~ ZHPDiag v2015.10.22.154 Par Nicolas Coolman (2015/10/22) ~ Démarré par Julio (Administrator) (2015/10/23 15:54:50) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Julio\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Julio\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v34.0.1847.131 MSIE: Internet Explorer v11.0.9600.17280 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : KO Windows Activation Technologies : OK ---\\ Logiciels de protection (3) - 6s Avira Antivirus v15.0.12.420 Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender W7 (Deactivate) ---\\ Logiciels de protection et autres (Superflus) (1) - 6s SpyHunter 4 v4.20.9.4533 ---\\ Logiciels d'optimisation (1) - 7s CCleaner v3.21 ---\\ Surveillance de Logiciels (2) - 7s Adobe Flash Player 19 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3140.444 MB (30% free) ~ System Restore: Désactivé (Disabled) ~ System drive C: has 16 GB free of 102 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: JULIO-PC ~ User Name: Julio ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 16 GB free of 102 GB (System) ~ Drive D: has 65 GB free of 374 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320] © [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] © [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256] © [MD5.D58988722C72D265B51A54103DFC2C6F] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1812992] © [MD5.998507B046BA314CE8245364C686FA67] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128] © [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [270336] © [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944] © [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584] © [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656] © [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544] © [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336] © [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544] © [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896] © [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888] © [MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [123904] © [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904] © [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352] © [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] © [MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632] © [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168] © [MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752] © [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632] © ---\\ Processus lancés (26) - 2s [MD5.EC98CA8298F67926FA50876348534B1D] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [163328] [PID.844] © [MD5.D63E32285C4031A4C9A1EA8BC1F21229] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [404992] [PID.1416] © [MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [461672] [PID.1580] © [MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.1764] © [MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.1800] © [MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [461672] [PID.1832] © [MD5.8FB6D64CB42E660C4534D38013D64A03] - (.Lavasoft Limited - .) -- C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760] [PID.1972] © [MD5.B55DEB7AF3DD62575ACDDDAD1F2C7857] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [754000] [PID.320] © [MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.2076] © [MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648] [PID.2784] © [MD5.40C126CB15FAB7D6C66490DCA9C1AED2] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416] [PID.3148] © [MD5.39B43904B18F82D8E84A3F1BCFA9088C] - (.Copyright © 2014 - SPWindowsService.) -- C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [16656] [PID.3244] [MD5.BABBBDEF9DBB5E012EE5210FCB47C33B] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [9832760] [PID.3356] © [MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.3476] © [MD5.C063DA6EB1E91722611EE1ACE9A7DE96] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [434368] [PID.3804] © [MD5.76648BCBEB840B391E85DAD2DC04FFC9] - (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) -- C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [240872] [PID.2976] © [MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.2536] © [MD5.C861851A0BBD9903E324487011AA3705] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.652] © [MD5.2477A2CC6D40FE623FD789D546CABD40] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [11487848] [PID.4056] © [MD5.FA28BD04DA2A14879F13565375E3488F] - (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1263512] [PID.2708] © [MD5.21293443961A4E2597453EE7A9347F22] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [54840] [PID.3116] © [MD5.D28C5A1411BB0B47E05E0D6AAF896690] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299008] [PID.4488] © [MD5.36ECBE14F0A769CC67D2ECEA945F1094] - (.Enigma Software Group USA, LLC. - Service scanner interface.) -- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [771968] [PID.4732] =>.Superfluous.SpyHunter [MD5.E8B7FD67DA14A7BE57A5CB80E3139E60] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe [309704] [PID.1852] © [MD5.02DED435FCAA1C02959051AF636E154A] - (.www.shadowexplorer.com - ShadowExplorer.) -- C:\Program Files\ShadowExplorer\sesvc.exe [9216] [PID.1160] © [MD5.231AE3BE35DFA790FE484CCA354BCD15] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Julio\AppData\Roaming\ZHP\ZHPDiag3.exe [1958912] [PID.5768] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (6) - 0s G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 1s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_19_0_0_226.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (8) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (50) ---\\ Browser Helper Object de navigateur (BHO) (6) - 0s O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll © O2 - BHO: Ript - {91D9091B-2046-42f7-903E-1215A29E21EA} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Program Files\Ript\mscoree.dll © O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll © O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL © O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll © ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: 0xCDC0969E01A9324092360E4A264AEEE4 - [HKCU]{9E96C0CD-A901-4032-9236-0E4A264AEEE4} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (38) - 1s O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe © O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe © O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe © O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe © O4 - HKLM\..\Run: [DivXUpdate] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe © O4 - HKLM\..\Run: [hpqSRMon] . (.Hewlett-Packard - HpqSRmon.) -- C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe © O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe © O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe © O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe © O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe © O4 - HKLM\..\Run: [ArcSoft Connection Service] . (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe © O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe © O4 - HKLM\..\Run: [PLFSetL] . (.sonix - DefaultSettingEXE.) -- C:\Windows\PLFSetL.exe © O4 - HKLM\..\Run: [PLFSetI] . (.Copyright (C) 2007 - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKLM\..\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira.SystrayStartTrigger.) -- C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe © O4 - HKLM\..\Run: [LogitechCommunicationsManager] . (.Labtec Inc, - Communications Manager.) -- C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe O4 - HKLM\..\Run: [LVCOMSX] . (.Labtec Inc. - LVCom Server.) -- C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe © O4 - HKCU\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe © O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe © O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_10DD2C0B25E54D8A04C136866AFB21B6] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O4 - HKCU\..\Run: [aaehke] c:\users\julio\appdata\local\aaehke.exe (.not file.) O4 - HKCU\..\Run: [Xvid] . (...) -- C:\Program Files\Xvid\CheckUpdate.exe O4 - HKCU\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE © O4 - HKCU\..\Run: [Web Companion] . (.Lavasoft - Web Companion.) -- C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe © O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Julio\AppData\Local\Microsoft\BingSvc\BingSvc.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe © O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe © O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [GoogleChromeAutoLaunch_10DD2C0B25E54D8A04C136866AFB21B6] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [aaehke] c:\users\julio\appdata\local\aaehke.exe (.not file.) O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [Xvid] . (...) -- C:\Program Files\Xvid\CheckUpdate.exe O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE © O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [Web Companion] . (.Lavasoft - Web Companion.) -- C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe © O4 - HKUS\S-1-5-21-3629983168-1962649771-3116347968-1000\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Julio\AppData\Local\Microsoft\BingSvc\BingSvc.exe © ---\\ Raccourcis Global Startup (3) - 3s O4 - GS\Desktop [Administrateur]: ParetoLogic PC Health Advisor.lnk . (.ParetoLogic, Inc. - ParetoLogic PC Health Advisor.) C:\Program Files\ParetoLogic\PCHA\PCHA.exe =>PUP.Optional.Paretologic O4 - GS\Desktop [Invité]: ParetoLogic PC Health Advisor.lnk . (.ParetoLogic, Inc. - ParetoLogic PC Health Advisor.) C:\Program Files\ParetoLogic\PCHA\PCHA.exe =>PUP.Optional.Paretologic O4 - GS\Desktop [Julio]: ParetoLogic PC Health Advisor.lnk . (.ParetoLogic, Inc. - ParetoLogic PC Health Advisor.) C:\Program Files\ParetoLogic\PCHA\PCHA.exe =>PUP.Optional.Paretologic ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (23) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll © O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (18) - 1s O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe © O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe © O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe © O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe © O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe © O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe © O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe © O23 - Service: LavasoftTcpService (LavasoftTcpService) . (.Lavasoft Limited - .) - C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe © O23 - Service: LVSrvLauncher (LVSrvLauncher) . (.Labtec Inc. - LabtecService Launcher.) - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe © O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe © O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: IE Search Set (SearchProtectionService) . (.Copyright © 2014 - SPWindowsService.) - C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe O23 - Service: ShadowExplorer Service (sesvc) . (.www.shadowexplorer.com - ShadowExplorer.) - C:\Program Files\ShadowExplorer\sesvc.exe © O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe © O23 - Service: SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC. - Service scanner interface.) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe =>.Superfluous.SpyHunter ---\\ Tâches planifiées en automatique (44) - 9s [MD5.8C194A201698B4B4F77D974549819D1F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.00000000000000000000000000000000] [APT] [AutoKMS] (...) -- C:\Windows\AutoKMS\AutoKMS.exe (.not file.) [0] =>HackTool.AutoKMS [MD5.13001914838576400EB9AFDE95AE71CE] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3091296] © [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648] © [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648] © [MD5.2A5C656B0A364580E578B26EAE2EE889] [APT] [klcp_update] (...) -- C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1173504] [MD5.BBFF07307C2A755AEEFDCA06F5540382] [APT] [ParetoLogic Update Version3] (.Copyright (C) 2013.) -- C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [1982976] =>PUP.Optional.Paretologic [MD5.BBFF07307C2A755AEEFDCA06F5540382] [APT] [ParetoLogic Update Version3 Startup Task] (.Copyright (C) 2013.) -- C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [1982976] =>PUP.Optional.Paretologic [MD5.EE8A390C3E131884B9094398413F8041] [APT] [PC Health Advisor] (.ParetoLogic, Inc..) -- C:\Program Files\ParetoLogic\PCHA\PCHA.exe [4844656] =>PUP.Optional.Paretologic [MD5.EE8A390C3E131884B9094398413F8041] [APT] [PC Health Advisor Defrag] (.ParetoLogic, Inc..) -- C:\Program Files\ParetoLogic\PCHA\PCHA.exe [4844656] =>PUP.Optional.Paretologic [MD5.00000000000000000000000000000000] [APT] [PenWes] (...) -- C:\Program Files\PenWes\penwes.exe (.not file.) [0] [MD5.D565FDC5BEF536527121863566F2083B] [APT] [SpyHunter4Startup] (.Enigma Software Group USA, LLC..) -- C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [7136640] =>.Superfluous.SpyHunter [MD5.00000000000000000000000000000000] [APT] [{0123151D-DBB4-4427-AF86-F0FF56A10A61}] (...) -- C:\Windows\Acer Crystal Eye Webcam.exe (.not file.) [0] [MD5.10DF3F8CA4538D7A77E6D904FC071D3A] [APT] [{0BA0B8EC-8EBC-4F25-8A71-BAF43E038645}] (.Chicony Electronics Co., Ltd..) -- C:\Program Files\Acer\Acer Crystal Eye webcam\CrystalEye.exe [1325056] © [MD5.10DF3F8CA4538D7A77E6D904FC071D3A] [APT] [{0FE5888E-86B6-45A4-83AE-12B1823618B2}] (.Chicony Electronics Co., Ltd..) -- C:\Program Files\Acer\Acer Crystal Eye webcam\CrystalEye.exe [1325056] © [MD5.00000000000000000000000000000000] [APT] [{1B462307-EDDA-4407-9E87-8524478282AC}] (...) -- C:\Windows\Acer Crystal Eye Webcam.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{360EC28E-C67C-4078-B72C-F7EB9A02C6A1}] (...) -- C:\Windows\Acer Crystal Eye Webcam.exe (.not file.) [0] [MD5.10DF3F8CA4538D7A77E6D904FC071D3A] [APT] [{3E9BAFC3-3002-4C67-B7DA-7BA782992233}] (.Chicony Electronics Co., Ltd..) -- C:\Program Files\Acer\Acer Crystal Eye webcam\CrystalEye.exe [1325056] © [MD5.10DF3F8CA4538D7A77E6D904FC071D3A] [APT] [{76C8A94A-E1FC-4A2F-8B1D-B7FE8BA57896}] (.Chicony Electronics Co., Ltd..) -- C:\Program Files\Acer\Acer Crystal Eye webcam\CrystalEye.exe [1325056] © [MD5.00000000000000000000000000000000] [APT] [{B0597D97-4D51-4006-B330-52011C2D654F}] (...) -- C:\Windows\Acer Crystal Eye Webcam.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{DD15E752-50D4-4250-A582-DFB972E30202}] (...) -- C:\Windows\Acer Crystal Eye Webcam.exe (.not file.) [0] [MD5.10DF3F8CA4538D7A77E6D904FC071D3A] [APT] [{E048AC7A-7DBD-42B1-8B45-DDD61D200824}] (.Chicony Electronics Co., Ltd..) -- C:\Program Files\Acer\Acer Crystal Eye webcam\CrystalEye.exe [1325056] © [MD5.8C5ED725BB2EE659E6CEB3DFCEDEBDB6] [APT] [{EA2ED42C-8CA1-47BE-B8EC-C1CEC1A027B4}] (.CamStudio Group.) -- C:\Program Files\CamStudio 2.7\Recorder.exe [2255360] [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: AutoKMS - (...) -- C:\Windows\Tasks\AutoKMS.job [294] =>HackTool.AutoKMS O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1050] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1054] © O39 - APT: ParetoLogic Update Version3 Startup Task - (.Copyright (C) 2013.) -- C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job [470] =>PUP.Optional.Paretologic O39 - APT: ParetoLogic Update Version3 - (.Copyright (C) 2013.) -- C:\Windows\Tasks\ParetoLogic Update Version3.job [418] =>PUP.Optional.Paretologic O39 - APT: PC Health Advisor Defrag - (.ParetoLogic, Inc..) -- C:\Windows\Tasks\PC Health Advisor Defrag.job [376] =>PUP.Optional.Paretologic O39 - APT: PC Health Advisor - (.ParetoLogic, Inc..) -- C:\Windows\Tasks\PC Health Advisor.job [358] =>PUP.Optional.Paretologic O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: AutoKMS - (...) -- C:\Windows\System32\Tasks\AutoKMS [2984] =>HackTool.AutoKMS O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2772] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3798] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4050] © O39 - APT: klcp_update - (...) -- C:\Windows\System32\Tasks\klcp_update [3782] O39 - APT: ParetoLogic Update Version3 - (.Copyright (C) 2013.) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 [3232] =>PUP.Optional.Paretologic O39 - APT: ParetoLogic Update Version3 Startup Task - (.Copyright (C) 2013.) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task [2896] =>PUP.Optional.Paretologic O39 - APT: PC Health Advisor - (.ParetoLogic, Inc..) -- C:\Windows\System32\Tasks\PC Health Advisor [3278] =>PUP.Optional.Paretologic O39 - APT: PC Health Advisor Defrag - (.ParetoLogic, Inc..) -- C:\Windows\System32\Tasks\PC Health Advisor Defrag [3250] =>PUP.Optional.Paretologic O39 - APT: PenWes - (...) -- C:\Windows\System32\Tasks\PenWes [2952] O39 - APT: SpyHunter4Startup - (.Enigma Software Group USA, LLC..) -- C:\Windows\System32\Tasks\SpyHunter4Startup [3326] ---\\ Logiciels installés (110) - 31s O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR © O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI © O42 - Logiciel: Audacity 2.0.3 - (.Audacity Team.) [HKLM] -- Audacity_is1 © O42 - Logiciel: AVI ReComp 1.5.6 - (.Mateusz Gola (aka Prozac).) [HKLM] -- AVI ReComp O42 - Logiciel: Avidemux 2.6 (32-bit) - (...) [HKLM] -- Avidemux 2.6 O42 - Logiciel: Avira Antivirus v15.0.12.420 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus © O42 - Logiciel: AviSynth 2.5 - (.GPL Public release..) [HKLM] -- AviSynth O42 - Logiciel: Balabolka - (.Ilya Morozov.) [HKLM] -- Balabolka © O42 - Logiciel: BD Créateur - (.Micro Application.) [HKLM] -- BD Créateur © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner © O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM] -- DAEMON Tools Lite © O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler © O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup © O42 - Logiciel: Doxillion - Convertisseur de documents - (.NCH Software.) [HKLM] -- Doxillion © O42 - Logiciel: FormatFactory 3.3.5.0 - (.Format Factory.) [HKLM] -- FormatFactory © O42 - Logiciel: Free DVD Ripper Platinum 2.8.9 - (.FreeAudioVideoSoft Co., Ltd..) [HKLM] -- Free DVD Ripper Platinum_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome © O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM] -- HP Imaging Device Functions © O42 - Logiciel: HP Photosmart Essential 3.5 - (.HP.) [HKLM] -- HP Photosmart Essential © O42 - Logiciel: HP Smart Web Printing 4.51 - (.HP.) [HKLM] -- HP Smart Web Printing © O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools © O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM] -- HPExtendedCapabilities © O42 - Logiciel: OCR Software by I.R.I.S. 13.0 - (.HP.) [HKLM] -- HPOCR © O42 - Logiciel: K-Lite Codec Pack 11.2.0 Full - (...) [HKLM] -- KLiteCodecPack_is1 O42 - Logiciel: LAME v3.99.3 (for Windows) - (...) [HKLM] -- LAME_is1 O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: MixPad - Mixeur de fichiers audio - (.NCH Software.) [HKLM] -- MixPad © O42 - Logiciel: MKVToolNix 7.8.0 (32bit) - (.Moritz Bunkus.) [HKLM] -- MKVToolNix © O42 - Logiciel: Monkey's Audio - (...) [HKLM] -- Monkey's Audio_is1 O42 - Logiciel: Native Instruments Guitar Rig 3 - (...) [HKLM] -- Native Instruments Guitar Rig 3 O42 - Logiciel: Xiph.Org Ogg Codecs 0.83.17220 32-bit - (.Xiph.Org.) [HKLM] -- Ogg Codecs © O42 - Logiciel: Uninstall OVT Scanner - (...) [HKLM] -- OVT Scanner O42 - Logiciel: Prism - Convertisseur de fichiers vidéo - (.NCH Software.) [HKLM] -- Prism © O42 - Logiciel: Quintessential Player - (.Quinnware.) [HKLM] -- Quintessential Player O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM] -- SFR_Kit © O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM] -- SFR_Media Center © O42 - Logiciel: ShadowExplorer 0.9 - (.ShadowExplorer.com.) [HKLM] -- ShadowExplorer_is1 © O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies © O42 - Logiciel: SONAR 8.0 Producer Edition - (.Cakewalk Music Software.) [HKLM] -- SONAR8Producer_is1 © O42 - Logiciel: SpyHunter 4 - (.Enigma Software Group, LLC.) [HKLM] -- SpyHunter =>.Superfluous.SpyHunter O42 - Logiciel: Super Motocross - (.MyPlayCity, Inc..) [HKLM] -- Super Motocross_is1 O42 - Logiciel: TeraCopy 2.12 - (.Code Sector Inc..) [HKLM] -- TeraCopy_is1 O42 - Logiciel: Ultimate Motorcross 1.0 - (.Team6 game studios.) [HKLM] -- Ultimate Motorcross O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker © O42 - Logiciel: Vimeo Video Downloader 3.25 - (.DownloadToolz, Inc..) [HKLM] -- Vimeo Video Downloader_is1 O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player © O42 - Logiciel: VobSub 2.23 - (.Gabest.) [HKLM] -- VobSub O42 - Logiciel: GIMP 2.6.12-2 - (.The GIMP Team.) [HKLM] -- WinGimp-2.0_is1 © O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM] -- WinRAR archiver O42 - Logiciel: Xvid Video Codec - (.Xvid Team.) [HKLM] -- Xvid Video Codec 1.3.2 © O42 - Logiciel: Melodyne Runtime 4.1 (x86) - (.Celemony Software GmbH .) [HKLM] -- {02875304-0DD9-465A-986E-A3438ACDC623} O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} © O42 - Logiciel: CamStudio version 2.7 - (.CamStudio Open Source.) [HKLM] -- {04B83666-3A62-452B-85D3-70F8117F2329}_is1 © O42 - Logiciel: ArcSoft PhotoImpression 6 - (.ArcSoft.) [HKLM] -- {063E409E-3D7C-4A4A-95AB-2F124B9224B3} © O42 - Logiciel: Zedeo version 0.8 - (.czmaster.) [HKLM] -- {095074AE-E4BD-41EC-AE78-21969805AB7C}_is1 © O42 - Logiciel: ISO Recorder - (.Alex Feinman.) [HKLM] -- {1235083F-52F9-44CC-9DF5-F9B7802BB9B7} © O42 - Logiciel: Melodyne singletrack - (.Celemony Software GmbH.) [HKLM] -- {16DF894D-FC3F-4B87-908D-671E201CD7A8} © O42 - Logiciel: HP Photosmart All-In-One Driver Software 13.0 Rel. A - (.HP.) [HKLM] -- {17016DA1-F040-4032-BD36-34DD317BC9D5} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {1798D459-6B8B-474B-868D-1229EADA3B95} © O42 - Logiciel: Sony Vegas Pro 8.0 - (.Sony.) [HKLM] -- {181F9382-0FBC-4CA4-894B-D490FC053B49} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} © O42 - Logiciel: VirtualDub 1.9.6 Fr - (.Trad-Fr.) [HKLM] -- {1FF7993C-23B1-4C91-B1F6-09D13C57A06A}_is1 © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} © O42 - Logiciel: Skype™ 7.4 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: Java 7 Update 67 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217051FF} © O42 - Logiciel: Avira Launcher v1.1.47.11018 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {27743B8E-DD60-4A84-BE7C-26570DDD5BB9} © O42 - Logiciel: Web Companion - (.Lavasoft.) [HKLM] -- {2ae1428c-7fe1-4306-bd39-c352f1c062c2} © O42 - Logiciel: Acer Crystal Eye Webcam Video Class Camera - (.Suyin.) [HKLM] -- {399C37FB-08AF-493B-BFED-20FBD85EDF7F} © O42 - Logiciel: ParetoLogic PC Health Advisor - (.ParetoLogic, Inc..) [HKLM] -- {3CBF3EBB-235D-4c29-A68B-2BB1F428586E} =>PUP.Optional.Paretologic O42 - Logiciel: Ript - (.Oxygen Media.) [HKLM] -- {3E50F28A-86D8-4DA5-8850-C55684574F86} O42 - Logiciel: Samplitude Music Studio 17 Version à télécharger - (.MAGIX AG.) [HKLM] -- {4024FCCF-66B9-4E20-9A5B-98AA7F227550} © O42 - Logiciel: Pazera Free MP4 to AVI Converter 1.7 - (.Pazera Jacek.) [HKLM] -- {42442BC6-5A92-4BC2-9E0C-3D359D548A21}_is1 O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {51F9CD22-14E7-455F-9734-462050444930} © O42 - Logiciel: RealSpeak Solo pour la voix francaise Virginie - (.ScanSoft.) [HKLM] -- {58B0F3ED-6FAE-486C-9AB9-1C06514097B4} © O42 - Logiciel: Avira Launcher v1.1.47.11018 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {5dfbeba9-9f22-463d-8c95-c861911810a2} © O42 - Logiciel: Pazera Free Audio Extractor 1.4 - (.Jacek Pazera.) [HKLM] -- {6899C238-3E4A-4A04-B251-A0C9EDC7EDBC}_is1 © O42 - Logiciel: OVT Scanner X86 - (.OVT.) [HKLM] -- {6B566EFE-DC1D-471F-93DD-84832663F140} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {7059BDA7-E1DB-442C-B7A1-6144596720A4} © O42 - Logiciel: Acer Crystal Eye Webcam - (.Suyin Optronics Corp.) [HKLM] -- {7760D94E-B1B5-40A0-9AA0-ABF942108755} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C} © O42 - Logiciel: GIF Viewer version 4.2 - (.Stefan Wobbe.) [HKLM] -- {7E575733-1DF5-4064-AE38-289BA932398A}_is1 © O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: OpenOffice 4.0.1 - (.Apache Software Foundation.) [HKLM] -- {8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8} © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {92127AF5-FDD8-4ADF-BC40-C356C9EE0B7D} © O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F} © O42 - Logiciel: Labtec WebCam - (.Labtec, Inc..) [HKLM] -- {995BF1A7-30E5-49E5-A0E4-AD3213D9E330} O42 - Logiciel: Free Opener - (.EZ Freeware.) [HKLM] -- {A1F2C608-32D6-467D-B035-BBEF509042BA}_is1 O42 - Logiciel: Acer Crystal Eye Webcam 2.0.7 - (.SuYin.) [HKLM] -- {A77255C4-AFCB-44A3-BF0F-2091A71FFD9E} © O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {A83279FD-CA4B-4206-9535-90974DE76654} © O42 - Logiciel: Adobe Reader X (10.1.1) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} © O42 - Logiciel: VirtualDubMOD 1.5.10.3 Fr - (.Trad-Fr.) [HKLM] -- {B158F76F-76AB-4115-A4F0-4C6EF6956093}_is1 © O42 - Logiciel: MAGIX Screenshare - (.MAGIX AG.) [HKLM] -- {B595A7F6-02F8-4497-87F7-047CFE102A0C} © O42 - Logiciel: LauncherMA - (.Micro Application.) [HKLM] -- {C06EFB22-B5DB-46C5-9215-BCB5C19C0858} © O42 - Logiciel: Acer Crystal Eye webcam Ver:1.1.82.416 - (.Chicony Electronics Co.,Ltd..) [HKLM] -- {D0ACE89D-EC7F-470F-80BE-4C98ED366B32} © O42 - Logiciel: VirtualDub Plugin Pack 1.0.0.6 Fr - (.Trad-Fr.) [HKLM] -- {D6E6B04E-0498-4794-B272-2EDE12E02837}_is1 © O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM] -- {F5D6E1FE-70FA-4E0A-93B7-8AFF2CC05F9E} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: ZoomEx - (...) [HKLM] -- {F6D06C28-B57C-4407-A6EC-FD5E2D334EDE} O42 - Logiciel: Genesis - (...) [HKCU] -- aaehke O42 - Logiciel: Dexpot - (.Dexpot GbR.) [HKCU] -- Dexpot O42 - Logiciel: FoxTab Video Converter - (...) [HKCU] -- FoxTab Video Converter O42 - Logiciel: PhotoFiltre - (...) [HKCU] -- PhotoFiltre O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent O42 - Logiciel: Shopping Helper Smartbar Engine - (.ReSoft Ltd..) [HKCU] -- {bf0dab61-de32-41ef-80b3-2e789ea014f9} =>PUP.Optional.SmartBar ---\\ HKCU & HKLM Software Keys (211) - 31s HKLM\SOFTWARE\ACE Compression Software HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\Agere HKLM\SOFTWARE\AMD HKLM\SOFTWARE\America Online HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ArcSoft HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVI ReComp HKLM\SOFTWARE\Avidemux 2.6 HKLM\SOFTWARE\Avira HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\BORLAND HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\Bunndle HKLM\SOFTWARE\Cakewalk Music Software HKLM\SOFTWARE\Caphyon HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\Celemony Software GmbH HKLM\SOFTWARE\Chicony Electronics Co.,Ltd. HKLM\SOFTWARE\CodaMusic HKLM\SOFTWARE\Code Sector HKLM\SOFTWARE\cybelsoft HKLM\SOFTWARE\Cygnus Solutions HKLM\SOFTWARE\Disc Soft HKLM\SOFTWARE\DivX HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\Dolby HKLM\SOFTWARE\DT Soft HKLM\SOFTWARE\DTS HKLM\SOFTWARE\Edirol HKLM\SOFTWARE\EnigmaSoftwareGroup HKLM\SOFTWARE\Fujifilm HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Hewlett-Packard HKLM\SOFTWARE\HighCriteria HKLM\SOFTWARE\HP HKLM\SOFTWARE\Icaros HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\ImagesMixer HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\KLCodecPack HKLM\SOFTWARE\Knowles HKLM\SOFTWARE\Lame For Audacity HKLM\SOFTWARE\LAV HKLM\SOFTWARE\Lavasoft HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Logitech HKLM\SOFTWARE\LSI HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\MAGIX HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\MOVAVI HKLM\SOFTWARE\Moyea HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Native Instruments HKLM\SOFTWARE\NCH Software HKLM\SOFTWARE\NCH Swift Sound HKLM\SOFTWARE\Neuf HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OpenOffice HKLM\SOFTWARE\optimidata HKLM\SOFTWARE\Oxygen HKLM\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKLM\SOFTWARE\PENSEWEB HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Pirsum Services HKLM\SOFTWARE\Propellerhead Software HKLM\SOFTWARE\Protexis HKLM\SOFTWARE\Quinnware HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\REAPER HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\rgc:audio Software HKLM\SOFTWARE\ScanSoft HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SonicFocus HKLM\SOFTWARE\SONIX HKLM\SOFTWARE\Sony Creative Software HKLM\SOFTWARE\Sony Media Software HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Suyin HKLM\SOFTWARE\Suyin Optronics Corp HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\Synthesia HKLM\SOFTWARE\TENCENT =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Trad-FR HKLM\SOFTWARE\Valve HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Voice HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\VST HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wise Solutions HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\X-AVCSD HKLM\SOFTWARE\Xiph.Org HKLM\SOFTWARE\Xvid Team HKLM\SOFTWARE\Yahoo HKCU\SOFTWARE\4Front HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Acer CrystalEye webcam Applications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Alex Feinman HKCU\SOFTWARE\Anvsoft HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\AVI ReComp HKCU\SOFTWARE\Avira HKCU\SOFTWARE\Balabolka HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Cakewalk Music Software HKCU\SOFTWARE\CamStudioOpenSource for Nick HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\Chicony HKCU\SOFTWARE\CodaMusic HKCU\SOFTWARE\Code Sector HKCU\SOFTWARE\CoreAAC HKCU\SOFTWARE\Corel HKCU\SOFTWARE\Cygnus Solutions HKCU\SOFTWARE\D0AD5A6335714B5B3A801C296859A3D6 =>PUP.Optional.CrossRider HKCU\SOFTWARE\Deibus Studios HKCU\SOFTWARE\Dexpot HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DivX HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DownloadToolz HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\DXTransform HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Freeware HKCU\SOFTWARE\Fujifilm HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\HP HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\ICSW HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KillBox HKCU\SOFTWARE\Labtec HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\Magix HKCU\SOFTWARE\MakeMusic HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Micro Application HKCU\SOFTWARE\MicroApp HKCU\SOFTWARE\mkvmergeGUI HKCU\SOFTWARE\Monkey's Audio HKCU\SOFTWARE\MOVAVI HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\Native Instruments HKCU\SOFTWARE\NCH Software HKCU\SOFTWARE\NCH Swift Sound HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Neuf HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice HKCU\SOFTWARE\OSPI HKCU\SOFTWARE\Oxygen HKCU\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKCU\SOFTWARE\Paul Glagla HKCU\SOFTWARE\PhotoFiltre HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Quinnware HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RGP HKCU\SOFTWARE\RtkPCEE3sMsg HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\Sonix HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VirtualDub.org HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Yahoo HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programmes (386) - 28s O43 - CFD: 2015/01/24 13:38:07 - [] D -- C:\Program Files\Acer O43 - CFD: 2015/06/16 19:25:36 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/07/29 17:57:00 - [] D -- C:\Program Files\adslTV O43 - CFD: 2013/05/25 08:23:51 - [] D -- C:\Program Files\Alex Feinman O43 - CFD: 2015/06/14 12:32:49 - [] D -- C:\Program Files\Anvsoft O43 - CFD: 2013/12/25 10:48:14 - [] D -- C:\Program Files\Apple Software Update O43 - CFD: 2013/12/25 20:56:27 - [] D -- C:\Program Files\ArcSoft O43 - CFD: 2012/03/01 22:15:40 - [] D -- C:\Program Files\ATI O43 - CFD: 2012/03/01 22:18:02 - [] D -- C:\Program Files\ATI Technologies O43 - CFD: 2013/02/10 13:12:30 - [] D -- C:\Program Files\Audacity O43 - CFD: 2012/03/22 08:53:25 - [] D -- C:\Program Files\AudacityPortable O43 - CFD: 2015/04/26 18:02:40 - [] D -- C:\Program Files\AVI ReComp O43 - CFD: 2013/03/17 19:14:51 - [] D -- C:\Program Files\Avidemux 2.6 O43 - CFD: 2015/07/07 18:09:11 - [] D -- C:\Program Files\Avira O43 - CFD: 2015/04/26 12:30:34 - [] D -- C:\Program Files\AviSynth 2.5 O43 - CFD: 2013/11/23 13:57:48 - [] D -- C:\Program Files\Balabolka O43 - CFD: 2013/05/29 19:26:46 - [] D -- C:\Program Files\Cakewalk O43 - CFD: 2015/05/30 19:29:16 - [] D -- C:\Program Files\CamStudio 2.7 O43 - CFD: 2012/08/04 11:02:25 - [] D -- C:\Program Files\CCleaner O43 - CFD: 2015/10/22 16:27:39 - [] D -- C:\Program Files\Common Files O43 - CFD: 2013/05/29 17:16:06 - [] D -- C:\Program Files\DAEMON Tools Lite O43 - CFD: 2014/01/03 11:22:30 - [] D -- C:\Program Files\Defraggler O43 - CFD: 2014/08/11 19:24:43 - [] D -- C:\Program Files\Dexpot O43 - CFD: 2012/11/25 12:52:41 - [] D -- C:\Program Files\DivX O43 - CFD: 2014/11/08 09:53:00 - [] D -- C:\Program Files\DownloadToolz O43 - CFD: 2013/08/23 18:56:52 - [0] D -- C:\Program Files\dumps O43 - CFD: 2012/03/01 22:35:34 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 2015/10/23 12:53:32 - [] D -- C:\Program Files\Enigma Software Group =>.Superfluous.SpyHunter O43 - CFD: 2013/10/30 13:28:54 - [0] D -- C:\Program Files\eRightSoft O43 - CFD: 2012/03/01 19:44:33 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2012/09/09 12:28:24 - [] D -- C:\Program Files\Free DVD Ripper Platinum O43 - CFD: 2014/06/06 05:23:16 - [] D -- C:\Program Files\Free Opener O43 - CFD: 2013/12/27 19:12:42 - [] D -- C:\Program Files\FreeTime O43 - CFD: 2015/04/26 12:32:13 - [] D -- C:\Program Files\Gabest O43 - CFD: 2014/10/23 06:01:45 - [] D -- C:\Program Files\GIF Viewer O43 - CFD: 2014/12/28 09:27:11 - [] D -- C:\Program Files\GIMP-2.0 O43 - CFD: 2014/06/14 09:19:21 - [] D -- C:\Program Files\Google O43 - CFD: 2013/06/08 18:33:21 - [] D -- C:\Program Files\HP O43 - CFD: 2012/04/16 11:18:48 - [0] D -- C:\Program Files\hpmonitor O43 - CFD: 2015/01/24 19:53:36 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2012/03/01 23:21:58 - [] D -- C:\Program Files\Intel O43 - CFD: 2014/10/12 10:03:03 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2014/08/05 19:15:58 - [] D -- C:\Program Files\Java O43 - CFD: 2015/06/29 05:54:39 - [] D -- C:\Program Files\K-Lite Codec Pack O43 - CFD: 2015/09/12 11:16:51 - [] D -- C:\Program Files\Labtec O43 - CFD: 2013/03/08 19:01:35 - [] D -- C:\Program Files\Lame For Audacity O43 - CFD: 2015/09/06 16:59:23 - [] D -- C:\Program Files\Lavasoft O43 - CFD: 2013/04/28 12:58:32 - [] D -- C:\Program Files\ma-config.com O43 - CFD: 2015/10/22 19:02:38 - [] D -- C:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 2013/08/08 10:35:09 - [] D -- C:\Program Files\Micro Application O43 - CFD: 2012/03/04 15:36:20 - [] D -- C:\Program Files\Microsoft Analysis Services O43 - CFD: 2009/07/14 11:01:21 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2012/03/04 15:37:36 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/10/22 08:45:12 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2012/08/05 19:30:36 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 2012/03/04 15:37:56 - [] D -- C:\Program Files\Microsoft Synchronization Services O43 - CFD: 2012/03/04 15:37:35 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2015/04/26 18:39:58 - [] D -- C:\Program Files\MKVToolNix O43 - CFD: 2012/08/12 21:33:27 - [] D -- C:\Program Files\Monkey's Audio O43 - CFD: 2014/04/17 19:14:52 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2013/06/08 13:02:20 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2015/09/13 19:35:47 - [] D -- C:\Program Files\MyPlayCity.com O43 - CFD: 2013/05/29 19:29:55 - [] D -- C:\Program Files\Native Instruments O43 - CFD: 2015/02/09 20:57:48 - [] D -- C:\Program Files\NCH Software O43 - CFD: 2014/10/19 09:32:48 - [] D -- C:\Program Files\Nobilis O43 - CFD: 2014/05/18 11:34:40 - [] D -- C:\Program Files\OpenOffice 4 O43 - CFD: 2013/12/25 21:02:59 - [] D -- C:\Program Files\OVT O43 - CFD: 2015/10/22 16:27:15 - [] D -- C:\Program Files\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2013/08/22 12:27:27 - [] D -- C:\Program Files\pazera-software O43 - CFD: 2012/03/28 19:24:19 - [] D -- C:\Program Files\PhotoCam O43 - CFD: 2013/02/04 20:42:30 - [] D -- C:\Program Files\PhotoFiltre O43 - CFD: 2013/12/25 10:50:05 - [] D -- C:\Program Files\QuickTime O43 - CFD: 2012/03/08 20:34:23 - [] D -- C:\Program Files\Quintessential Player O43 - CFD: 2012/03/22 19:40:33 - [] D -- C:\Program Files\Realtek O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2012/04/15 17:17:14 - [] D -- C:\Program Files\Ript O43 - CFD: 2013/10/23 19:35:17 - [] D -- C:\Program Files\ScanSoft O43 - CFD: 2012/03/06 19:05:10 - [] D -- C:\Program Files\SFR O43 - CFD: 2015/10/23 15:09:12 - [] D -- C:\Program Files\ShadowExplorer O43 - CFD: 2015/05/16 14:53:44 - [] RD -- C:\Program Files\Skype O43 - CFD: 2012/03/09 20:41:06 - [] D -- C:\Program Files\Sony O43 - CFD: 2014/01/10 20:29:48 - [] D -- C:\Program Files\Steam O43 - CFD: 2012/03/27 22:26:15 - [] D -- C:\Program Files\SuYin O43 - CFD: 2012/05/19 15:43:26 - [] D -- C:\Program Files\Team6 game studios O43 - CFD: 2012/03/22 19:44:16 - [0] HD -- C:\Program Files\Temp O43 - CFD: 2012/03/01 23:27:55 - [] D -- C:\Program Files\TeraCopy O43 - CFD: 2009/07/14 06:53:23 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/02/14 13:30:08 - [] D -- C:\Program Files\Unlocker O43 - CFD: 2013/09/12 17:33:00 - [] D -- C:\Program Files\uTorrent O43 - CFD: 2012/04/08 15:41:55 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2014/06/01 17:25:36 - [] D -- C:\Program Files\VirtualDub O43 - CFD: 2013/05/29 19:29:01 - [] D -- C:\Program Files\Vstplugins O43 - CFD: 2014/03/02 08:07:02 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2014/08/01 13:51:14 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2012/08/05 19:30:04 - [] D -- C:\Program Files\Windows Live O43 - CFD: 2012/03/01 22:35:34 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2014/03/02 08:07:03 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2012/03/01 19:44:33 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2012/03/01 22:35:33 - [] D -- C:\Program Files\Windows Photo Viewer O43 - CFD: 2012/03/01 22:35:34 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2012/03/01 22:35:34 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2012/03/01 22:12:03 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2013/07/31 17:53:36 - [] D -- C:\Program Files\Xiph.Org O43 - CFD: 2015/04/26 18:02:14 - [] D -- C:\Program Files\Xvid O43 - CFD: 2014/12/21 11:21:50 - [] D -- C:\Program Files\Zedeo O43 - CFD: 2012/11/18 11:42:32 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/01/24 19:42:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye O43 - CFD: 2015/01/24 19:53:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam O43 - CFD: 2012/03/01 19:03:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2013/12/25 20:57:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect O43 - CFD: 2014/07/03 19:25:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoImpression 6 O43 - CFD: 2015/10/02 18:02:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 2012/08/07 15:22:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5 O43 - CFD: 2013/05/29 19:27:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cakewalk O43 - CFD: 2015/05/30 19:28:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio 2.7 O43 - CFD: 2012/03/01 22:18:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 2012/08/04 11:02:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2013/10/27 13:16:54 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Celemony O43 - CFD: 2013/05/29 17:16:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 2014/01/03 11:22:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler O43 - CFD: 2012/11/25 12:52:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX Plus O43 - CFD: 2014/11/08 09:53:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Toolz O43 - CFD: 2012/09/09 12:28:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free DVD Ripper Platinum O43 - CFD: 2014/06/06 05:17:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Opener O43 - CFD: 2013/01/01 12:37:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FUJIFILM O43 - CFD: 2012/03/01 19:03:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/10/23 06:01:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIF Viewer 4 O43 - CFD: 2014/12/28 09:27:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP O43 - CFD: 2015/01/11 07:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2013/10/30 18:53:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 2013/06/08 18:34:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2014/08/05 19:15:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/06/29 05:54:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2015/09/12 11:16:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Labtec O43 - CFD: 2015/09/06 16:59:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft O43 - CFD: 2013/04/28 12:58:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com O43 - CFD: 2013/02/09 20:34:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX O43 - CFD: 2009/07/14 06:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/10/22 19:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2013/09/14 08:21:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application O43 - CFD: 2012/11/18 11:46:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/10/22 06:06:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/04/26 18:39:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix O43 - CFD: 2012/08/12 21:29:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Monkey's Audio O43 - CFD: 2015/09/13 19:35:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPlayCity.com O43 - CFD: 2013/05/29 19:29:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments O43 - CFD: 2013/12/25 21:02:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ovt O43 - CFD: 2013/08/22 12:27:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free Audio Extractor O43 - CFD: 2013/04/28 12:20:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free MP4 to AVI Converter O43 - CFD: 2013/02/04 20:42:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 2013/02/04 20:33:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 2013/12/27 18:30:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programmes de vidéo O43 - CFD: 2013/12/25 10:50:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2012/03/08 20:23:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quintessential Player O43 - CFD: 2012/10/01 18:46:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REAPER O43 - CFD: 2012/07/29 18:45:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\scrabbleproB1.1 O43 - CFD: 2012/10/02 17:22:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Semenier O43 - CFD: 2012/03/06 19:05:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR O43 - CFD: 2015/10/23 15:09:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShadowExplorer O43 - CFD: 2015/05/16 14:53:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2012/03/09 20:41:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 2015/06/28 07:34:15 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2013/08/23 18:56:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2009/07/14 11:00:32 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2012/03/01 23:27:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy O43 - CFD: 2012/05/19 15:43:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Motorcross O43 - CFD: 2015/06/15 18:37:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2014/06/01 17:25:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtualDub O43 - CFD: 2015/04/26 17:42:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtualDubMOD O43 - CFD: 2015/04/26 18:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VobSub O43 - CFD: 2012/03/01 22:11:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2013/07/31 17:53:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org O43 - CFD: 2015/04/26 18:02:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid O43 - CFD: 2012/08/25 19:22:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZapWallPaper O43 - CFD: 2014/12/21 11:21:50 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zedeo O43 - CFD: 2015/10/22 12:40:55 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2013/01/01 12:35:16 - [] D -- C:\ProgramData\Apple O43 - CFD: 2013/12/25 10:49:51 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2013/12/27 09:13:11 - [] D -- C:\ProgramData\ArcSoft O43 - CFD: 2012/03/01 22:18:22 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/10/22 12:41:09 - [] D -- C:\ProgramData\Avira O43 - CFD: 2014/03/20 20:27:59 - [] D -- C:\ProgramData\BllocakTheeAddS =>PUP.Optional.Multiplug O43 - CFD: 2015/06/16 19:20:51 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 2012/03/01 19:44:33 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/10/22 12:41:33 - [] D -- C:\ProgramData\Cakewalk O43 - CFD: 2013/02/09 20:16:17 - [] D -- C:\ProgramData\Celemony Software GmbH O43 - CFD: 2013/01/16 07:09:25 - [] D -- C:\ProgramData\Cloud Software LTD O43 - CFD: 2013/02/03 20:59:03 - [] D -- C:\ProgramData\Corel O43 - CFD: 2014/01/08 23:39:16 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/10/22 12:41:33 - [] D -- C:\ProgramData\DivX O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2012/03/01 19:44:33 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/10/22 12:41:41 - [] D -- C:\ProgramData\FUJIFILM O43 - CFD: 2014/02/01 20:26:45 - [] D -- C:\ProgramData\giigfnihkdaahpincfpaghcdhobpjool O43 - CFD: 2014/06/14 09:19:23 - [] D -- C:\ProgramData\Google O43 - CFD: 2012/03/08 19:54:09 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 2015/10/22 12:42:03 - [] D -- C:\ProgramData\HP O43 - CFD: 2013/06/08 18:31:59 - [] D -- C:\ProgramData\HP Product Assistant O43 - CFD: 2013/05/29 19:27:59 - [] D -- C:\ProgramData\Identities O43 - CFD: 2015/10/22 12:42:03 - [] D -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma O43 - CFD: 2015/10/22 12:42:08 - [] D -- C:\ProgramData\Lavasoft O43 - CFD: 2015/10/22 12:42:09 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 2015/10/22 12:42:39 - [] D -- C:\ProgramData\MAGIX O43 - CFD: 2015/10/22 19:02:34 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2012/04/18 17:17:04 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2012/03/01 19:44:33 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/10/22 12:42:40 - [] D -- C:\ProgramData\Micro Application O43 - CFD: 2015/10/22 12:42:52 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/08/13 11:12:40 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2012/03/01 19:44:33 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/06/14 11:47:31 - [] D -- C:\ProgramData\Movavi O43 - CFD: 2015/06/14 11:47:15 - [] D -- C:\ProgramData\Movavi Video Converter 15 O43 - CFD: 2012/05/05 10:09:56 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/02/03 18:31:43 - [] D -- C:\ProgramData\NCH Software O43 - CFD: 2012/04/27 06:04:02 - [] D -- C:\ProgramData\NCH Swift Sound O43 - CFD: 2015/10/22 12:42:52 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2014/08/05 19:16:18 - [0] D -- C:\ProgramData\Oracle O43 - CFD: 2015/10/02 18:02:55 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/10/22 16:27:41 - [] D -- C:\ProgramData\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2013/02/03 19:48:49 - [] D -- C:\ProgramData\Protexis O43 - CFD: 2012/04/15 17:17:19 - [0] D -- C:\ProgramData\Ript O43 - CFD: 2015/05/16 14:53:40 - [] D -- C:\ProgramData\Skype O43 - CFD: 2012/03/09 20:41:22 - [] D -- C:\ProgramData\Sony O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/04/10 17:08:33 - [] D -- C:\ProgramData\Sun O43 - CFD: 2015/10/23 14:48:04 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2013/06/08 18:47:24 - [] D -- C:\ProgramData\WEBREG O43 - CFD: 2012/08/25 19:22:32 - [0] D -- C:\ProgramData\ZapWallPaper O43 - CFD: 2015/06/16 19:25:51 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2013/02/04 20:59:21 - [] D -- C:\Program Files\Common Files\Adobe AIR O43 - CFD: 2013/01/01 12:35:23 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 2013/12/25 20:56:50 - [] D -- C:\Program Files\Common Files\ArcSoft O43 - CFD: 2013/02/09 20:15:09 - [] D -- C:\Program Files\Common Files\Celemony O43 - CFD: 2014/08/01 13:21:35 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2013/05/29 19:29:02 - [] D -- C:\Program Files\Common Files\Digidesign O43 - CFD: 2013/05/21 19:17:09 - [] D -- C:\Program Files\Common Files\DigitalSoundPlanet O43 - CFD: 2012/11/25 12:52:29 - [] D -- C:\Program Files\Common Files\DivX Shared O43 - CFD: 2013/06/08 11:27:52 - [] D -- C:\Program Files\Common Files\Hewlett-Packard O43 - CFD: 2013/06/08 18:30:40 - [] D -- C:\Program Files\Common Files\HP O43 - CFD: 2013/12/25 20:56:02 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 2014/08/05 19:16:15 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2015/09/12 11:16:53 - [] D -- C:\Program Files\Common Files\LogiShrd O43 - CFD: 2013/02/09 20:34:14 - [] D -- C:\Program Files\Common Files\MAGIX Services O43 - CFD: 2012/08/05 19:27:06 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2013/05/29 19:29:08 - [] D -- C:\Program Files\Common Files\Native Instruments O43 - CFD: 2015/10/22 16:27:39 - [] D -- C:\Program Files\Common Files\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2013/02/09 20:15:30 - [] D -- C:\Program Files\Common Files\Propellerhead Software O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2015/05/16 14:53:44 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 2015/01/24 19:40:11 - [] D -- C:\Program Files\Common Files\snp2uvc O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2013/08/23 18:56:13 - [] D -- C:\Program Files\Common Files\Steam O43 - CFD: 2012/03/01 22:35:32 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2013/02/09 20:15:29 - [] D -- C:\Program Files\Common Files\VST3 O43 - CFD: 2012/08/05 19:25:31 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 2015/10/22 12:44:45 - [] D -- C:\Users\Julio\AppData\Roaming\Adobe O43 - CFD: 2015/10/22 12:44:48 - [] D -- C:\Users\Julio\AppData\Roaming\Anvsoft O43 - CFD: 2013/02/10 12:01:21 - [] D -- C:\Users\Julio\AppData\Roaming\Apowersoft O43 - CFD: 2013/12/26 11:53:46 - [] D -- C:\Users\Julio\AppData\Roaming\Apple Computer O43 - CFD: 2015/10/22 12:44:49 - [] D -- C:\Users\Julio\AppData\Roaming\ArcSoft O43 - CFD: 2012/03/01 22:18:22 - [] D -- C:\Users\Julio\AppData\Roaming\ATI O43 - CFD: 2015/10/17 14:36:07 - [] D -- C:\Users\Julio\AppData\Roaming\Audacity O43 - CFD: 2015/04/26 18:21:41 - [] D -- C:\Users\Julio\AppData\Roaming\AVI ReComp O43 - CFD: 2015/10/22 12:44:49 - [] D -- C:\Users\Julio\AppData\Roaming\avidemux O43 - CFD: 2015/04/07 18:12:55 - [] D -- C:\Users\Julio\AppData\Roaming\Avira O43 - CFD: 2013/10/23 18:47:12 - [] D -- C:\Users\Julio\AppData\Roaming\Balabolka O43 - CFD: 2015/10/22 12:45:05 - [] D -- C:\Users\Julio\AppData\Roaming\Cakewalk O43 - CFD: 2013/12/21 20:06:17 - [] D -- C:\Users\Julio\AppData\Roaming\Celemony Software GmbH O43 - CFD: 2015/10/22 12:45:05 - [] D -- C:\Users\Julio\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant O43 - CFD: 2015/10/22 12:45:26 - [] D -- C:\Users\Julio\AppData\Roaming\Corel O43 - CFD: 2015/10/22 12:45:29 - [] D -- C:\Users\Julio\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 2015/10/22 12:45:29 - [] D -- C:\Users\Julio\AppData\Roaming\Dexpot O43 - CFD: 2012/11/25 12:53:37 - [] D -- C:\Users\Julio\AppData\Roaming\DivX O43 - CFD: 2015/10/22 16:28:57 - [] D -- C:\Users\Julio\AppData\Roaming\DriverCure =>PUP.Optional.Paretologic O43 - CFD: 2014/04/11 09:22:16 - [] D -- C:\Users\Julio\AppData\Roaming\dvdae O43 - CFD: 2015/08/22 19:29:55 - [] D -- C:\Users\Julio\AppData\Roaming\dvdcss O43 - CFD: 2015/10/23 12:56:23 - [] D -- C:\Users\Julio\AppData\Roaming\Enigma Software Group =>.Superfluous.SpyHunter O43 - CFD: 2012/09/09 12:28:58 - [] D -- C:\Users\Julio\AppData\Roaming\Free DVD Ripper Platinum O43 - CFD: 2012/03/20 20:45:35 - [] D -- C:\Users\Julio\AppData\Roaming\GetRightToGo O43 - CFD: 2014/06/14 12:07:38 - [] D -- C:\Users\Julio\AppData\Roaming\Google O43 - CFD: 2015/01/10 13:36:40 - [] D -- C:\Users\Julio\AppData\Roaming\gtk-2.0 O43 - CFD: 2015/10/22 12:45:30 - [] D -- C:\Users\Julio\AppData\Roaming\HP O43 - CFD: 2012/03/01 19:44:55 - [] D -- C:\Users\Julio\AppData\Roaming\Identities O43 - CFD: 2015/01/24 19:30:35 - [] D -- C:\Users\Julio\AppData\Roaming\InstallShield O43 - CFD: 2015/10/22 12:45:30 - [] D -- C:\Users\Julio\AppData\Roaming\Lavasoft O43 - CFD: 2014/05/16 19:36:41 - [] D -- C:\Users\Julio\AppData\Roaming\LavasoftStatistics O43 - CFD: 2012/03/01 21:46:16 - [] D -- C:\Users\Julio\AppData\Roaming\Macromedia O43 - CFD: 2013/02/11 13:21:52 - [] D -- C:\Users\Julio\AppData\Roaming\MAGIX O43 - CFD: 2009/07/14 11:00:32 - [0] D -- C:\Users\Julio\AppData\Roaming\Media Center Programs O43 - CFD: 2015/10/22 12:45:48 - [] SD -- C:\Users\Julio\AppData\Roaming\Microsoft O43 - CFD: 2015/04/26 18:40:48 - [0] D -- C:\Users\Julio\AppData\Roaming\mkvtoolnix O43 - CFD: 2015/10/22 12:45:49 - [] D -- C:\Users\Julio\AppData\Roaming\Mozilla O43 - CFD: 2013/01/28 20:51:10 - [] D -- C:\Users\Julio\AppData\Roaming\MusE O43 - CFD: 2015/10/22 12:45:51 - [] D -- C:\Users\Julio\AppData\Roaming\OpenOffice O43 - CFD: 2015/10/22 16:28:52 - [] D -- C:\Users\Julio\AppData\Roaming\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2013/02/04 20:43:36 - [] D -- C:\Users\Julio\AppData\Roaming\PhotoFiltre O43 - CFD: 2015/03/22 12:06:11 - [] D -- C:\Users\Julio\AppData\Roaming\Pirsum Services O43 - CFD: 2015/10/22 12:45:52 - [] D -- C:\Users\Julio\AppData\Roaming\Publish Providers O43 - CFD: 2015/10/22 12:46:00 - [] D -- C:\Users\Julio\AppData\Roaming\REAPER O43 - CFD: 2015/10/22 12:46:02 - [] D -- C:\Users\Julio\AppData\Roaming\Ript O43 - CFD: 2015/10/22 12:46:10 - [] D -- C:\Users\Julio\AppData\Roaming\Skype O43 - CFD: 2015/10/22 12:46:10 - [] D -- C:\Users\Julio\AppData\Roaming\Sony O43 - CFD: 2015/10/22 12:46:11 - [] D -- C:\Users\Julio\AppData\Roaming\Synthesia O43 - CFD: 2015/10/23 14:47:56 - [] D -- C:\Users\Julio\AppData\Roaming\TeraCopy O43 - CFD: 2015/10/22 12:46:13 - [] D -- C:\Users\Julio\AppData\Roaming\uTorrent O43 - CFD: 2015/10/23 07:49:32 - [] D -- C:\Users\Julio\AppData\Roaming\vlc O43 - CFD: 2012/03/01 22:12:11 - [] D -- C:\Users\Julio\AppData\Roaming\WinRAR O43 - CFD: 2015/10/23 14:09:05 - [] D -- C:\Users\Julio\AppData\Roaming\www.shadowexplorer.com O43 - CFD: 2015/09/14 17:52:42 - [0] D -- C:\Users\Julio\AppData\Roaming\Yahoo! O43 - CFD: 2015/10/23 15:55:11 - [] D -- C:\Users\Julio\AppData\Roaming\ZHP O43 - CFD: 2015/10/22 12:43:05 - [] D -- C:\Users\Julio\AppData\Local\Adobe O43 - CFD: 2013/01/01 12:35:17 - [] D -- C:\Users\Julio\AppData\Local\Apple O43 - CFD: 2013/06/01 19:06:40 - [] D -- C:\Users\Julio\AppData\Local\Apple Computer O43 - CFD: 2012/03/01 19:44:48 - [0] SHD -- C:\Users\Julio\AppData\Local\Application Data O43 - CFD: 2014/04/27 06:48:35 - [] D -- C:\Users\Julio\AppData\Local\Apps O43 - CFD: 2015/10/22 12:43:07 - [] D -- C:\Users\Julio\AppData\Local\ArcSoft O43 - CFD: 2012/03/01 22:18:22 - [] D -- C:\Users\Julio\AppData\Local\ATI O43 - CFD: 2013/08/22 14:27:01 - [] D -- C:\Users\Julio\AppData\Local\avgchrome O43 - CFD: 2013/04/13 19:39:24 - [0] D -- C:\Users\Julio\AppData\Local\CrashDumps O43 - CFD: 2014/04/27 06:48:50 - [0] D -- C:\Users\Julio\AppData\Local\Deployment O43 - CFD: 2015/10/22 10:52:16 - [] D -- C:\Users\Julio\AppData\Local\ElevatedDiagnostics O43 - CFD: 2014/08/02 12:49:27 - [] SHD -- C:\Users\Julio\AppData\Local\EmieSiteList O43 - CFD: 2014/08/02 12:49:27 - [] SHD -- C:\Users\Julio\AppData\Local\EmieUserList O43 - CFD: 2013/01/01 12:41:07 - [] D -- C:\Users\Julio\AppData\Local\FUJIFILM O43 - CFD: 2015/10/22 12:43:23 - [] D -- C:\Users\Julio\AppData\Local\Google O43 - CFD: 2012/03/01 19:44:48 - [0] SHD -- C:\Users\Julio\AppData\Local\Historique O43 - CFD: 2015/10/22 12:43:37 - [] D -- C:\Users\Julio\AppData\Local\HP O43 - CFD: 2014/01/10 19:27:33 - [] D -- C:\Users\Julio\AppData\Local\IsolatedStorage O43 - CFD: 2015/09/06 16:59:46 - [] D -- C:\Users\Julio\AppData\Local\Lavasoft O43 - CFD: 2015/10/22 12:43:41 - [] D -- C:\Users\Julio\AppData\Local\Micro Application O43 - CFD: 2015/10/23 14:33:12 - [] D -- C:\Users\Julio\AppData\Local\Microsoft O43 - CFD: 2013/08/17 20:02:57 - [] D -- C:\Users\Julio\AppData\Local\Microsoft Games O43 - CFD: 2012/03/04 15:36:01 - [0] D -- C:\Users\Julio\AppData\Local\Microsoft Help O43 - CFD: 2013/04/26 14:24:39 - [] D -- C:\Users\Julio\AppData\Local\Micro_Application O43 - CFD: 2015/06/14 11:48:33 - [] D -- C:\Users\Julio\AppData\Local\Movavi O43 - CFD: 2013/10/27 21:29:37 - [] D -- C:\Users\Julio\AppData\Local\Mozilla O43 - CFD: 2015/10/22 12:44:33 - [] D -- C:\Users\Julio\AppData\Local\mp3box O43 - CFD: 2013/01/28 20:51:09 - [] D -- C:\Users\Julio\AppData\Local\MusE O43 - CFD: 2012/03/06 19:05:43 - [] D -- C:\Users\Julio\AppData\Local\Neuf O43 - CFD: 2012/11/25 13:49:43 - [] D -- C:\Users\Julio\AppData\Local\Programs O43 - CFD: 2015/10/22 12:44:35 - [] D -- C:\Users\Julio\AppData\Local\Ript O43 - CFD: 2015/10/22 12:44:36 - [] D -- C:\Users\Julio\AppData\Local\Skype O43 - CFD: 2012/03/09 20:44:42 - [] D -- C:\Users\Julio\AppData\Local\Sony O43 - CFD: 2014/10/23 06:02:36 - [] D -- C:\Users\Julio\AppData\Local\Stefan_Wobbe O43 - CFD: 2015/10/23 15:54:45 - [] D -- C:\Users\Julio\AppData\Local\Temp O43 - CFD: 2012/03/01 19:44:48 - [0] SHD -- C:\Users\Julio\AppData\Local\Temporary Internet Files O43 - CFD: 2012/03/01 19:44:49 - [0] D -- C:\Users\Julio\AppData\Local\VirtualStore O43 - CFD: 2014/08/11 12:23:21 - [] D -- C:\Users\Julio\AppData\Local\Windows Live O43 - CFD: 2015/10/11 12:45:36 - [0] D -- C:\Users\Julio\AppData\Local\WMTools Downloaded Files O43 - CFD: 2015/10/23 14:11:53 - [] D -- C:\Users\Julio\AppData\Local\www.shadowexplorer.com O43 - CFD: 2012/08/09 18:04:49 - [0] D -- C:\Users\Julio\AppData\Local\{0805C7E2-B2E4-42BE-BAC6-6EE124E409C4} O43 - CFD: 2012/08/05 19:36:59 - [0] D -- C:\Users\Julio\AppData\Local\{171F969F-2FF6-4554-8A58-CC2F8F4E0194} O43 - CFD: 2012/08/05 19:36:23 - [0] D -- C:\Users\Julio\AppData\Local\{17F829F9-8BE7-4129-9191-54AFA8BD5AC2} O43 - CFD: 2014/01/02 20:17:23 - [0] D -- C:\Users\Julio\AppData\Local\{297CD70C-B9EA-4833-91C2-28386B989821} O43 - CFD: 2015/10/23 07:51:33 - [0] D -- C:\Users\Julio\AppData\Local\{2FC93E46-64A7-45CA-880B-8F5FE05B7809} O43 - CFD: 2013/08/08 19:21:41 - [0] D -- C:\Users\Julio\AppData\Local\{4DDA56BA-7328-4EA8-BC94-4714BB710F77} O43 - CFD: 2015/10/22 11:19:04 - [0] D -- C:\Users\Julio\AppData\Local\{59C7267D-0864-44C3-BB3D-ADCFAF91206F} O43 - CFD: 2014/10/23 05:57:04 - [0] D -- C:\Users\Julio\AppData\Local\{607F1286-DA4C-4657-8548-FDB5E7EA166C} O43 - CFD: 2012/08/09 18:04:47 - [0] D -- C:\Users\Julio\AppData\Local\{64918F83-8182-45E7-85E3-188BC646E66F} O43 - CFD: 2012/08/09 18:04:58 - [0] D -- C:\Users\Julio\AppData\Local\{9A9B5D8A-E01F-4BAC-9351-1132064B44A2} O43 - CFD: 2015/09/06 19:14:48 - [0] D -- C:\Users\Julio\AppData\Local\{B3877181-1E3A-4906-9863-1A73E6E6D593} O43 - CFD: 2014/06/13 18:44:23 - [0] D -- C:\Users\Julio\AppData\Local\{C52AF274-CED5-44AD-885F-4B847BE4FDFA} O43 - CFD: 2012/08/07 16:13:58 - [0] D -- C:\Users\Julio\AppData\Local\{CA7A0A31-C56A-49E1-9784-1745F847492A} O43 - CFD: 2014/06/22 19:03:46 - [0] D -- C:\Users\Julio\AppData\Local\{D0F156CA-DE8C-4E11-86A4-D79C4434F49F} O43 - CFD: 2012/08/07 16:13:47 - [0] D -- C:\Users\Julio\AppData\Local\{F8F22A6D-6A3C-4651-A4A6-BBDF232D8AD6} O43 - CFD: 2015/10/11 12:58:48 - [0] D -- C:\Users\Julio\AppData\Local\{F91CF77E-8435-412B-9435-0F5C0EE09A25} O43 - CFD: 2012/05/18 10:06:12 - [] RD -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2014/10/12 10:06:25 - [] RD -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/04/26 12:30:35 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5 O43 - CFD: 2013/10/23 18:47:13 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Balabolka O43 - CFD: 2014/08/11 19:24:43 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dexpot O43 - CFD: 2014/06/18 18:25:31 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 2013/10/30 18:53:50 - [0] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 2009/07/14 06:37:42 - [] RD -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2013/05/29 19:29:15 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments O43 - CFD: 2015/10/22 16:28:05 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2013/02/04 20:42:30 - [0] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 2012/03/08 20:23:16 - [0] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quintessential Player O43 - CFD: 2015/10/23 12:20:56 - [] RD -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/01/21 19:00:47 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 2012/03/01 22:11:26 - [] D -- C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 9s O45 - LFCP:[MD5.8459A608A392DE815D3BF7866EC84A68] 2015/10/22 19:58:15 A -- C:\Windows\Prefetch\LAVASOFT.SEARCHPROTECT.WINSER-DD888CBE.pf =>PUP.Optional.SearchProtect O45 - LFCP:[MD5.5C9160E8DF249A705C9155FC1CFFA249] 2015/10/22 16:26:46 A -- C:\Windows\Prefetch\PARETOLOGIC PC HEALTH ADVISOR-2EBF4921.pf =>PUP.Optional.Paretologic O45 - LFCP:[MD5.D5C31FA0402F1356FE28D567874DC9AD] 2015/10/22 16:26:51 A -- C:\Windows\Prefetch\PARETOLOGIC PC HEALTH ADVISOR-DA6DF7E3.pf =>PUP.Optional.Paretologic ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © ---\\ Enumération des clés StartupReg (3) - 1s O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe © O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- C:\Program Files\Steam\Steam.exe © O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Julio\AppData\Roaming\uTorrent\uTorrent.exe ---\\ Liste des pilotes du système (89) - 9s O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] © O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] © O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] © O58 - SDL:2006/11/10 16:05:00 A . (.Arcsoft, Inc. - Arcsoft(R) ASPI Shell.) -- C:\Windows\System32\drivers\afc.sys [18688] © O58 - SDL:2009/07/14 00:13:48 A . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\System32\drivers\AGRSM.sys [1035776] © O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] © O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] © O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] © O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] © O58 - SDL:2012/10/08 20:53:56 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [26080] © O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] © O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] © O58 - SDL:2010/05/07 15:55:30 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athr.sys [1269248] © O58 - SDL:2011/12/05 21:47:16 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW73.sys [86032] © O58 - SDL:2011/12/06 05:44:22 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [9067008] © O58 - SDL:2011/12/06 04:11:50 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [264192] © O58 - SDL:2014/10/19 10:45:35 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [83872] O58 - SDL:2015/09/01 17:26:40 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [108448] © O58 - SDL:2015/09/01 17:26:40 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [136728] © O58 - SDL:2015/05/19 18:25:02 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [37896] © O58 - SDL:2015/03/10 20:27:57 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [37896] © O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] © O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] © O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] © O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] © O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] © O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] © O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] © O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] © O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] © O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] © O58 - SDL:2013/05/29 17:16:06 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [242240] © O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] © O58 - SDL:2015/10/23 12:53:51 A . (...) -- C:\Windows\System32\drivers\EsgScanner.sys [19984] O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] © O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] © O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] © O58 - SDL:2011/11/29 20:30:40 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [470808] © O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] © O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] © O58 - SDL:2011/10/25 18:25:50 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\Windows\System32\drivers\k57nd60x.sys [361000] © O58 - SDL:2014/10/19 10:45:35 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [25888] O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] © O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] © O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] © O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] © O58 - SDL:2007/03/06 17:50:30 A . (...) -- C:\Windows\System32\drivers\Lvckap.sys [1669664] O58 - SDL:2007/03/06 17:52:46 A . (.Labtec Inc. - Logitech Machine Vision Engine Loader.) -- C:\Windows\System32\drivers\LVMVdrv.sys [2261792] © O58 - SDL:2015/10/05 09:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] © O58 - SDL:2015/10/05 09:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] © O58 - SDL:2015/10/23 13:00:10 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] © O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] © O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] © O58 - SDL:2015/10/05 09:50:16 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] © O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] © O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] © O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] © O58 - SDL:2002/12/24 13:52:40 A . (.OrangeWare Corporation - USB 2.0 Hub Driver.) -- C:\Windows\System32\drivers\ousb2hub.sys [54016] O58 - SDL:2002/12/24 13:52:40 A . (.OrangeWare Corporation - USB 2.0 Enhanced Host Controller Driver.) -- C:\Windows\System32\drivers\ousbehci.sys [39040] O58 - SDL:2006/07/31 14:44:00 A . (.Omnivision Technologies, Inc. - Stream Class Mini Driver.) -- C:\Windows\System32\drivers\ov550i.sys [580992] © O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] © O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] © O58 - SDL:2011/12/13 19:27:30 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3921448] © O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] © O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] © O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] © O58 - SDL:2007/05/09 16:16:40 A . (.Copyright 2004-2007 - USBCAMD for Sonix UVC.) -- C:\Windows\System32\drivers\sncduvc.sys [28160] O58 - SDL:2007/10/01 15:59:46 A . (.Copyright 2004-2007 - UVC Camera Streaming Driver.) -- C:\Windows\System32\drivers\snp2uvc.sys [1769984] O58 - SDL:2015/06/19 19:17:41 A . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- C:\Windows\System32\drivers\ssmdrv.sys [31848] © O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] © O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] © O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] © O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] O58 - SDL:2007/05/09 16:16:40 A . (.Copyright 2004-2007 - USBCAMD for Sonix UVC.) -- C:\Windows\System32\sncduvc.sys [28160] O58 - SDL:2007/10/01 15:59:46 A . (.Copyright 2004-2007 - UVC Camera Streaming Driver.) -- C:\Windows\System32\snp2uvc.sys [1769984] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (9) - 18s O61 - LFC: 2015/10/22 16:25:29 A . (.ParetoLogic Inc..) -- C:\Users\Julio\Downloads\ParetoLogic PC Health Advisor_fr.exe [5817064] =>PUP.Optional.Paretologic O61 - LFC: 2015/10/23 12:53:10 A . (.Enigma Software Group USA, LLC..) -- C:\Users\Julio\Downloads\SpyHunter-Installer.exe [3237248] =>.Superfluous.SpyHunter O61 - LFC: 2015/10/22 06:19:17 A . (.BitTorrent Inc..) -- C:\Users\Julio\AppData\Roaming\uTorrent\uTorrent.exe [1822048] O61 - LFC: 2015/10/22 06:19:17 A . (.BitTorrent Inc..) -- C:\Users\Julio\AppData\Roaming\uTorrent\updates\3.4.5_41202.exe [1822048] O61 - LFC: 2015/10/22 08:48:44 A . (.BitTorrent Inc..) -- C:\Users\Julio\AppData\Roaming\uTorrent\updates\3.4.5_41202\utorrentie.exe [336896] O61 - LFC: 2015/10/23 12:53:10 A . (.Enigma Software Group USA, LLC..) -- C:\Users\Julio\AppData\Roaming\Enigma Software Group\sh_installer.exe [3237248] =>.Superfluous.SpyHunter O61 - LFC: 2015/10/23 07:51:47 A . (..) -- C:\Users\Julio\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [334961] O61 - LFC: 2015/10/22 06:06:35 A . (..) -- C:\Users\Julio\AppData\Local\Microsoft\DefaultSetup\sqlite3.dll [362029] O61 - LFC: 2015/10/23 12:48:10 A . (..) -- C:\Users\Julio\AppData\Local\ATI\ACE\Manifest.Bin [30122] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (1) - 1s O69 - SBI: SearchScopes [HKCU] {3A754A05-F2DE-4476-BB97-BBBC40C5563B} [DefaultScope] - (Google) - http://www.google.com/ ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [521216] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] © ---\\ Liste des exceptions du parefeu Windows (20) - 4s O87 - FAEL: "TCP Query User{C44A67BA-EC33-4DB6-B323-7D7A2F9D491F}C:\windows\kmsemulator.exe" [In-None-P6-TRUE] .(...) -- C:\windows\kmsemulator.exe =>HackTool.AutoKMS O87 - FAEL: "UDP Query User{34EEFCA0-4D73-4013-8862-E3F433535776}C:\windows\kmsemulator.exe" [In-None-P17-TRUE] .(...) -- C:\windows\kmsemulator.exe =>HackTool.AutoKMS O87 - FAEL: "{EB83AE4E-335A-4B61-8691-EB590FB8687C}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Julio\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{56C4EADB-C84C-44B4-B85A-F278EF44FBC4}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Julio\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{3397AEF8-49BA-4588-A563-2B6BFCF91AFB}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Julio\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{9CB5DBE7-1DFA-4F25-979A-C143976E9640}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Julio\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{E68842C1-E53E-429C-8437-679A19AA51A0}" [In-None-P6-TRUE] .(...) -- C:\Users\Julio\AppData\Local\iLivid\iLivid.exe (.not file.) =>PUP.Optional.Bandoo O87 - FAEL: "{ABC2988F-B1B4-4312-8EE2-D118D4D0C15D}" [In-None-P17-TRUE] .(...) -- C:\Users\Julio\AppData\Local\iLivid\iLivid.exe (.not file.) =>PUP.Optional.Bandoo O87 - FAEL: "{6C812F2D-93A0-406D-AA66-496B55C536C9}" [In-None-P6-TRUE] .(...) -- C:\Users\Julio\Downloads\Driver_Cam_Acer_Aspire_One_downloader.exe (.not file.) O87 - FAEL: "{6CAC5CD1-47E0-4215-827B-763D122F4EB6}" [In-None-P17-TRUE] .(...) -- C:\Users\Julio\Downloads\Driver_Cam_Acer_Aspire_One_downloader.exe (.not file.) O87 - FAEL: "{8200970D-B0E7-4C5A-AF9C-3FE42BEB0212}" [In-None-P6-TRUE] .(...) -- C:\Program Files\SmileFiles\SmileFiles.exe (.not file.) =>PUP.Optional.SmileFiles O87 - FAEL: "{E7AF9EA2-3CD7-4ADB-81B1-FCE6043D169B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\SmileFiles\SmileFiles.exe (.not file.) =>PUP.Optional.SmileFiles O87 - FAEL: "{B14ACD10-E3A7-4C1B-A281-C49184FBA472}" [In-None-P6-TRUE] .(...) -- C:\Program Files\SmileFiles\downloader.exe (.not file.) =>PUP.Optional.SmileFiles O87 - FAEL: "{813CB14E-F35E-4A59-93A0-4A4029028C31}" [In-None-P17-TRUE] .(...) -- C:\Program Files\SmileFiles\downloader.exe (.not file.) =>PUP.Optional.SmileFiles O87 - FAEL: "{A1B3474C-E2DD-46A9-954B-B62A94B7F65C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\mystarttb\ToolbarCleaner.exe (.not file.) =>PUP.Optional.StartSearch O87 - FAEL: "{63E35C5F-9B68-428D-926F-9C708F5FE556}" [In-None-P17-TRUE] .(...) -- C:\Program Files\mystarttb\ToolbarCleaner.exe (.not file.) =>PUP.Optional.StartSearch O87 - FAEL: "{288E77E2-2ABC-477B-9A87-50BCA9D1F898}" [In-None-P6-TRUE] .(...) -- C:\Program Files\adslTV\adsltv.exe (.not file.) O87 - FAEL: "{250D36F3-E28B-44BC-9C61-5ED0B9237182}" [In-None-P17-TRUE] .(...) -- C:\Program Files\adslTV\adsltv.exe (.not file.) O87 - FAEL: "{5CCC85F7-3014-4712-A2DF-54E921483D79}" [In-None-P6-TRUE] .(...) -- C:\Program Files\adslTV\VLC\vlc.exe (.not file.) O87 - FAEL: "{955805B7-A4E4-4D7D-B91F-4DAEC43E968A}" [In-None-P17-TRUE] .(...) -- C:\Program Files\adslTV\VLC\vlc.exe (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (24) - 34s SR - Auto [2010/03/18 12:19:26] [ 113152] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe © SR - Auto [2011/06/06 13:55:28] [ 64952] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/10/17 10:35:16] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2011/12/06 05:11:44] [ 163328] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe © SS - Auto [2015/09/01 17:25:46] [ 887128] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe © SR - Auto [2015/09/01 17:26:32] [ 461672] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe © SR - Auto [2015/09/01 17:25:43] [ 461672] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe © SS - Auto [2015/09/01 17:25:54] [ 1212048] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe © SR - Auto [2015/09/10 09:19:44] [ 240872] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe © SS - Auto [2014/04/27 06:48:52] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe © SS - Demand [2014/04/27 06:48:52] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe © SS - Demand [2014/06/14 09:19:21] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe © SS - Demand [2004/10/22 03:24:18] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe © SR - Auto [2015/09/06 16:59:24] [ 2751760] LavasoftTcpService (LavasoftTcpService) . (.Lavasoft Limited.) - C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe © SS - Auto [2007/03/06 17:55:24] [ 105248] LVSrvLauncher (LVSrvLauncher) . (.Labtec Inc..) - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe © SR - Auto [2013/04/22 09:55:08] [ 754000] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © SR - Auto [2015/10/05 09:48:44] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe © SR - Auto [2015/10/05 09:48:46] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe © SR - Auto [2015/09/06 16:59:24] [ 16656] IE Search Set (SearchProtectionService) . (.Copyright © 2014.) - C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe SR - Auto [2013/01/02 17:49:24] [ 9216] ShadowExplorer Service (sesvc) . (.www.shadowexplorer.com.) - C:\Program Files\ShadowExplorer\sesvc.exe © SS - Auto [2015/02/18 20:11:32] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe © SR - Auto [2015/10/23 12:53:40] [ 771968] SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC..) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe =>.Superfluous.SpyHunter SS - Demand [2011/03/16 10:42:06] [ 407336] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files\Common Files\Steam\SteamService.exe © ---\\ Scan Additionnel (31) - 0s C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe =>PUP.Optional.Paretologic C:\Program Files\ParetoLogic\PCHA\PCHA.exe =>PUP.Optional.Paretologic C:\Windows\Tasks\AutoKMS.job =>HackTool.AutoKMS C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job =>PUP.Optional.Paretologic C:\Windows\Tasks\ParetoLogic Update Version3.job =>PUP.Optional.Paretologic C:\Windows\Tasks\PC Health Advisor Defrag.job =>PUP.Optional.Paretologic C:\Windows\Tasks\PC Health Advisor.job =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\Windows\System32\Tasks\ParetoLogic Update Version3 =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\PC Health Advisor =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\PC Health Advisor Defrag =>PUP.Optional.Paretologic HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3CBF3EBB-235D-4c29-A68B-2BB1F428586E} =>PUP.Optional.Paretologic HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{bf0dab61-de32-41ef-80b3-2e789ea014f9} =>PUP.Optional.SmartBar HKLM\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKLM\SOFTWARE\TENCENT =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\D0AD5A6335714B5B3A801C296859A3D6 =>PUP.Optional.CrossRider HKCU\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic C:\Program Files\ParetoLogic =>PUP.Optional.Paretologic C:\ProgramData\BllocakTheeAddS =>PUP.Optional.Multiplug C:\ProgramData\InstallMate =>PUP.Optional.Tarma C:\ProgramData\ParetoLogic =>PUP.Optional.Paretologic C:\Program Files\Common Files\ParetoLogic =>PUP.Optional.Paretologic C:\Users\Julio\AppData\Roaming\DriverCure =>PUP.Optional.Paretologic C:\Users\Julio\AppData\Roaming\ParetoLogic =>PUP.Optional.Paretologic C:\Users\Julio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic =>PUP.Optional.Paretologic C:\Windows\Prefetch\LAVASOFT.SEARCHPROTECT.WINSER-DD888CBE.pf =>PUP.Optional.SearchProtect C:\Windows\Prefetch\PARETOLOGIC PC HEALTH ADVISOR-2EBF4921.pf =>PUP.Optional.Paretologic C:\Windows\Prefetch\PARETOLOGIC PC HEALTH ADVISOR-DA6DF7E3.pf =>PUP.Optional.Paretologic C:\Users\Julio\Downloads\ParetoLogic PC Health Advisor_fr.exe =>PUP.Optional.Paretologic C:\windows\kmsemulator.exe =>HackTool.AutoKMS ---\\ Récapitulatif des éléments trouvées sur votre station (11) - 0s http://www.nicolascoolman.fr/blog =>PUP.Optional.Paretologic http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/adware-bandoo/ =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/blog =>PUP.Optional.SmileFiles http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch ~ End of the scan, 41129 items in 182 seconds (1256)(0)()