~ ZHPDiag v2015.10.10.148 Par Nicolas Coolman (2015/10/10) ~ Démarré par Naturi (Administrator) (2015/10/13 11:28:55) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Naturi\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Naturi\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ Navigateurs Internet (2) - 1s MFIE: Mozilla Firefox 41.0.1 (x86 fr) v41.0.1 MSIE: Internet Explorer v11.0.9600.18036 ---\\ Informations sur les produits Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (4) - 18s Avast Free Antivirus v10.4.2233 Malwarebytes Anti-Malware version 2.0.4.1028 Norton Security Scan v4.1.0.28 Windows Defender (Deactivate) ---\\ Logiciels de protection et autres (Superflus) (1) - 22s McAfee Security Scan Plus v3.8.150.1 ---\\ Logiciels d'optimisation (1) - 23s CCleaner v5.04 ---\\ Surveillance de Logiciels (2) - 24s Adobe Flash Player 19 NPAPI Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3761.408 MB (42% free) ~ System Restore: Activé (Enable) ~ System drive has 3 GB free of 926 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: NATURI ~ User Name: Naturi ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 3 GB free of 926 GB ~ Drive D: has GB free of 2 GB ~ Drive E: has 25 GB free of 61 GB ---\\ Etat du Centre de Sécurité Windows (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 3s [MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368] © [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] © [MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920] © [MD5.096A832FCF5A01003E96DD7FEE45618D] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2427392] © [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416] © [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] © [MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [657920] © [MD5.BD9C7A068C46053F8747CEA73B5930AB] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [498688] © [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] © [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200] © [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] © [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] © [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] © [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] © [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] © [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] © [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] © [MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408] © [MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624] © [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] © [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] © [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832] © [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] © [MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520] © [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] © ---\\ Processus lancés (45) - 7s [MD5.66B54471B5856E314947881E28263A6D] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [239616] [PID.1004] © [MD5.6C9C1917F2C29AFADDC3DD10F28A9F56] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [588288] [PID.780] © [MD5.11120878E5276B367E1A10FF8C9B595B] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1268] © [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1624] © [MD5.8DE38AF0B0C159A6A4522051A4A69B40] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984] [PID.1640] © [MD5.3E7C6639E424FD28952C29D66B7E5277] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.1844] © [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.1860] © [MD5.FCE361409964B71918D0D04CC26F8BD8] - (.Microsoft - DdMgr.) -- C:\Program Files (x86)\Lenovo\Lenovo Dashboard\DdMgr.exe [24880] [PID.1960] © [MD5.E99CF7AD8704278B7C8A8FB84BE4B3B6] - (.Garmin Ltd or its subsidiaries - Garmin Core Update Service.) -- C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250200] [PID.2056] © [MD5.97E5D62965DE167388B9C5D08665FE43] - (.Microsoft - IdeaTouchDataServer.EducationPortal.) -- C:\Program Files (x86)\Lenovo\EducationPortal\Services\IdeaTouch.LocalDataServer.Education.exe [7680] [PID.2352] © [MD5.1DED0D0AA513E2A5862B20A520D3A1E1] - (...) -- C:\Windows\jmesoft\Service.exe [32768] [PID.2412] [MD5.C557CB655FC78067CC4BA8692BCD3B39] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408] [PID.2440] © [MD5.F103130AAFD49021B85218292819F15E] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [69640] [PID.2492] © [MD5.590DE2C0FF4E367050239BD1DDC912C1] - (...) -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39568] [PID.2540] [MD5.AC36A47C010100B7EDFB2A70114D3E89] - (.RealNetworks, Inc. - RealPlayer Cloud Service.) -- c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe [1141848] [PID.2592] © [MD5.A650FA927A4D1D71C53E317A0DDD6B7E] - (...) -- C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [31856] [PID.2640] [MD5.7C44F5451D37CBE35550B37D6C867B9C] - (.Wistron Corporation - Volume Control Service.) -- C:\Program Files\VolumeOSD\VolumeCtlSrv.exe [211968] [PID.2880] © [MD5.8FDA65209157144C3E28809D75A47526] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048] [PID.2164] © [MD5.ABEFA4BD23329FD9BD47496BF2E58774] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456] [PID.3088] © [MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [PID.3120] © [MD5.7C7462A3E569B75F94C7C44A8A4E4BD5] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13219984] [PID.3044] © [MD5.64F205BBD12CD0DFE5B1F44F8E61DFF3] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1234064] [PID.3436] © [MD5.B1964E8776FD7633F149788F5B2A71CB] - (.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712] [PID.4132] [MD5.4F249E7F6B1513C6CE6080566D12096D] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [170256] [PID.4232] © [MD5.276FFA96DE1921AF0EDFD74515C5265C] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe [332016] [PID.4368] © [MD5.7C109F2155E962A5700165D9AD6868FD] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [644880] [PID.4448] © [MD5.1F6BA41827A6262F668B436B6A5D9317] - (.Lenovo - Lenovo Black Silk USB Keyboard.) -- C:\Windows\jmesoft\hotkey.exe [118784] [PID.4568] © [MD5.09B1747D1576FE7E5ECE2201C8F0936B] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\Hery\AppData\Roaming\Dropbox\bin\Dropbox.exe [36710768] [PID.4576] © [MD5.8DD36FCF5E893714029B4315A88EF785] - (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656] [PID.4592] © [MD5.0EA63E5727964E2881F09FBF34B6926F] - (.版权所有 (C) 2011 - Lenovo_LOAD.) -- C:\Windows\jmesoft\JME_LOAD.exe [24576] [PID.4620] [MD5.A1741C3B79F9DF8895E05EF43579E74B] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488] [PID.4692] © [MD5.79EDDBCBFFC23585BC1495AFC03CC4D7] - (.CyberLink Corp. - CyberLink YouCam Tray.) -- C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024] [PID.4712] © [MD5.0B427D9943C838620AFA30CBB24A6D77] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720] [PID.4724] © [MD5.C049C40CAEE8900130BD5F80B594CC7B] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192] [PID.4852] © [MD5.123CE08362EE48BBA7F9F1D7EB50F24F] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544] [PID.4988] © [MD5.4E95B1FDDC9E51678BFA2A723EAA94EF] - (.Copyright (C) 2010 - AgentMon Application.) -- C:\Program Files (x86)\VTech\DownloadManager\System\AgentMonitor.exe [401280] [PID.4680] [MD5.8D8D9C8486CB29D01000BFFFE132780A] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2087264] [PID.4668] © [MD5.20989BBD2114539B5C21948E94F6E11E] - (.Copyright © RealNetworks, Inc. 1995-2012 - RealDownloader.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [560192] [PID.4780] [MD5.1E09DFA4048196C9D3CC40C485A39422] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.5472] © [MD5.74CDE657245C114B98816E89B8D4CCD1] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299008] [PID.5548] © [MD5.601C233CDC2422AD7244D423ED8DFB50] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] [PID.2068] © [MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [278184] [PID.5860] © [MD5.ED51CB30657A6C3217A03D1628FB9038] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe [3425992] [PID.5340] © [MD5.ED51CB30657A6C3217A03D1628FB9038] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe [3425992] [PID.5940] © [MD5.1D45319619579DDA7DE8DE9BB1E3079E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Hery\Downloads\ZHPDiag3.exe [1943040] [PID.3528] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (12) - 8s M0 - MFSP: prefs.js [Naturi - r549vd1m.default] https://www.google.fr/ P2 - EXT FILE: (...) -- C:\Users\Naturi\AppData\Roaming\Mozilla\Firefox\Profiles\r549vd1m.default\extensions\SQLiteManager@mrinalkant.blogspot.com.xpi P2 - EXT FILE: (...) -- C:\Users\Naturi\AppData\Roaming\Mozilla\Firefox\Profiles\r549vd1m.default\extensions\{f47391f8-d25a-4213-814d-d386acf92dcf}.xpi P2 - EXT FILE: (...) -- C:\Users\Naturi\AppData\Roaming\Mozilla\Firefox\Profiles\r549vd1m.default\searchplugins\ask-search.xml P2 - EXT FILE: (...) -- C:\Users\Naturi\AppData\Roaming\Mozilla\Firefox\Profiles\r549vd1m.default\searchplugins\yahoo-avast.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © P2 - FPN: [HKLM] [@exent.com/npExentControl,version=7.1.0.1] - (...) -- C:\Program Files (x86)\FreeRide Games\npExentControl.dll P2 - FPN: [HKLM] [@nitropdf.com/NitroPDF] - (.Nitro PDF.) -- C:\Program Files (x86)\Nitro\Pro 8\npnitromozilla.dll P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks Inc..) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll © P2 - FPN: [HKLM] [@real.com/nprpplugin;version=17.0.15.10] - (.RealPlayer Cloud.) -- c:\program files (x86)\Real\realplayer\Netscape6\nprpplugin.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 3s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com?fr=hp-avast&type=avastbcl R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com?fr=hp-avast&type=avastbcl R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com?fr=hp-avast&type=avastbcl R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://fr.search.yahoo.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com?fr=hp-avast&type=avastbcl R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (4) ---\\ Browser Helper Object de navigateur (BHO) (6) - 1s O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer [64Bits] - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealDownloader - RealPlayer Video Downloader.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll © O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (Orphean) O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL © O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll © O2 - BHO: (no name) [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} (Orphean) O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (Orphean) ---\\ Applications lancées au démarrage du système (35) - 4s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe © O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe © O4 - HKLM\..\Run: [CDAServer] . (.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe © O4 - HKLM\..\RunOnce: [*WerKernelReporting] . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe © O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe © O4 - HKCU\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd or its subsidiaries - Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe © O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Naturi\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © O4 - HKCU\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\Naturi\AppData\Local\Dropbox\Update\DropboxUpdate.exe © O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe © O4 - HKLM\..\Wow6432Node\Run: [jmekey] . (.Lenovo - Lenovo Black Silk USB Keyboard.) -- C:\Windows\jmesoft\hotkey.exe © O4 - HKLM\..\Wow6432Node\Run: [jmesoft] . (...) -- C:\Windows\jmesoft\ServiceLoader.exe O4 - HKLM\..\Wow6432Node\Run: [Lenovo Eye Distance System] . (.Lenovo - SightProtector.) -- C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe © O4 - HKLM\..\Wow6432Node\Run: [Lenovo Dynamic Brightness System] . (.Lenovo - BrightController.) -- C:\Program Files\Lenovo\Lenovo Brightness System\Lenovo Dynamic Brightness System.exe © O4 - HKLM\..\Wow6432Node\Run: [YouCam Mirage] . (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe © O4 - HKLM\..\Wow6432Node\Run: [YouCam Tray] . (.CyberLink Corp. - CyberLink YouCam Tray.) -- C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe © O4 - HKLM\..\Wow6432Node\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe © O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe © O4 - HKLM\..\Wow6432Node\Run: [Intel AppUp(SM) center] . (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe © O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe © O4 - HKLM\..\Wow6432Node\Run: [LVT] . (.Lenovo - Lenovo.) -- C:\Program Files\Lenovo\LVT\LJYZ.exe © O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe © O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe © O4 - HKLM\..\Wow6432Node\Run: [AgentMonitor] . (.Copyright (C) 2010 - AgentMon Application.) -- C:\Program Files (x86)\VTech\DownloadManager\System\AgentMonitor.exe O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe © O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- c:\program files (x86)\Real\realplayer\Update\realsched.exe © O4 - HKLM\..\Wow6432Node\Run: [RealDownloader] . (.Copyright © RealNetworks, Inc. 1995-2012 - RealDownloader.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe O4 - HKLM\..\Wow6432Node\RunOnce: [20150107] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\setup\emupdate\b2e6b77c-179a-4669-a992-c9507721bb41.exe © O4 - HKUS\S-1-5-21-1385283556-1998687792-779195733-1002\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe © O4 - HKUS\S-1-5-21-1385283556-1998687792-779195733-1002\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd or its subsidiaries - Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe © O4 - HKUS\S-1-5-21-1385283556-1998687792-779195733-1002\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Naturi\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-21-1385283556-1998687792-779195733-1002\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © O4 - HKUS\S-1-5-21-1385283556-1998687792-779195733-1002\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\Naturi\AppData\Local\Dropbox\Update\DropboxUpdate.exe © ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ---\\ Protocole additionnel (26) - 2s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office 15\root\office15\msosb.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll © O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (18) - 5s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe © O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe © O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe © O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe © O23 - Service: Garmin Core Update Service (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries - Garmin Core Update Service.) - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe © O23 - Service: JME Keyboard Driver (JME Keyboard) . (...) - C:\Windows\jmesoft\Service.exe O23 - Service: NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe © O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE © O23 - Service: RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: RealPlayer Cloud Service (RealPlayer Cloud Service) . (.RealNetworks, Inc. - RealPlayer Cloud Service.) - c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe © O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) . (...) - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: VolumeCtlSrv (VolumeCtlSrv) . (.Wistron Corporation - Volume Control Service.) - C:\Program Files\VolumeOSD\VolumeCtlSrv.exe © ---\\ Tâches planifiées en automatique (41) - 10s [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] © [MD5.C6D147C12C424373B016C0AB0A6C61EB] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.D9E35285D8CCE58241038E5B23507DAB] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1382112] © [MD5.A75228DE9117A017BC7A3B44953B2648] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [5529880] © [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005Core] (.Dropbox, Inc..) -- C:\Users\Hery\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512] © [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005UA] (.Dropbox, Inc..) -- C:\Users\Hery\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512] © [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] © [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] © [MD5.A1741C3B79F9DF8895E05EF43579E74B] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488] © [MD5.20989BBD2114539B5C21948E94F6E11E] [APT] [RealDownloader Update Check] (.Copyright © RealNetworks, Inc. 1995-2012.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [560192] [MD5.EABE8AD92F8313ED11C4CD9D56C31A4B] [APT] [RealDownloaderDownloaderScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002] (.RealNetworks, Inc..) -- C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [369752] © [MD5.FB1FCD597FAC91CD4C0901A198C11714] [APT] [RealDownloaderRealUpgradeLogonTaskS-1-5-21-1385283556-1998687792-779195733-1002] (.RealNetworks, Inc..) -- C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [147016] © [MD5.FB1FCD597FAC91CD4C0901A198C11714] [APT] [RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002] (.RealNetworks, Inc..) -- C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [147016] © [MD5.A7FA60B9ADB3C7828E34674864B70276] [APT] [RealPlayerRealUpgradeLogonTaskS-1-5-21-1385283556-1998687792-779195733-1002] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [141312] © [MD5.A7FA60B9ADB3C7828E34674864B70276] [APT] [RealPlayerRealUpgradeScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [141312] © [MD5.601C233CDC2422AD7244D423ED8DFB50] [APT] [{585ED277-5BA7-4148-9A2C-672A84C577F3}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [377000] © [MD5.601C233CDC2422AD7244D423ED8DFB50] [APT] [{85E9188D-905C-4A74-9FE7-CD36A7B93D90}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [377000] © [MD5.601C233CDC2422AD7244D423ED8DFB50] [APT] [{9A36D860-A527-4F28-ACF1-9A79CF41E4F1}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [377000] © [MD5.601C233CDC2422AD7244D423ED8DFB50] [APT] [{9F271247-7197-4AA1-AA2D-B0EF2C5EE706}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [377000] © [MD5.601C233CDC2422AD7244D423ED8DFB50] [APT] [{D9077AE9-4FB9-4928-88B5-C371A47509A0}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [377000] © [MD5.601C233CDC2422AD7244D423ED8DFB50] [APT] [{F6114458-FD53-4B4A-BFF0-D1732DE90648}] (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [377000] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005Core - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005Core.job [1154] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005UA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005UA.job [1206] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [908] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [912] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3886] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890] © O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [3924] © O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2788] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005Core - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005Core [3770] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005UA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1385283556-1998687792-779195733-1005UA [4150] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3648] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3884] © O39 - APT: MirageAgent - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\MirageAgent [3142] © O39 - APT: RealDownloader Update Check - (.Copyright © RealNetworks, Inc. 1995-2012.) -- C:\WINDOWS\System32\Tasks\RealDownloader Update Check [3422] O39 - APT: RealDownloaderDownloaderScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002 [3380] © O39 - APT: RealDownloaderRealUpgradeLogonTaskS-1-5-21-1385283556-1998687792-779195733-1002 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1385283556-1998687792-779195733-1002 [3306] © O39 - APT: RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002 [3360] © O39 - APT: RealPlayerRealUpgradeLogonTaskS-1-5-21-1385283556-1998687792-779195733-1002 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1385283556-1998687792-779195733-1002 [3284] © O39 - APT: RealPlayerRealUpgradeScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1385283556-1998687792-779195733-1002 [3338] © ---\\ Logiciels installés (135) - 55s O42 - Logiciel: Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1 - (.Garmin.) [HKLM][64Bits] -- 98157A226B40B173301B0F53C8E98C47805D5152 © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler © O42 - Logiciel: GIMP 2.8.14 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 © O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan © O42 - Logiciel: Common Desktop Agent - (.OEM.) [HKLM][64Bits] -- {031A0E14-0413-4C97-9772-2639B782F46F} © O42 - Logiciel: ConvertHelper 3.1.1 - (.DownloadHelper.) [HKLM][64Bits] -- {27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1 © O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM][64Bits] -- {3023E64E-13BA-4EE4-BEC0-DCF74AB5DB8B} © O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {41BF65E9-C20D-3468-87F7-1A5DF673B0D3} © O42 - Logiciel: Lenovo Rescue System - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42} © O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} © O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {709A2D23-C25E-47B5-9268-CB6FEE648504} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {88509E20-3936-4D88-A1C0-B274C7BB5151} © O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} © O42 - Logiciel: MAGIX Vidéo deluxe 2014 - (.MAGIX AG.) [HKLM][64Bits] -- {B82194CF-E6D5-4F38-B811-68E6BAB90CE2} © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {C9C0FE2C-602E-49D7-8C42-5B9E8FF04798} © O42 - Logiciel: Nitro Pro 8 - (.Nitro.) [HKLM][64Bits] -- {E20FB189-DD7C-4F07-AE35-81831E4C485A} © O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} © O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {FD244E19-6EFE-4A2D-948A-0D45D4C168BE} © O42 - Logiciel: 7-Zip 9.22beta - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Audacity 2.0.5 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 © O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast © O42 - Logiciel: CANON iMAGE GATEWAY Task for ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- CANON iMAGE GATEWAY Task © O42 - Logiciel: Canon MOV Decoder - (.Canon Inc..) [HKLM][64Bits] -- Canon MOV Decoder © O42 - Logiciel: Canon MOV Encoder - (.Canon Inc..) [HKLM][64Bits] -- Canon MOV Encoder © O42 - Logiciel: Canon Utilities Digital Photo Professional 3.10 - (.Canon Inc..) [HKLM][64Bits] -- DPP © O42 - Logiciel: Samsung Easy Wireless Setup - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Easy Wireless Setup © O42 - Logiciel: Canon Utilities EOS Sample Music - (.Canon Inc..) [HKLM][64Bits] -- EOS Sample Music © O42 - Logiciel: Canon Utilities EOS Utility - (.Canon Inc..) [HKLM][64Bits] -- EOS Utility © O42 - Logiciel: Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- EOS Video Snapshot Task © O42 - Logiciel: FormatFactory 3.1.1 - (.Free Time.) [HKLM][64Bits] -- FormatFactory © O42 - Logiciel: Lenovo YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} © O42 - Logiciel: Lenovo Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} © O42 - Logiciel: Lenovo Rescue System - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} © O42 - Logiciel: Finding the Letters - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{535FB733-FFCF-4460-8694-664A2F6C53B4} O42 - Logiciel: Find the Differences - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{65F9B587-24A7-466A-999A-9C5F9D452400} O42 - Logiciel: Puzzle - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{6EB7ECE3-E3BE-481D-821B-F1AFFA244D64} O42 - Logiciel: Matching Roles - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{92736E44-7608-4D80-9333-E40C82B7E8B3} O42 - Logiciel: timer - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{9CC4B8EE-A96B-4800-B674-0CF8B4560F45} O42 - Logiciel: Mammals - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{ACA58CEB-2F74-4095-ADB6-4C1BFB170F64} O42 - Logiciel: Lenovo PowerDVD10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} © O42 - Logiciel: Comparing - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- InstallShield_{FA26CEFD-E3BE-46EC-AEE0-95BF8F5CF307} O42 - Logiciel: Intel AppUp(SM) center - (.Intel.) [HKLM][64Bits] -- Intel AppUp(SM) center 33057 © O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.4.1028 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: monAlbumPhoto - (.monAlbumPhoto.) [HKLM][64Bits] -- monAlbumPhoto_is1 © O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- MovieEditTask © O42 - Logiciel: Canon Utilities Movie Uploader for YouTube - (.Canon Inc..) [HKLM][64Bits] -- MovieUploaderForYouTube © O42 - Logiciel: Mozilla Firefox 41.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.1 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM][64Bits] -- MX.{3023E64E-13BA-4EE4-BEC0-DCF74AB5DB8B} © O42 - Logiciel: MAGIX Vidéo deluxe 2014 - (.MAGIX AG.) [HKLM][64Bits] -- MX.{B82194CF-E6D5-4F38-B811-68E6BAB90CE2} © O42 - Logiciel: CANON iMAGE GATEWAY MyCamera Download Plugin - (.Canon Inc..) [HKLM][64Bits] -- MyCamera Download Plugin © O42 - Logiciel: Norton Security Scan - (.Symantec Corporation.) [HKLM][64Bits] -- NSS © O42 - Logiciel: Canon Utilities PhotoStitch - (.Canon Inc..) [HKLM][64Bits] -- PhotoStitch © O42 - Logiciel: Canon Utilities Picture Style Editor - (.Canon Inc..) [HKLM][64Bits] -- Picture Style Editor © O42 - Logiciel: POIbase 1.069 - (.POIbase.) [HKLM][64Bits] -- POIbase_is1 © O42 - Logiciel: Samsung C460 Series - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung C460 Series © O42 - Logiciel: Samsung Easy Document Creator - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Easy Document Creator © O42 - Logiciel: Samsung Easy Printer Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Easy Printer Manager © O42 - Logiciel: Diagnostics d'imprimante Samsung - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Printer Diagnostics © O42 - Logiciel: Samsung Printer Live Update - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Printer Live Update © O42 - Logiciel: Samsung Scan Process Machine - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Scan Process Machine © O42 - Logiciel: SugarSync Manager - (.SugarSync, Inc..) [HKLM][64Bits] -- SugarSync O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: Explor@ Park - (.VTech.) [HKLM][64Bits] -- VTechDownloadManager © O42 - Logiciel: WinRAR 5.11 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1 © O42 - Logiciel: Canon Utilities ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- ZoomBrowser EX © O42 - Logiciel: Canon ZoomBrowser EX Memory Card Utility - (.Canon Inc..) [HKLM][64Bits] -- ZoomBrowser EX Memory Card Utility © O42 - Logiciel: Lenovo YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} © O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {0BE9E708-5DC0-4963-9CFD-0AA519090E79} © O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} © O42 - Logiciel: Skype™ 7.4 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {3540ADD5-822B-47FB-B1C2-CD7B2C8E9FEC} © O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {3615560A-3601-4727-B44D-853BEF395F5C} © O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {396794D5-3CA6-4FA9-84DE-873B5F3D5B23} © O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM][64Bits] -- {39AB2E37-1A55-4292-A5D3-971E9F70D0F8} © O42 - Logiciel: Garmin USB Drivers - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {3D5D6CFC-3097-425A-8D8F-7EAF5D57641D} © O42 - Logiciel: Lenovo Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} © O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} © O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM][64Bits] -- {4412F224-3849-4461-A3E9-DEEF8D252790} © O42 - Logiciel: Lenovo Eye Distance System - (.Lenovo.) [HKLM][64Bits] -- {5183D7AB-D09B-411F-A74E-BBAEA61C6505} © O42 - Logiciel: Finding the Letters - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {535FB733-FFCF-4460-8694-664A2F6C53B4} O42 - Logiciel: Garmin POI Loader - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {5CA74EDC-CFC3-4FA0-AED7-1415CA19F250} © O42 - Logiciel: EducationPortal - (.Lenovo.) [HKLM][64Bits] -- {65487538-FF20-421B-91DB-F6634B8D264C} © O42 - Logiciel: Find the Differences - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {65F9B587-24A7-466A-999A-9C5F9D452400} O42 - Logiciel: VolumeOSD - (.Lenovo.) [HKLM][64Bits] -- {699D0EFA-5AC2-4DAB-846E-E4EFDA00ACAC} © O42 - Logiciel: Puzzle - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {6EB7ECE3-E3BE-481D-821B-F1AFFA244D64} O42 - Logiciel: RealDownloader - (.RealNetworks, Inc..) [HKLM][64Bits] -- {6FCD4D5A-20B9-4D79-ABA5-4E7048944025} © O42 - Logiciel: Lenovo USB2.0 UVC Camera - (.Vimicro Corporation.) [HKLM][64Bits] -- {70D2C5B8-EB22-45B1-9EAA-5E8C1C408A3B} © O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {712C9875-89BA-44E4-966A-106DF3141740} © O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {79361740-EAE3-11E2-9911-B8AC6F98CCE3} © O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {7D3A7C2E-DC30-4726-AF81-9DFCCF88DC1E} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} © O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} © O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} © O42 - Logiciel: Matching Roles - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {92736E44-7608-4D80-9333-E40C82B7E8B3} O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {9471d6bd-67a9-40f6-a420-2ae4f08ef003} © O42 - Logiciel: timer - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {9CC4B8EE-A96B-4800-B674-0CF8B4560F45} O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A55F-4123-B2B9-173F09590E16} © O42 - Logiciel: LVT - (.Lenovo.) [HKLM][64Bits] -- {9E3469A6-443A-452C-BF44-8D7CE3A9A7E2} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} © O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} © O42 - Logiciel: Mammals - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {ACA58CEB-2F74-4095-ADB6-4C1BFB170F64} O42 - Logiciel: Lenovo Blacksilk USB Keyboard Driver - (.Lenovo.) [HKLM][64Bits] -- {B266E062-D6C5-485B-B426-51B152B041A6} © O42 - Logiciel: Lenovo Assistant - (.Lenovo.) [HKLM][64Bits] -- {B2DE4F30-B8C7-49C0-85B9-2F37A5290F00} © O42 - Logiciel: Vegas Pro 11.0 - (.Sony.) [HKLM][64Bits] -- {B60CD35E-0296-11E2-945A-F04DA23A5C58} © O42 - Logiciel: SNS Upload for Easy Document Creator - (.Samsung Electronics Co.,Ltd.) [HKLM][64Bits] -- {B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC} © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {B8D84F70-0296-11E2-8DF5-F04DA23A5C58} © O42 - Logiciel: Dolby Advanced Audio v2 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613} © O42 - Logiciel: Driver & Application Installation - (.Lenovo.) [HKLM][64Bits] -- {BFECCF2A-F094-4066-8BFA-29CCBB7F6602} © O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} © O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} © O42 - Logiciel: Lenovo Dynamic Brightness System - (.Lenovo.) [HKLM][64Bits] -- {D9ED6D06-6002-495E-A7BC-46E6AE386996} © O42 - Logiciel: Lenovo PowerDVD10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} © O42 - Logiciel: Auslogics DiskDefrag - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 © O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: UpdateService - (.RealNetworks, Inc..) [HKLM][64Bits] -- {E3AE96D6-E196-45B4-AF62-2B41998B9E37} © O42 - Logiciel: RealDownloader - (.RealNetworks.) [HKLM][64Bits] -- {e6171278-8759-449d-9e0b-c1825debc2ad} © O42 - Logiciel: Screen Recording Suite V3.3.3 - (.Apowersoft.) [HKLM][64Bits] -- {EB9F3F92-4857-4121-AA6F-1C424AC6C266}_is1 © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Comparing - (.Tong child Research & Planning Co.,Ltd.) [HKLM][64Bits] -- {FA26CEFD-E3BE-46EC-AEE0-95BF8F5CF307} O42 - Logiciel: Lenovo Dashboard - (.Lenovo.) [HKLM][64Bits] -- {FEF1833C-244C-4DF2-AB67-1E1D26921ED8} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} © O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox © O42 - Logiciel: Gramblr - (.Gramblr.) [HKCU][64Bits] -- Gramblr O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7 O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe © O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (138) - 56s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\AviSynth HKLM\SOFTWARE\Wow6432Node\Bunndle HKLM\SOFTWARE\Wow6432Node\Canon HKLM\SOFTWARE\Wow6432Node\Canon_Inc_IC HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\Common Desktop Agent HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\dotNetInstaller HKLM\SOFTWARE\Wow6432Node\DownloadHelper HKLM\SOFTWARE\Wow6432Node\emme HKLM\SOFTWARE\Wow6432Node\emmegroups HKLM\SOFTWARE\Wow6432Node\Exent HKLM\SOFTWARE\Wow6432Node\Garmin HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\Lenovo HKLM\SOFTWARE\Wow6432Node\Loader HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MAGIX HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Wow6432Node\MAP-DN HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nalpeiron HKLM\SOFTWARE\Wow6432Node\NCH Software HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound HKLM\SOFTWARE\Wow6432Node\Nitro HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\PegasusImaging HKLM\SOFTWARE\Wow6432Node\Pinnacle Systems HKLM\SOFTWARE\Wow6432Node\PowerDVD10_Upgrade HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\Sharpcast HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\SSDIAG HKLM\SOFTWARE\Wow6432Node\SSScan HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Vimicro Corporation HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\VST HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp. HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\Bytescout HKCU\SOFTWARE\CamStudioOpenSource for Nick HKCU\SOFTWARE\Canon HKCU\SOFTWARE\Canon_Inc_IC HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Garmin HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\JEDI-VCL HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\Lake HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Magix HKCU\SOFTWARE\MAGIX AG HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\MAP-DN HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\NCH Software HKCU\SOFTWARE\NCH Swift Sound HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nitro HKCU\SOFTWARE\Obsidium HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OMUPH HKCU\SOFTWARE\PhotoFiltre 7 HKCU\SOFTWARE\Pinnacle Systems HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SNMP HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\SSPrint HKCU\SOFTWARE\SSScan HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\TeleCharger_v2 HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\VOB HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\RealNetworks ---\\ Contenu des dossiers Programmes (289) - 79s O43 - CFD: 2013/10/17 18:03:03 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 2013/10/08 10:47:56 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2014/11/27 13:04:20 - [0] D -- C:\Program Files (x86)\Amazon O43 - CFD: 2013/03/22 15:34:11 - [] D -- C:\Program Files (x86)\AMD APP O43 - CFD: 2014/04/18 13:06:08 - [] D -- C:\Program Files (x86)\Apowersoft O43 - CFD: 2015/09/18 23:35:52 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2013/03/22 15:34:05 - [] D -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 2014/01/22 03:14:28 - [] D -- C:\Program Files (x86)\Audacity O43 - CFD: 2015/04/23 11:10:37 - [] D -- C:\Program Files (x86)\Auslogics O43 - CFD: 2015/09/18 23:38:55 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2013/11/14 23:13:43 - [] D -- C:\Program Files (x86)\Canon O43 - CFD: 2015/07/18 11:13:43 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2013/03/22 16:04:49 - [] D -- C:\Program Files (x86)\Cyberlink O43 - CFD: 2015/01/19 20:18:58 - [] D -- C:\Program Files (x86)\directx O43 - CFD: 2013/03/22 15:35:07 - [] D -- C:\Program Files (x86)\Dolby Advanced Audio v2 O43 - CFD: 2013/07/17 19:08:58 - [] D -- C:\Program Files (x86)\FreeTime O43 - CFD: 2013/10/18 15:57:35 - [] D -- C:\Program Files (x86)\Garmin O43 - CFD: 2013/10/06 13:16:48 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/02/10 10:58:09 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2013/03/22 16:09:30 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/09/10 20:46:24 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/09/18 23:47:29 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 2013/03/22 16:16:52 - [] D -- C:\Program Files (x86)\Lenovo O43 - CFD: 2015/02/11 10:34:57 - [] D -- C:\Program Files (x86)\MAGIX O43 - CFD: 2015/03/04 10:14:28 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 2013/10/17 18:15:32 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2013/10/17 18:15:03 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2013/07/18 17:20:09 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive O43 - CFD: 2013/07/19 20:03:13 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2013/10/17 18:18:35 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2014/04/02 17:46:06 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2014/12/02 14:30:58 - [] D -- C:\Program Files (x86)\monAlbumPhoto O43 - CFD: 2015/10/03 10:23:56 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/10/03 10:23:56 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/02/11 10:31:13 - [] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2013/11/21 11:58:09 - [] D -- C:\Program Files (x86)\Nitro O43 - CFD: 2014/06/14 20:04:06 - [] D -- C:\Program Files (x86)\Norton Security Scan O43 - CFD: 2014/06/14 20:03:51 - [] D -- C:\Program Files (x86)\NortonInstaller O43 - CFD: 2014/03/25 17:40:05 - [0] D -- C:\Program Files (x86)\Pando Networks O43 - CFD: 2013/07/19 17:50:09 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 O43 - CFD: 2014/03/22 00:29:45 - [] D -- C:\Program Files (x86)\Pinnacle O43 - CFD: 2013/10/18 15:51:31 - [] D -- C:\Program Files (x86)\POIbase O43 - CFD: 2014/11/27 20:04:52 - [] D -- C:\Program Files (x86)\Real O43 - CFD: 2014/11/27 20:04:11 - [] D -- C:\Program Files (x86)\RealNetworks O43 - CFD: 2013/03/22 15:34:28 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2013/03/22 15:31:42 - [] D -- C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver O43 - CFD: 2014/04/02 17:53:22 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2014/11/27 14:00:14 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2014/11/27 13:54:15 - [] D -- C:\Program Files (x86)\SamsungPrinterLiveUpdate O43 - CFD: 2014/11/27 14:01:46 - [] D -- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller O43 - CFD: 2015/05/06 09:09:13 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2014/01/23 02:50:33 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 2013/03/22 15:56:17 - [] D -- C:\Program Files (x86)\SugarSync O43 - CFD: 2013/03/22 15:35:12 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2014/07/06 18:26:16 - [] D -- C:\Program Files (x86)\TomTom O43 - CFD: 2014/07/06 18:26:21 - [] D -- C:\Program Files (x86)\TomTom International B.V O43 - CFD: 2014/01/15 10:39:27 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2013/03/22 15:34:15 - [] D -- C:\Program Files (x86)\Vimicro Corporation O43 - CFD: 2013/12/23 15:07:45 - [] D -- C:\Program Files (x86)\VTech O43 - CFD: 2015/08/13 02:22:25 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2014/11/14 14:10:18 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2015/03/10 00:20:47 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/03/10 00:20:47 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2015/03/10 00:20:47 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2015/03/10 00:20:46 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2015/03/10 00:20:47 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2014/04/02 17:46:10 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2014/12/17 10:10:04 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/04/17 09:39:37 - [] D -- C:\Program Files (x86)\ZHPDiag O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 2015/03/10 00:25:31 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/03/11 22:54:51 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/10 00:25:31 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center O43 - CFD: 2014/07/11 01:52:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft O43 - CFD: 2015/04/23 11:10:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics O43 - CFD: 2014/04/02 17:46:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities O43 - CFD: 2015/04/18 23:31:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/04/19 00:42:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby O43 - CFD: 2015/01/19 20:18:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emme O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 2013/10/31 22:38:23 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake O43 - CFD: 2015/06/02 22:20:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center O43 - CFD: 2015/09/18 23:48:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 2015/09/27 19:09:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kirikou O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo O43 - CFD: 2014/04/02 17:49:21 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Rescue System O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo USB2.0 UVC Camera O43 - CFD: 2015/02/11 10:42:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/03/04 10:14:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2014/08/20 10:40:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2014/12/02 14:30:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\monAlbumPhoto O43 - CFD: 2014/06/14 20:04:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 2014/04/02 17:46:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 15 O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle VideoSpin O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\POIbase O43 - CFD: 2014/11/27 20:04:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks O43 - CFD: 2014/11/27 14:00:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 2014/10/11 20:43:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2014/04/02 17:46:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 2014/11/27 20:01:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/03/10 00:25:31 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2013/11/14 09:16:50 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/07/06 18:26:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom O43 - CFD: 2014/04/02 17:49:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2014/04/02 17:46:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VTech O43 - CFD: 2014/11/14 14:22:45 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2014/12/17 10:10:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/04/17 09:39:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2015/06/02 22:03:36 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 2013/10/09 11:03:18 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2014/12/02 14:33:00 - [] D -- C:\ProgramData\albumphoto O43 - CFD: 2013/03/22 15:33:49 - [] D -- C:\ProgramData\AMD O43 - CFD: 2014/03/14 21:44:28 - [] D -- C:\ProgramData\Apple O43 - CFD: 2013/11/04 22:00:59 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2013/07/17 18:53:29 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/04/23 11:10:53 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 2013/10/21 18:54:40 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2013/07/18 00:50:37 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/02/10 10:28:41 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2013/08/16 11:40:07 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/06/02 08:54:02 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 2015/07/07 18:04:15 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2013/07/17 18:49:55 - [] D -- C:\ProgramData\eBay O43 - CFD: 2013/11/21 12:36:11 - [] D -- C:\ProgramData\FileOpen O43 - CFD: 2013/10/18 15:11:35 - [] D -- C:\ProgramData\Garmin O43 - CFD: 2014/07/28 00:33:29 - [] D -- C:\ProgramData\geeksn0w O43 - CFD: 2013/03/22 16:10:04 - [] D -- C:\ProgramData\Intel O43 - CFD: 2013/03/22 15:37:53 - [] D -- C:\ProgramData\Lenovo O43 - CFD: 2015/02/11 10:45:03 - [] D -- C:\ProgramData\MAGIX O43 - CFD: 2014/05/23 23:20:55 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2014/12/03 10:35:14 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/08/20 10:40:57 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 2013/07/18 00:50:37 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2014/12/11 01:28:27 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/09/10 11:16:22 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2013/07/18 17:19:15 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2013/07/18 00:50:37 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2013/07/18 01:42:53 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2013/03/22 16:16:11 - [] D -- C:\ProgramData\Nitro O43 - CFD: 2014/06/14 20:04:06 - [] D -- C:\ProgramData\Norton O43 - CFD: 2014/06/14 20:03:50 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2013/03/22 16:07:30 - [] D -- C:\ProgramData\OneKey Recovery O43 - CFD: 2014/11/27 20:04:38 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2014/03/22 00:29:45 - [] D -- C:\ProgramData\Pinnacle O43 - CFD: 2014/03/18 10:18:20 - [] D -- C:\ProgramData\Pinnacle Studio Ultimate O43 - CFD: 2013/10/18 16:01:37 - [] D -- C:\ProgramData\POIbase O43 - CFD: 2014/04/02 17:46:23 - [] D -- C:\ProgramData\PRICache O43 - CFD: 2014/11/27 20:03:14 - [] D -- C:\ProgramData\Real O43 - CFD: 2014/11/27 20:04:09 - [] D -- C:\ProgramData\RealNetworks O43 - CFD: 2015/09/24 08:15:43 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/09/01 12:45:42 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2015/05/06 09:08:35 - [] D -- C:\ProgramData\Skype O43 - CFD: 2014/01/23 02:50:33 - [] D -- C:\ProgramData\Sony O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2013/09/19 19:49:07 - [] D -- C:\ProgramData\Temp O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/02/10 10:33:47 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2013/12/23 15:07:45 - [] D -- C:\ProgramData\VTech O43 - CFD: 2014/11/21 01:02:00 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 2013/11/14 23:12:54 - [0] D -- C:\ProgramData\ZoomBrowser O43 - CFD: 2015/02/10 10:28:56 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 2013/10/08 10:48:03 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/06/02 22:03:36 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2013/11/14 23:08:17 - [] D -- C:\Program Files (x86)\Common Files\Canon O43 - CFD: 2014/11/27 13:56:21 - [] D -- C:\Program Files (x86)\Common Files\Common Desktop Agent O43 - CFD: 2015/02/15 00:47:52 - [] D -- C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602 O43 - CFD: 2015/07/18 11:13:43 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2015/02/11 10:07:22 - [] D -- C:\Program Files (x86)\Common Files\FlashIntegro O43 - CFD: 2014/04/02 17:22:47 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/02/11 10:32:13 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services O43 - CFD: 2015/02/11 10:42:32 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Shared O43 - CFD: 2014/04/02 17:46:05 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2013/11/21 11:58:09 - [] D -- C:\Program Files (x86)\Common Files\Nitro O43 - CFD: 2014/03/18 10:19:06 - [] D -- C:\Program Files (x86)\Common Files\Pinnacle O43 - CFD: 2014/11/27 13:58:25 - [] D -- C:\Program Files (x86)\Common Files\Scan Process Machine O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2014/10/11 20:43:34 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2015/03/10 00:20:44 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2013/07/19 16:40:25 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2014/06/26 10:48:44 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 2014/11/27 20:03:19 - [] D -- C:\Program Files (x86)\Common Files\xing shared O43 - CFD: 2014/12/27 01:38:13 - [] D -- C:\Users\Naturi\AppData\Roaming\Adobe O43 - CFD: 2014/04/18 13:06:08 - [] D -- C:\Users\Naturi\AppData\Roaming\Apowersoft O43 - CFD: 2014/05/30 12:14:40 - [] D -- C:\Users\Naturi\AppData\Roaming\Apple Computer O43 - CFD: 2013/07/17 18:53:29 - [] D -- C:\Users\Naturi\AppData\Roaming\ATI O43 - CFD: 2014/11/25 16:27:44 - [] D -- C:\Users\Naturi\AppData\Roaming\Audacity O43 - CFD: 2013/10/21 19:00:25 - [] D -- C:\Users\Naturi\AppData\Roaming\AVAST Software O43 - CFD: 2013/11/14 23:30:02 - [] D -- C:\Users\Naturi\AppData\Roaming\Canon O43 - CFD: 2014/05/23 22:33:25 - [0] D -- C:\Users\Naturi\AppData\Roaming\Common O43 - CFD: 2014/01/22 03:48:18 - [] D -- C:\Users\Naturi\AppData\Roaming\CyberLink O43 - CFD: 2015/08/25 11:18:24 - [] D -- C:\Users\Naturi\AppData\Roaming\Dropbox O43 - CFD: 2014/04/06 20:43:30 - [] D -- C:\Users\Naturi\AppData\Roaming\dvdcss O43 - CFD: 2015/02/10 10:29:26 - [] D -- C:\Users\Naturi\AppData\Roaming\FlashIntegro O43 - CFD: 2013/10/18 16:04:15 - [] D -- C:\Users\Naturi\AppData\Roaming\Garmin O43 - CFD: 2013/10/31 22:43:10 - [] D -- C:\Users\Naturi\AppData\Roaming\HandBrake O43 - CFD: 2014/04/02 18:12:13 - [] D -- C:\Users\Naturi\AppData\Roaming\Identities O43 - CFD: 2013/07/17 18:49:45 - [] D -- C:\Users\Naturi\AppData\Roaming\Macromedia O43 - CFD: 2015/02/11 10:45:03 - [] D -- C:\Users\Naturi\AppData\Roaming\MAGIX O43 - CFD: 2013/10/17 23:11:50 - [] D -- C:\Users\Naturi\AppData\Roaming\Malwarebytes O43 - CFD: 2014/12/17 19:27:51 - [] SD -- C:\Users\Naturi\AppData\Roaming\Microsoft O43 - CFD: 2013/07/18 01:43:16 - [] D -- C:\Users\Naturi\AppData\Roaming\Mozilla O43 - CFD: 2013/07/18 20:58:46 - [] D -- C:\Users\Naturi\AppData\Roaming\Nitro O43 - CFD: 2014/06/26 11:44:45 - [] D -- C:\Users\Naturi\AppData\Roaming\Obsidium O43 - CFD: 2013/07/19 17:59:03 - [] D -- C:\Users\Naturi\AppData\Roaming\PhotoFiltre 7 O43 - CFD: 2014/01/23 02:55:13 - [0] D -- C:\Users\Naturi\AppData\Roaming\Publish Providers O43 - CFD: 2014/11/27 20:19:35 - [] D -- C:\Users\Naturi\AppData\Roaming\Real O43 - CFD: 2014/11/27 20:04:43 - [] D -- C:\Users\Naturi\AppData\Roaming\RealNetworks O43 - CFD: 2015/08/31 15:21:48 - [] D -- C:\Users\Naturi\AppData\Roaming\Samsung O43 - CFD: 2015/08/25 11:09:31 - [] D -- C:\Users\Naturi\AppData\Roaming\Skype O43 - CFD: 2015/02/11 10:10:33 - [] D -- C:\Users\Naturi\AppData\Roaming\Sony O43 - CFD: 2015/02/10 10:31:45 - [] D -- C:\Users\Naturi\AppData\Roaming\TuneUp Software O43 - CFD: 2015/08/25 23:19:19 - [] D -- C:\Users\Naturi\AppData\Roaming\uTorrent O43 - CFD: 2015/02/10 10:29:26 - [] D -- C:\Users\Naturi\AppData\Roaming\VideoEditor O43 - CFD: 2014/04/06 20:44:15 - [] D -- C:\Users\Naturi\AppData\Roaming\vlc O43 - CFD: 2013/08/28 21:33:24 - [] D -- C:\Users\Naturi\AppData\Roaming\WebApp O43 - CFD: 2013/10/17 18:07:50 - [] D -- C:\Users\Naturi\AppData\Roaming\WinRAR O43 - CFD: 2015/10/13 11:30:17 - [] D -- C:\Users\Naturi\AppData\Roaming\ZHP O43 - CFD: 2013/11/14 23:34:02 - [0] D -- C:\Users\Naturi\AppData\Roaming\ZoomBrowser EX O43 - CFD: 2015/07/15 12:49:31 - [] D -- C:\Users\Naturi\AppData\Local\Adobe O43 - CFD: 2013/07/17 18:55:58 - [] D -- C:\Users\Naturi\AppData\Local\AMD O43 - CFD: 2013/11/04 21:59:33 - [] D -- C:\Users\Naturi\AppData\Local\Apple O43 - CFD: 2013/11/04 22:01:57 - [] D -- C:\Users\Naturi\AppData\Local\Apple Computer O43 - CFD: 2014/04/02 17:32:07 - [0] SHD -- C:\Users\Naturi\AppData\Local\Application Data O43 - CFD: 2014/07/26 10:00:23 - [] D -- C:\Users\Naturi\AppData\Local\AroMya O43 - CFD: 2013/07/17 18:53:29 - [] D -- C:\Users\Naturi\AppData\Local\ATI O43 - CFD: 2014/06/26 11:44:53 - [] D -- C:\Users\Naturi\AppData\Local\BolideSoftware O43 - CFD: 2013/12/23 15:09:38 - [] D -- C:\Users\Naturi\AppData\Local\cache O43 - CFD: 2013/11/14 23:27:31 - [] D -- C:\Users\Naturi\AppData\Local\CANON_INC O43 - CFD: 2014/01/22 03:48:08 - [] D -- C:\Users\Naturi\AppData\Local\Cyberlink O43 - CFD: 2015/01/06 09:06:58 - [0] D -- C:\Users\Naturi\AppData\Local\Diagnostics O43 - CFD: 2014/03/18 10:19:02 - [] D -- C:\Users\Naturi\AppData\Local\Downloaded Installations O43 - CFD: 2015/07/01 12:07:16 - [] D -- C:\Users\Naturi\AppData\Local\Dropbox O43 - CFD: 2014/12/29 04:15:42 - [0] D -- C:\Users\Naturi\AppData\Local\ElevatedDiagnostics O43 - CFD: 2014/11/27 14:04:14 - [] SHD -- C:\Users\Naturi\AppData\Local\EmieBrowserModeList O43 - CFD: 2014/05/17 09:34:29 - [] SHD -- C:\Users\Naturi\AppData\Local\EmieSiteList O43 - CFD: 2014/05/17 09:34:29 - [] SHD -- C:\Users\Naturi\AppData\Local\EmieUserList O43 - CFD: 2014/11/30 15:08:12 - [] D -- C:\Users\Naturi\AppData\Local\fontconfig O43 - CFD: 2013/10/18 15:12:34 - [] D -- C:\Users\Naturi\AppData\Local\Garmin O43 - CFD: 2014/11/30 15:08:04 - [] D -- C:\Users\Naturi\AppData\Local\gegl-0.2 O43 - CFD: 2013/10/17 18:01:01 - [] D -- C:\Users\Naturi\AppData\Local\Google O43 - CFD: 2014/12/18 17:43:28 - [] D -- C:\Users\Naturi\AppData\Local\gtk-2.0 O43 - CFD: 2014/04/02 17:32:07 - [0] SHD -- C:\Users\Naturi\AppData\Local\Historique O43 - CFD: 2013/07/17 18:53:18 - [] D -- C:\Users\Naturi\AppData\Local\Lenovo O43 - CFD: 2013/07/18 01:54:33 - [] D -- C:\Users\Naturi\AppData\Local\Macromedia O43 - CFD: 2014/11/14 20:29:54 - [] D -- C:\Users\Naturi\AppData\Local\Microsoft O43 - CFD: 2014/03/26 00:40:53 - [] D -- C:\Users\Naturi\AppData\Local\Microsoft Help O43 - CFD: 2014/05/26 11:32:39 - [] D -- C:\Users\Naturi\AppData\Local\Mozilla O43 - CFD: 2014/05/23 22:23:50 - [] D -- C:\Users\Naturi\AppData\Local\Packages O43 - CFD: 2014/03/18 12:14:50 - [] D -- C:\Users\Naturi\AppData\Local\Pinnacle O43 - CFD: 2013/07/17 18:51:28 - [] D -- C:\Users\Naturi\AppData\Local\Power2Go O43 - CFD: 2013/10/17 23:10:35 - [] D -- C:\Users\Naturi\AppData\Local\Programs O43 - CFD: 2014/08/01 11:22:13 - [] D -- C:\Users\Naturi\AppData\Local\Skype O43 - CFD: 2014/01/23 02:52:16 - [] D -- C:\Users\Naturi\AppData\Local\Sony O43 - CFD: 2015/10/13 11:28:38 - [] D -- C:\Users\Naturi\AppData\Local\Temp O43 - CFD: 2014/04/02 17:32:07 - [0] SHD -- C:\Users\Naturi\AppData\Local\Temporary Internet Files O43 - CFD: 2015/02/10 10:31:45 - [] D -- C:\Users\Naturi\AppData\Local\TuneUp Software O43 - CFD: 2014/03/30 23:38:22 - [] D -- C:\Users\Naturi\AppData\Local\VirtualStore O43 - CFD: 2014/06/23 23:44:06 - [] D -- C:\Users\Naturi\AppData\Local\Windows Live O43 - CFD: 2013/07/19 19:12:23 - [0] D -- C:\Users\Naturi\AppData\Local\WMTools Downloaded Files O43 - CFD: 2014/06/26 10:48:54 - [] D -- C:\Users\Naturi\AppData\Local\Wondershare O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/25 11:08:52 - [] RD -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/08/25 11:17:14 - [] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 2015/01/19 20:18:57 - [] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\emme O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 2014/06/04 22:54:28 - [] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gramblr O43 - CFD: 2015/09/27 19:09:56 - [0] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kirikou O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2013/07/19 17:50:09 - [0] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 2015/08/25 11:18:10 - [] RD -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2014/04/02 17:34:47 - [] RD -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2014/07/06 18:26:26 - [0] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TomTom O43 - CFD: 2014/04/02 17:49:20 - [] D -- C:\Users\Naturi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (18) - 1s O106 - SIOI: DropboxExt1 Class [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt2 Class [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt3 Class [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: DropboxExt1 Class ["DropboxExt1"] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt2 Class ["DropboxExt2"] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt5 Class ["DropboxExt3"] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt6 Class ["DropboxExt4"] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt3 Class ["DropboxExt5"] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt7 Class ["DropboxExt6"] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt4 Class ["DropboxExt7"] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: DropboxExt8 Class ["DropboxExt8"] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll © O106 - SIOI: DropboxExt4 Class [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Naturi\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll © ---\\ Liste des pilotes du système (58) - 10s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] © O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] © O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] © O58 - SDL:2013/06/02 04:56:58 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [31920] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] © O58 - SDL:2015/10/08 08:14:09 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [28656] © O58 - SDL:2015/10/08 08:14:09 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [90968] © O58 - SDL:2015/10/08 08:14:08 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [93528] © O58 - SDL:2015/10/08 08:14:09 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [65224] © O58 - SDL:2015/10/08 08:13:32 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1049880] © O58 - SDL:2015/10/08 08:14:10 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [448968] © O58 - SDL:2015/10/08 08:14:10 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [153744] © O58 - SDL:2015/10/08 08:14:10 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [274808] © O58 - SDL:2012/07/17 02:59:12 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdW86.sys [98472] © O58 - SDL:2013/12/13 10:23:36 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [13207552] © O58 - SDL:2013/12/13 10:23:36 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [626176] © O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2008/04/08 07:43:04 A . (.Nicomsoft Ltd. - WINI2C-DDC Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\ddcdrv.sys [20832] © O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] © O58 - SDL:2012/08/21 14:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] © O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] © O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] © O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2005/09/23 23:18:34 A . (.Pinnacle Systems GmbH - Pinnacle Marvin Discrete Bus Enumerator.) -- C:\WINDOWS\System32\drivers\MarvinBus64.sys [261120] © O58 - SDL:2014/11/21 07:14:08 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] © O58 - SDL:2014/11/21 07:14:12 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [93400] © O58 - SDL:2015/03/04 10:14:55 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [129752] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2014/11/21 07:14:26 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] © O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] © O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] © O58 - SDL:2012/11/13 14:01:24 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4207760] © O58 - SDL:2012/07/03 08:09:08 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [269968] © O58 - SDL:2013/07/31 20:25:43 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [1936088] © O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] © O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2013/11/26 11:07:12 A . (.Samsung Electronics - Port Contention Driver.) -- C:\WINDOWS\System32\drivers\SSPORT.SYS [11576] © O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2015/06/10 23:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] © O58 - SDL:2012/08/24 08:04:02 A . (.Vimicro Corporation - Vimicro USB Video Class Camera.) -- C:\WINDOWS\System32\drivers\vmc412.sys [232448] © O58 - SDL:2012/05/02 10:03:52 A . (.Vimicro Corporation - Vimicro USB Audio Filter.) -- C:\WINDOWS\System32\drivers\vmuacflt.sys [13696] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2012/06/13 18:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) -- C:\WINDOWS\System32\drivers\wsvd.sys [102376] © ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (9) - 278s O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.PositiveFinds.cg", "6833ac4f-e3ee-4b1d-be41-952adffe7408"); =>PUP.Optional.PositiveFinds O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.REAL1-SP.domain", "\"www.search.ask.com\""); =>Toolbar.Ask O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.REAL1-SP.hpr_ff", "\"http://www.search.ask.com/?tpid=REAL1-SP&o=APN11676&pf=V7&trgb=FF&p2=%5EBMR%5Edefault%5[...] =>Toolbar.Ask O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.REAL1-SP.newTabSearchURL", "\"http://www.search.ask.com/web?o=APN11676&p2=%5EBMR%5Edefault%5EYY%5EFR&tpid=RE[...] =>Toolbar.Ask O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.REAL1-SP.searchURL", "\"http://www.search.ask.com/web?o=APN11676&p2=%5EBMR%5Edefault%5EYY%5EFR&tpid=REAL1-SP[...] =>Toolbar.Ask O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.ad822269819e54827b79e0a077ea8eb7a7b662f6d389941e488646393447568dacom37180.37180.name", "Plus-HD-3.5"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("extensions.toolbar_REAL1-SP@apn.ask.com.install-event-fired", true); =>Toolbar.Ask O69 - SBI: prefs.js [Naturi - r549vd1m.default] user_pref("om.pingUrl", "http://api.offermosquito.com/ping.php"); =>PUP.Optional.OfferMosquito O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1084416] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [228864] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3705344] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] © ---\\ Liste des exceptions du parefeu Windows (10) - 12s O87 - FAEL: "{E0838415-8DE4-41E2-B4F8-5E8D23CDCD58}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Naturi\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{D5F0595D-7811-48ED-9BFE-214DC3785B8F}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Naturi\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{302117DE-B6C7-4007-ADD4-377EAD982525}" [In-None-P6-TRUE] .(...) -- C:\Windows\twain_32\Samsung\SLC460\ScanCDLM\ScanCDLM.exe O87 - FAEL: "{923AE697-EB93-4338-9B74-AFDA2CBA8C5C}" [In-None-P17-TRUE] .(...) -- C:\Windows\twain_32\Samsung\SLC460\ScanCDLM\ScanCDLM.exe O87 - FAEL: "{401FBE39-0772-4D25-8E3F-4BA348F24898}" [In-None-P6-TRUE] .(.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe O87 - FAEL: "{B15B0336-4CD8-4C19-9B48-FB7896BF367F}" [In-None-P17-TRUE] .(.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe O87 - FAEL: "{E4A5B8D2-246D-4509-8EBC-0419FCD1FBF7}" [In-None-P6-TRUE] .(.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe O87 - FAEL: "{8315835D-A6DD-4416-8198-5EDB9EA9FD9E}" [In-None-P17-TRUE] .(.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe O87 - FAEL: "{319DCB7A-62BD-46E6-9914-321761D04B5E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe O87 - FAEL: "{F62C3E58-09CF-4908-9C38-70F77D73E8DF}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe ---\\ Enumère les codes produits des logiciels (1) - 17s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.Duuqu Update Helper.) =>PUP.Optional.FrameFox ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (24) - 104s SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/09/22 12:16:40] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2013/12/13 10:23:32] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\system32\atiesrxx.exe © SR - Auto [2012/08/06 13:08:48] [ 361984] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe © SR - Auto [2015/09/02 17:10:18] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [2015/10/08 08:13:49] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SR - Auto [2015/08/12 16:03:42] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SR - Auto [2012/01/23 19:19:32] [ 1858048] FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe © SS - Demand [2011/04/26 14:54:12] [ 2702848] Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) . (.MAGIX®.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe SR - Auto [2013/09/19 08:46:58] [ 250200] Garmin Core Update Service (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries.) - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe © SS - Auto [2013/10/06 13:14:23] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2013/10/06 13:14:23] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [2012/07/13 11:02:16] [ 2451456] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe © SR - Demand [2015/09/15 18:09:18] [ 644880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SR - Auto [2011/03/15 21:47:40] [ 32768] JME Keyboard Driver (JME Keyboard) . (...) - C:\Windows\jmesoft\Service.exe SS - Demand [2015/10/01 13:30:18] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SR - Auto [2013/06/17 20:08:50] [ 230408] NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe © SR - Auto [2013/06/17 20:08:56] [ 69640] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE © SR - Auto [2014/10/26 23:59:24] [ 39568] RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe SR - Auto [2014/11/27 20:01:37] [ 1141848] RealPlayer Cloud Service (RealPlayer Cloud Service) . (.RealNetworks, Inc..) - c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe © SR - Auto [2014/10/30 06:41:44] [ 31856] RealPlayer Update Service (RealPlayerUpdateSvc) . (...) - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe SS - Auto [2015/02/18 20:11:32] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SR - Auto [2012/05/11 10:30:02] [ 211968] VolumeCtlSrv (VolumeCtlSrv) . (.Wistron Corporation.) - C:\Program Files\VolumeOSD\VolumeCtlSrv.exe © ---\\ Scan Additionnel (2) - 0s HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.FrameFox HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.FrameFox ---\\ Récapitulatif des éléments trouvées sur votre station (5) - 0s http://www.nicolascoolman.fr/blog =>PUP.Optional.PositiveFinds http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/pup-offermosquito/ =>PUP.Optional.OfferMosquito http://www.nicolascoolman.fr/pup-framefox / =>PUP.Optional.FrameFox ~ End of the scan, 49043 items in 795 seconds (1057)(0)()