 - CFD: 2015/01/28 19:14:04 - [] D -- C:\Users\PC\AppData\Roaming\codeblocks O43 - CFD: 2014/06/02 23:04:59 - [] D -- C:\Users\PC\AppData\Roaming\com.prezi.PreziDesktop O43 - CFD: 2014/12/13 00:50:41 - [] D -- C:\Users\PC\AppData\Roaming\Dev-Cpp O43 - CFD: 2014/03/25 14:04:18 - [] D -- C:\Users\PC\AppData\Roaming\DivX O43 - CFD: 2015/09/14 23:16:40 - [] D -- C:\Users\PC\AppData\Roaming\DMCache O43 - CFD: 2015/04/23 20:58:50 - [] D -- C:\Users\PC\AppData\Roaming\DVDVideoSoft O43 - CFD: 2015/07/13 19:38:26 - [] D -- C:\Users\PC\AppData\Roaming\EasternGraphics O43 - CFD: 2015/03/15 00:00:00 - [] D -- C:\Users\PC\AppData\Roaming\Foxit Software O43 - CFD: 2014/03/20 13:44:19 - [] D -- C:\Users\PC\AppData\Roaming\Identities O43 - CFD: 2015/08/09 12:19:43 - [] D -- C:\Users\PC\AppData\Roaming\IDM O43 - CFD: 2014/03/20 21:53:18 - [] D -- C:\Users\PC\AppData\Roaming\InstallShield O43 - CFD: 2014/03/20 22:16:23 - [] D -- C:\Users\PC\AppData\Roaming\Intel Corporation O43 - CFD: 2014/03/20 22:28:00 - [] D -- C:\Users\PC\AppData\Roaming\Macromedia O43 - CFD: 2009/07/14 10:00:32 - [0] D -- C:\Users\PC\AppData\Roaming\Media Center Programs O43 - CFD: 2014/03/25 14:04:19 - [] D -- C:\Users\PC\AppData\Roaming\Media Player Classic O43 - CFD: 2014/06/04 02:37:27 - [] D -- C:\Users\PC\AppData\Roaming\MegaVideoConverter O43 - CFD: 2015/08/08 16:09:03 - [] SD -- C:\Users\PC\AppData\Roaming\Microsoft O43 - CFD: 2015/04/22 09:03:42 - [] D -- C:\Users\PC\AppData\Roaming\Mozilla O43 - CFD: 2015/08/07 15:20:55 - [] D -- C:\Users\PC\AppData\Roaming\NesterSoft O43 - CFD: 2014/06/23 11:53:48 - [] D -- C:\Users\PC\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy O43 - CFD: 2014/10/05 18:53:00 - [] D -- C:\Users\PC\AppData\Roaming\Opera Software O43 - CFD: 2014/05/05 08:45:49 - [] D -- C:\Users\PC\AppData\Roaming\Oracle O43 - CFD: 2014/06/02 01:58:52 - [] D -- C:\Users\PC\AppData\Roaming\PowerISO O43 - CFD: 2014/05/30 22:47:51 - [] D -- C:\Users\PC\AppData\Roaming\qone8 O43 - CFD: 2014/03/24 16:37:35 - [] D -- C:\Users\PC\AppData\Roaming\Real O43 - CFD: 2015/02/06 20:43:35 - [] D -- C:\Users\PC\AppData\Roaming\RHEng =>PUP.Optional.Conduit O43 - CFD: 2015/05/29 12:35:00 - [0] D -- C:\Users\PC\AppData\Roaming\Samsung O43 - CFD: 2015/09/08 19:45:42 - [] D -- C:\Users\PC\AppData\Roaming\Skype O43 - CFD: 2015/04/12 12:21:28 - [] D -- C:\Users\PC\AppData\Roaming\SPSSInc O43 - CFD: 2015/09/04 09:43:07 - [] D -- C:\Users\PC\AppData\Roaming\Sun O43 - CFD: 2014/07/11 14:56:15 - [] D -- C:\Users\PC\AppData\Roaming\SUPERAntiSpyware.com O43 - CFD: 2014/07/05 17:55:58 - [] D -- C:\Users\PC\AppData\Roaming\Unity O43 - CFD: 2014/09/20 00:15:11 - [0] D -- C:\Users\PC\AppData\Roaming\uTorrent O43 - CFD: 2015/05/31 01:16:18 - [] D -- C:\Users\PC\AppData\Roaming\ViberPC O43 - CFD: 2014/12/28 18:39:17 - [] D -- C:\Users\PC\AppData\Roaming\VMware O43 - CFD: 2014/05/05 00:09:12 - [] D -- C:\Users\PC\AppData\Roaming\WinRAR O43 - CFD: 2015/04/21 13:03:57 - [] D -- C:\Users\PC\AppData\Roaming\Zbshareware Lab O43 - CFD: 2015/09/14 23:56:32 - [] D -- C:\Users\PC\AppData\Roaming\ZHP O43 - CFD: 2014/05/04 00:38:58 - [] D -- C:\Users\PC\AppData\Local\Adobe O43 - CFD: 2014/11/25 23:44:40 - [] D -- C:\Users\PC\AppData\Local\Apple O43 - CFD: 2014/11/25 23:49:46 - [] D -- C:\Users\PC\AppData\Local\Apple Computer O43 - CFD: 2014/03/20 13:43:34 - [0] SHD -- C:\Users\PC\AppData\Local\Application Data O43 - CFD: 2014/03/20 22:28:37 - [] D -- C:\Users\PC\AppData\Local\Apps O43 - CFD: 2014/03/20 22:19:01 - [] D -- C:\Users\PC\AppData\Local\BMExplorer O43 - CFD: 2015/06/07 08:28:18 - [] D -- C:\Users\PC\AppData\Local\CrashDumps O43 - CFD: 2014/06/04 02:05:11 - [] D -- C:\Users\PC\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 2014/03/20 22:28:55 - [0] D -- C:\Users\PC\AppData\Local\Deployment O43 - CFD: 2015/05/27 17:49:07 - [] D -- C:\Users\PC\AppData\Local\Downloaded Installations O43 - CFD: 2015/09/13 15:22:33 - [0] D -- C:\Users\PC\AppData\Local\ElevatedDiagnostics O43 - CFD: 2014/05/10 23:45:19 - [] D -- C:\Users\PC\AppData\Local\Facebook O43 - CFD: 2014/10/17 13:47:20 - [] D -- C:\Users\PC\AppData\Local\Foxit Reader O43 - CFD: 2014/06/04 02:10:32 - [] D -- C:\Users\PC\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/09/11 14:05:19 - [] D -- C:\Users\PC\AppData\Local\Google O43 - CFD: 2014/03/20 13:43:34 - [0] SHD -- C:\Users\PC\AppData\Local\Historique O43 - CFD: 2015/07/13 19:37:36 - [] D -- C:\Users\PC\AppData\Local\III O43 - CFD: 2015/05/27 16:58:49 - [] D -- C:\Users\PC\AppData\Local\Kingosoft O43 - CFD: 2014/06/04 02:14:31 - [0] D -- C:\Users\PC\AppData\Local\MegaMonsterFun O43 - CFD: 2015/04/21 14:45:52 - [] D -- C:\Users\PC\AppData\Local\MFAData O43 - CFD: 2015/05/16 00:06:22 - [] D -- C:\Users\PC\AppData\Local\Microsoft O43 - CFD: 2014/08/17 14:58:44 - [] D -- C:\Users\PC\AppData\Local\Microsoft Games O43 - CFD: 2014/12/07 20:32:06 - [0] D -- C:\Users\PC\AppData\Local\Microsoft Help O43 - CFD: 2014/10/05 18:53:00 - [] D -- C:\Users\PC\AppData\Local\Opera Software O43 - CFD: 2015/08/07 15:16:32 - [] D -- C:\Users\PC\AppData\Local\Pedagosoft O43 - CFD: 2014/03/27 23:24:28 - [] D -- C:\Users\PC\AppData\Local\Programs O43 - CFD: 2015/05/29 12:35:00 - [0] D -- C:\Users\PC\AppData\Local\Samsung O43 - CFD: 2014/03/24 16:53:09 - [] D -- C:\Users\PC\AppData\Local\Skype O43 - CFD: 2015/09/14 23:56:07 - [] D -- C:\Users\PC\AppData\Local\Temp O43 - CFD: 2014/03/20 13:43:34 - [0] SHD -- C:\Users\PC\AppData\Local\Temporary Internet Files O43 - CFD: 2014/10/02 01:30:38 - [0] D -- C:\Users\PC\AppData\Local\Unity O43 - CFD: 2015/05/30 20:40:01 - [] D -- C:\Users\PC\AppData\Local\Viber O43 - CFD: 2014/12/12 12:36:22 - [] D -- C:\Users\PC\AppData\Local\VMware O43 - CFD: 2015/03/09 14:28:30 - [] D -- C:\Users\PC\AppData\Local\Windows Live O43 - CFD: 2009/07/14 05:42:04 - [] RD -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/11 15:21:32 - [] RD -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/05/29 13:57:28 - [0] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Andy O43 - CFD: 2015/09/12 13:47:45 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome O43 - CFD: 2014/11/30 15:11:32 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fortran PowerStation 4.0 O43 - CFD: 2014/12/13 01:14:57 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/01/25 00:26:59 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2014/10/14 21:40:21 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/08/08 16:09:03 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mad Dog Apps O43 - CFD: 2009/07/14 05:37:42 - [] RD -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/07 15:20:56 - [] RD -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/05/04 10:47:05 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinQSB O43 - CFD: 2015/04/21 14:23:18 - [] D -- C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Liste des pilotes du système (95) - 20s O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] © O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] © O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] © O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] © O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79952] © O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] © O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [23616] © O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] © O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] © O58 - SDL:2015/05/04 17:39:13 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [24144] O58 - SDL:2015/05/04 17:39:13 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [74976] © O58 - SDL:2015/05/04 17:39:13 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [81728] © O58 - SDL:2015/05/04 17:39:13 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [49904] O58 - SDL:2015/05/04 17:38:45 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [787760] © O58 - SDL:2015/06/26 17:31:12 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [428120] © O58 - SDL:2015/05/04 17:39:14 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [106912] © O58 - SDL:2015/05/04 17:39:13 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [209048] O58 - SDL:2010/05/20 13:42:28 A . (.Windows (R) Win 7 DDK provider - BulkUsb Driver.) -- C:\Windows\System32\drivers\AthDfu.sys [47144] © O58 - SDL:2010/05/11 18:11:50 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athr.sys [1803112] © O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] © O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] © O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] © O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] © O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] © O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] © O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] © O58 - SDL:2010/05/20 13:42:28 A . (.Atheros - Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [256360] © O58 - SDL:2010/05/20 13:42:28 A . (.Atheros - Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [28200] © O58 - SDL:2010/05/20 13:42:30 A . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [37224] © O58 - SDL:2010/05/20 13:42:30 A . (.Atheros - Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [177704] © O58 - SDL:2010/05/20 13:42:30 A . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [46952] © O58 - SDL:2010/05/20 13:42:30 A . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [143080] © O58 - SDL:2010/05/25 15:26:02 A . (.Atheros - BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [230760] © O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] © O58 - SDL:2011/08/17 09:56:22 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmb.sys [18176] © O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] © O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] © O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] © O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] © O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] © O58 - SDL:2009/09/17 19:54:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [41088] © O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] © O58 - SDL:2010/04/13 09:35:20 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [435736] © O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332352] © O58 - SDL:2011/07/06 16:14:42 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [89376] © O58 - SDL:2014/03/20 23:31:18 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [9018368] © O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] © O58 - SDL:2014/03/20 23:31:25 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\drivers\Impcd.sys [132480] © O58 - SDL:2014/03/20 23:31:25 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [246272] © O58 - SDL:2010/05/15 05:48:24 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\Windows\System32\drivers\k57nd60x.sys [325672] © O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] © O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] © O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] © O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] © O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] © O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] © O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] © O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117312] © O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [142416] © O58 - SDL:2009/10/16 19:08:32 A . (.PASCO scientific - PASCO USB driver.) -- C:\Windows\System32\drivers\PSSensor.sys [15744] O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] © O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] © O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] © O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] © O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] © O58 - SDL:2014/03/20 13:41:55 A . (...) -- C:\Windows\System32\drivers\sptd.sys [722416] O58 - SDL:2009/09/21 01:43:48 A . (.MCCI Corporation - SAMSUNG Mobile USB Device 1.0 Driver.) -- C:\Windows\System32\drivers\ss_bus.sys [98560] © O58 - SDL:2009/09/21 00:43:48 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_cm.sys [12416] © O58 - SDL:2009/09/21 01:43:48 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_cmnt.sys [12416] © O58 - SDL:2009/09/21 01:43:48 A . (.MCCI Corporation - SAMSUNG Mobile USB Modem 1.0 Filter Driver.) -- C:\Windows\System32\drivers\ss_mdfl.sys [14848] © O58 - SDL:2009/09/21 01:43:50 A . (.MCCI Corporation - SAMSUNG Mobile USB Modem 1.0 Driver.) -- C:\Windows\System32\drivers\ss_mdm.sys [123776] © O58 - SDL:2009/09/21 00:43:50 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_wh.sys [12288] © O58 - SDL:2009/09/21 01:43:50 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_whnt.sys [12288] © O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] © O58 - SDL:2014/11/21 15:16:54 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [744520] © O58 - SDL:2014/11/21 15:16:32 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\Windows\System32\drivers\VBoxNetAdp.sys [116184] © O58 - SDL:2014/11/21 15:16:32 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [104384] © O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] © O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] © O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2010/05/11 18:11:50 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\athr.sys [1803112] © O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 45s O61 - LFC: 2015/09/14 23:54:59 A . (..) -- C:\Users\PC\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://start.qone8.com/ O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (4) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (EazelBar Search) - http://en.eazel.com/ O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (qone8) - http://www.qone8.com/ =>PUP.Optional.Qone8 O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} - (default-search.net) - http://www.default-search.net/ =>PUP.Optional.SearchNet O69 - SBI: SearchScopes [HKCU] {EBD839AE-B08C-4fb7-859B-F54AF16C159F} - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168448] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [591360] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [667136] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473088] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [285184] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [241664] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [543232] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [589312] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [497152] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [46592] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [162816] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [749056] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [99328] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] © ---\\ Liste des exceptions du parefeu Windows (49) - 5s O87 - FAEL: "{995B88FF-CA19-45F9-9B31-9FEDCAD3BAAB}" [Out-None-P6-TRUE] .(...) -- C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer O87 - FAEL: "TCP Query User{EFDDF9B8-84A0-4CBE-8867-73D6C89BE8E7}C:\users\pc\appdata\local\aptana studio 3\aptanastudio3.exe" [In-None-P6-TRUE] .(...) -- C:\users\pc\appdata\local\aptana studio 3\aptanastudio3.exe (.not file.) O87 - FAEL: "UDP Query User{2B88F5B7-DE94-4990-A124-C37C82AFD5F2}C:\users\pc\appdata\local\aptana studio 3\aptanastudio3.exe" [In-None-P17-TRUE] .(...) -- C:\users\pc\appdata\local\aptana studio 3\aptanastudio3.exe (.not file.) O87 - FAEL: "TCP Query User{6B4072F0-BA9C-4E4E-891E-CDC8C8AAF919}C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{BEFE2293-B067-4983-9283-EBC1EF2D6235}C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{16F0792A-AFF5-4641-A14E-F98232E6FB9B}C:\windows.old\program files\valve\cstrike_1.6\hl.exe" [In-None-P6-TRUE] .(...) -- C:\windows.old\program files\valve\cstrike_1.6\hl.exe (.not file.) O87 - FAEL: "UDP Query User{CE29753A-E2BA-427F-8AAB-BA818903F636}C:\windows.old\program files\valve\cstrike_1.6\hl.exe" [In-None-P17-TRUE] .(...) -- C:\windows.old\program files\valve\cstrike_1.6\hl.exe (.not file.) O87 - FAEL: "TCP Query User{DA7557CB-E11C-44E2-9AB8-4C32AE9316B0}C:\windows.old\program files\valve\cstrike_1.6\hltv.exe" [In-None-P6-TRUE] .(...) -- C:\windows.old\program files\valve\cstrike_1.6\hltv.exe (.not file.) O87 - FAEL: "UDP Query User{C3CC0E66-B1AF-496B-9920-6BC840263F4E}C:\windows.old\program files\valve\cstrike_1.6\hltv.exe" [In-None-P17-TRUE] .(...) -- C:\windows.old\program files\valve\cstrike_1.6\hltv.exe (.not file.) O87 - FAEL: "TCP Query User{CD690994-E5A3-46D9-BCD3-8C54CE068CF0}C:\program files\valve\cstrike_1.6\hl.exe" [In-None-P6-TRUE] .(...) -- C:\program files\valve\cstrike_1.6\hl.exe (.not file.) O87 - FAEL: "UDP Query User{55E0D032-378A-4A28-AFCB-01545F037D47}C:\program files\valve\cstrike_1.6\hl.exe" [In-None-P17-TRUE] .(...) -- C:\program files\valve\cstrike_1.6\hl.exe (.not file.) O87 - FAEL: "TCP Query User{E3F86AB6-390E-4FA2-9717-59262903CF6E}C:\program files\valve\cstrike_1.6\hl.exe" [In-None-P6-TRUE] .(...) -- C:\program files\valve\cstrike_1.6\hl.exe (.not file.) O87 - FAEL: "UDP Query User{A1656427-ED41-4E3F-8CED-8CE6A7D6B545}C:\program files\valve\cstrike_1.6\hl.exe" [In-None-P17-TRUE] .(...) -- C:\program files\valve\cstrike_1.6\hl.exe (.not file.) O87 - FAEL: "TCP Query User{ACD02243-3003-483C-98C1-2C116DC249B6}C:\program files\valve\cstrike_1.6\hltv.exe" [In-None-P6-TRUE] .(...) -- C:\program files\valve\cstrike_1.6\hltv.exe (.not file.) O87 - FAEL: "UDP Query User{C2026453-E7C4-44FE-B39D-ACA29AFB0541}C:\program files\valve\cstrike_1.6\hltv.exe" [In-None-P17-TRUE] .(...) -- C:\program files\valve\cstrike_1.6\hltv.exe (.not file.) O87 - FAEL: "TCP Query User{6055C1FB-2971-4B4B-AFCC-11B9586C6410}C:\program files\java\jre7\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre7\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{ECC403EB-2AD4-4FD8-8F1E-1B39360BE9CD}C:\program files\java\jre7\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre7\bin\javaw.exe (.not file.) O87 - FAEL: "TCP Query User{B4DAB845-8B90-422A-82AE-B2EA9E98414D}C:\program files\java\jre7\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre7\bin\java.exe (.not file.) O87 - FAEL: "UDP Query User{FE575089-2105-44F5-AD85-50AC245F8396}C:\program files\java\jre7\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre7\bin\java.exe (.not file.) O87 - FAEL: "TCP Query User{D659B9E2-5936-4A4D-88D8-B44565FB03C0}C:\program files\java\jre7\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre7\bin\java.exe (.not file.) O87 - FAEL: "UDP Query User{1751FEE0-427D-458E-9EAD-C756E9A07025}C:\program files\java\jre7\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre7\bin\java.exe (.not file.) O87 - FAEL: "TCP Query User{11991217-7B90-4C35-98EE-6C1903BB9EC9}C:\program files\java\jre7\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre7\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{F80A317F-3A46-45AF-AD17-99F901B47179}C:\program files\java\jre7\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre7\bin\javaw.exe (.not file.) O87 - FAEL: "{111872DE-C741-4D6D-B246-1E01ED389E67}" [In-None-P6-TRUE] .(...) -- C:\Program Files\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{78BE1CE2-3437-42FD-A885-84BF3DB5D2AD}" [In-None-P17-TRUE] .(...) -- C:\Program Files\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{CED90F8F-E247-46D7-9AEF-6A97011F2707}" [In-None-P6-TRUE] .(...) -- C:\Program Files\360\Total Security\safemon\QHSafeTray.exe (.not file.) O87 - FAEL: "{E9376A43-7532-4A19-B93D-B526BF0CAB5D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\360\Total Security\safemon\QHSafeTray.exe (.not file.) O87 - FAEL: "{ED16B50E-8B3B-4B71-B24C-EF368C081706}" [In-None-P6-TRUE] .(...) -- C:\Program Files\360\Total Security\LiveUpdate360.exe (.not file.) O87 - FAEL: "{46A69493-8285-4EC0-82C6-443F3A98C721}" [In-None-P17-TRUE] .(...) -- C:\Program Files\360\Total Security\LiveUpdate360.exe (.not file.) O87 - FAEL: "TCP Query User{1B156A34-29DB-4A18-A1DB-91AA4E544757}C:\program files\g-recorder\g-recorder.exe" [In-None-P6-TRUE] .(...) -- C:\program files\g-recorder\g-recorder.exe (.not file.) O87 - FAEL: "UDP Query User{408FCFD2-1B6A-42C8-BCCA-82FAEC4EA15D}C:\program files\g-recorder\g-recorder.exe" [In-None-P17-TRUE] .(...) -- C:\program files\g-recorder\g-recorder.exe (.not file.) O87 - FAEL: "TCP Query User{E3BAF78C-58D7-4585-A20F-1D2655E14B1E}C:\counter-strike 1.6\hl.exe" [In-None-P6-TRUE] .(...) -- C:\counter-strike 1.6\hl.exe (.not file.) O87 - FAEL: "UDP Query User{733C2BFE-9B23-435D-8471-0F802CF695EC}C:\counter-strike 1.6\hl.exe" [In-None-P17-TRUE] .(...) -- C:\counter-strike 1.6\hl.exe (.not file.) O87 - FAEL: "{DA9DA82D-20E2-43E0-A7F6-DCDA17CFA7F9}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Tango\Tango.exe (.not file.) O87 - FAEL: "{CF3B8032-43DD-4EC2-94F3-2B47D0598306}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Tango\Tango.exe (.not file.) O87 - FAEL: "{1E2165EE-8A30-4E6B-A6F0-257BAD95F631}" [In-None-P6-FALSE] .(.SPSS Inc. - SPSS Statistics Basic Script Editor.) -- C:\Program Files\SPSSInc\Statistics17\SPSSWinWrapIDE.exe O87 - FAEL: "{69FB5F28-181A-46C1-9CFA-420C739DD6DF}" [In-None-P6-FALSE] .(.SPSS Inc - SPSS Statistics.) -- C:\Program Files\SPSSInc\Statistics17\statistics.com O87 - FAEL: "{F8F6F814-C5F4-42C8-987E-FE81A629333D}" [In-None-P17-FALSE] .(.SPSS Inc. - SPSS Statistics Basic Script Editor.) -- C:\Program Files\SPSSInc\Statistics17\SPSSWinWrapIDE.exe O87 - FAEL: "{84B13A54-D8F4-4CBF-8A0F-58F5B063C192}" [In-None-P6-FALSE] .(.SPSS Inc - SPSS Statistics.) -- C:\Program Files\SPSSInc\Statistics17\statistics.exe O87 - FAEL: "{7C5600BA-304C-4641-A083-7F5356A19F0C}" [In-None-P17-FALSE] .(.SPSS Inc - SPSS Statistics.) -- C:\Program Files\SPSSInc\Statistics17\statistics.com O87 - FAEL: "{BEE90D57-2ACC-495E-ACF2-ED2BB5E52647}" [In-None-P17-FALSE] .(.SPSS Inc - SPSS Statistics.) -- C:\Program Files\SPSSInc\Statistics17\statistics.exe O87 - FAEL: "TCP Query User{16BBC1FC-569A-4375-80A6-6F76FF2E6F17}C:\program files\spssinc\statistics17\statistics.exe" [In-None-P6-TRUE] .(.SPSS Inc - SPSS Statistics.) -- C:\program files\spssinc\statistics17\statistics.exe O87 - FAEL: "UDP Query User{F44DFD38-0609-4FBE-9DC7-00D2F78CBB45}C:\program files\spssinc\statistics17\statistics.exe" [In-None-P17-TRUE] .(.SPSS Inc - SPSS Statistics.) -- C:\program files\spssinc\statistics17\statistics.exe O87 - FAEL: "TCP Query User{2BD92025-E8E3-4381-8AE4-758F29242DC4}C:\program files\andy\andy.exe" [In-None-P6-TRUE] .(...) -- C:\program files\andy\andy.exe (.not file.) O87 - FAEL: "UDP Query User{DAF0AABE-4C37-4D9A-9711-8D7B0D80B1C3}C:\program files\andy\andy.exe" [In-None-P17-TRUE] .(...) -- C:\program files\andy\andy.exe (.not file.) O87 - FAEL: "{F5AE86C0-139C-4242-8465-2BD8748E4C12}" [In-None-P17-TRUE] .(...) -- C:\program files\andy\andy.exe (.not file.) O87 - FAEL: "{00054135-B214-473D-B22E-CB555DA98B40}" [In-None-P6-TRUE] .(...) -- C:\program files\andy\andy.exe (.not file.) O87 - FAEL: "TCP Query User{CF08005E-0059-4B1D-831F-BB1B4854A7CB}C:\program files\devconfig\devconfig.exe" [In-None-P6-TRUE] .(.版权所有 (C) 2013 - DevConfig Microsoft 基础类应用程序.) -- C:\program files\devconfig\devconfig.exe O87 - FAEL: "UDP Query User{8CDD5C25-CD0E-4E7E-B789-DECB125F3BD6}C:\program files\devconfig\devconfig.exe" [In-None-P17-TRUE] .(.版权所有 (C) 2013 - DevConfig Microsoft 基础类应用程序.) -- C:\program files\devconfig\devconfig.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (11) - 21s SR - Auto [2014/10/07 20:31:57] [ 142648] SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com.) - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE © SS - Demand [2015/08/13 21:46:47] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2010/05/25 17:45:34] [ 38560] AtherosSvc (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files\Bluetooth Suite\adminservice.exe © SR - Auto [2015/05/04 17:38:57] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SR - Auto [2014/03/20 23:02:10] [ 321104] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe © SR - Auto [2015/07/16 16:28:02] [ 244392] Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Software Inc..) - C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe © SS - Auto [2015/08/30 23:14:21] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe © SS - Demand [2015/08/30 23:14:21] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe © SR - Auto [2013/06/29 00:20:48] [ 3860480] SafeIPS (SafeIPS) . (.SafeIP.) - C:\Program Files\SafeIP\SafeIPS.exe SS - Auto [2015/07/09 13:14:04] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe © ---\\ Scan Additionnel (18) - 0s C:\Windows\System32\SafeIPs.dll =>Hijacker.Winsock HKCU\SOFTWARE\wisen wizard =>PUP.Optional.wisenwizard HKLM\SYSTEM\CurrentControlSet\Services\Util wisen wizard =>PUP.Optional.wisenwizard C:\Windows\System32\Tasks\LaunchSignup =>PUP.Optional.MyPCBackup C:\Windows\System32\Tasks\YTDownloader =>PUP.Optional.YTDownloader HKLM\SOFTWARE\PositiveFinds =>PUP.Optional.PositiveFinds HKLM\SOFTWARE\SmdmF =>PUP.Optional.SettingsManager HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\speeditupfree =>PUP.Optional.SpeeditUp C:\Users\PC\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy C:\Users\PC\AppData\Roaming\RHEng =>PUP.Optional.Conduit C:\Users\PC\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\PC\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate ---\\ Récapitulatif des éléments trouvées sur votre station (18) - 0s http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/hijacker-searchnet/ =>PUP.Optional.SearchNet http://www.nicolascoolman.fr/hijacker-qone8 / =>PUP.Optional.Qone8 http://www.nicolascoolman.fr/blog =>PUP.Optional.wisenwizard http://www.nicolascoolman.fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup http://www.nicolascoolman.fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader http://www.nicolascoolman.fr/blog =>PUP.Optional.PositiveFinds http://www.nicolascoolman.fr/blog =>PUP.Optional.SettingsManager http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater http://www.nicolascoolman.fr/blog =>PUP.Optional.eSupport http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic http://www.nicolascoolman.fr/blog =>PUP.Optional.SpeeditUp http://www.nicolascoolman.fr/adware-opencandy/ =>PUP.Optional.OpenCandy http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>.Superfluous.CrashReports http://www.nicolascoolman.fr/blog =>PUP.Optional.DllFilesFixer ~ End of the scan, 23297 items in 194 seconds (981)(0)()