~ ZHPDiag v2016.1.25.20 Par Nicolas Coolman (2016/01/25) ~ Démarré par zizou (Administrator) (2016/01/26 19:15:52) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\zizou\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\zizou\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (1) - 1s MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (5) - 16s Microsoft Security Client v4.3.0216.0 Microsoft Security Essentials v4.3.216.0 Avast Free Antivirus v10.2.2218 Norton Internet Security v17.9.0.12 Windows Defender W7 (Deactivate) ---\\ Surveillance de Logiciels (2) - 18s Adobe Flash Player 16 NPAPI Adobe Reader X ---\\ Logiciels de partage P2P (1) - 19s µTorrent v3.0.0 ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3072.952 MB (36% free) System Restore: Activé (Enable) System drive C: has 172 GB () free of 292 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ZIZOU-PC ~ User Name: zizou ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 172 GB free of 292 GB (System) ~ Drive E: has GB free of 8 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 13/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 13/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.870ECFEBD41C7B8F9C6777748368D51F] - 13/06/2012 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [1392128] =>.Microsoft Corporation [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - 20/11/2010 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [390656] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.D5B031C308A409A0A576BFF4CF083D30] - 24/04/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [499200] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 13/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 13/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.A5D9106A73DC88564C825D317CAC68AC] - 26/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [158208] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.A2F74975097F52A00745F9637451FDD8] - 11/03/2011 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1659776] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 13/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 13/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (12) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Gateway\Gateway PowerSave Solution\ePowerSvc.exe =>.Acer Incorporated® O23 - Service: GRegService (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe =>.Acer Incorporated® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe =>.Intel Corporation® O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton Internet Security\Engine\17.9.0.12\ccsvchst.exe =>.Symantec Corporation® O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc. - Backup Manager Module.) - C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe =>.NewTech InfoSystems, Inc. O23 - Service: Updater Service (Updater Service) . (.Acer Group - Updater Service.) - C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe =>.Acer Incorporated® O23 - Service: VNC Server (winvnc) . (.TightVNC Group - TightVNC Win32 Server.) - C:\Program Files (x86)\TightVNC-Jaadu\WinVNC.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 45s SR - Auto [03/12/2014] [ 81088] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [01/03/2015] [ 267440] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [21/12/2012] [ 57008] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [27/05/2015] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® SR - Auto [30/08/2011] [ 462184] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [02/10/2009] [ 788000] Acer ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Gateway\Gateway PowerSave Solution\ePowerSvc.exe =>.Acer Incorporated® SS - Demand [30/09/2010] [ 246520] GameConsoleService (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe =>.WildTangent Inc® SR - Auto [28/08/2009] [ 1150496] GRegService (Greg_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe =>.Acer Incorporated® SS - Auto [25/02/2015] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [25/02/2015] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [04/06/2009] [ 354840] Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe =>.Intel Corporation® SR - Auto [03/08/2011] [ 126400] Norton Internet Security (NIS) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton Internet Security\Engine\17.9.0.12\ccsvchst.exe =>.Symantec Corporation® SR - Auto [08/03/2010] [ 250368] NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe =>.NewTech InfoSystems, Inc. SS - Demand [19/02/2010] [ 517096] Adobe SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated SR - Auto [28/01/2010] [ 243232] Updater Service (Updater Service) . (.Acer Group.) - C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe =>.Acer Incorporated® SR - Auto [05/01/2009] [ 589824] VNC Server (winvnc) . (.TightVNC Group.) - C:\Program Files (x86)\TightVNC-Jaadu\WinVNC.exe ---\\ Processus lancés (50) - 8s [MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1276] =>.AVAST Software a.s.® [MD5.4C72FDD915D62EAEF149BD9C73AB9CF4] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [81088] [PID.1920] =>.Adobe Systems, Incorporated® [MD5.4FE5C6D40664AE07BE5105874357D2ED] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [57008] [PID.1952] =>.Apple Inc.® [MD5.5AF1E9600E3FF841E522703A4993ED0C] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [186904] [PID.1992] =>.Intel Corporation® [MD5.8714701A58B5C31F54FED2A4A1D0FD5A] - (.VIA - VIA HD Audio App.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\viaaud.exe [563200] [PID.1088] =>.VIA [MD5.3B30F234512DB4EFDD0168928C61FC8E] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1842472] [PID.1284] =>.Synaptics Incorporated® [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.2068] =>.Apple Inc.® [MD5.0BBFE08ECCE8A209D07C3B68D63FC293] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [161304] [PID.2116] =>.Intel Corporation® [MD5.F2B2DFF1EB90B439128A0CFEA0CBB8E8] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Gateway\Gateway PowerSave Solution\ePowerSvc.exe [788000] [PID.2236] =>.Acer Incorporated® [MD5.2F16207A65B62001FC73E6798D0B8F2A] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [386584] [PID.2272] =>.Intel Corporation® [MD5.B69A01794D44C769C2575AE75E2EB31F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [415256] [PID.2320] =>.Intel Corporation® [MD5.816FD5A6F3C2F3D600900096632FC60E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe [1150496] [PID.2500] =>.Acer Incorporated® [MD5.B4187346F54E362DAFFE647B25A58D50] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton Internet Security\Engine\17.9.0.12\ccsvchst.exe [126400] [PID.2808] =>.Symantec Corporation® [MD5.5B3CE960C62DBE864BE9A0BD043A3E30] - (.NewTech Infosystems, Inc. - Backup Manager Module.) -- C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe [250368] [PID.460] =>.NewTech InfoSystems, Inc. [MD5.F9EC9ACD504D823D9B9CA98A4F8D3CA2] - (.Acer Group - Updater Service.) -- C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe [243232] [PID.2876] =>.Acer Incorporated® [MD5.F7CD284B600E278CABBA058189A3738A] - (.TightVNC Group - TightVNC Win32 Server.) -- C:\Program Files (x86)\TightVNC-Jaadu\WinVNC.exe [589824] [PID.472] [MD5.F2AD1B265908797F8A5E21E0312F2F25] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\zizou\AppData\Local\Akamai\netsession_win.exe [4691384] [PID.3252] =>.Akamai Technologies, Inc.® [MD5.8678D01138F3D5D1D7EFE0F7DB450272] - (.CleanMyPC Software - CleanMyPC Scheduler.) -- C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe [1403680] [PID.3316] {00B22D5ED33A336918E76BE3A5C6CB25F1} [MD5.944857043C1E198BD52C2D6F0A5F4B49] - (...) -- C:\Users\zizou\AppData\Roaming\ACEStream\engine\ace_engine.exe [27000] [PID.3368] {0098482CF6234AA973EFE82ED8EEFE5361} [MD5.F2AD1B265908797F8A5E21E0312F2F25] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\zizou\AppData\Local\Akamai\netsession_win.exe [4691384] [PID.3396] =>.Akamai Technologies, Inc.® [MD5.7E47C328FC4768CB8BEAFBCFAFA70362] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2286976] [PID.3464] =>.Microsoft Corporation® [MD5.43DFDE6570A948A178000348950B3546] - (...) -- C:\Users\zizou\AppData\Roaming\AceWebExtension\updater\ace_web_extension.exe [22824] [PID.3492] [MD5.7548066DF68A8A1A56B043359F915F37] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe [354840] [PID.3632] =>.Intel Corporation® [MD5.70A176BF2ED362862944C371838262F8] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [222592] [PID.3852] =>.Microsoft Corporation® [MD5.D295D184331C4B18A98CF3F2A7A9CE6E] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Gateway\Gateway PowerSave Solution\ePowerTray.exe [828448] [PID.3908] =>.Acer Incorporated® [MD5.9B6AEA1992775510CB9014AD6860D146] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\zizou\AppData\Roaming\Dropbox\bin\Dropbox.exe [24952456] [PID.3948] =>.Dropbox, Inc® [MD5.EBB4DD78A1165909FA207328BE5016D0] - (.NewTech Infosystems, Inc. - Gateway MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe [252928] [PID.4160] =>.NewTech InfoSystems, Inc. [MD5.F693C3F88CB9FCF12F5E50E4CD399333] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Gateway\Gateway PowerSave Solution\ePowerEvent.exe [467488] [PID.4372] =>.Acer Incorporated® [MD5.CFBC19B0A910D1D9FA8B846EB9F1DDEB] - (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe [1541472] [PID.4400] {3A1C56AA80ABA1A4C97C1AE60003232A} =>.Suyin [MD5.3ED5EA2AF018C67E0C15082560F6940C] - (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files (x86)\Druide\Antidote 7\Programmes32\agentantidote.exe [806080] [PID.4612] =>.Druide informatique inc.® [MD5.D4ED835AD20E037E513843A29E750A48] - (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files (x86)\Druide\Antidote 7\Programmes64\AgentAntidote64.exe [71360] [PID.4652] =>.Druide informatique inc.® [MD5.3E04F1E482357B1FC8B088197C3D9FF8] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152] [PID.5004] =>.Adobe Systems, Incorporated® [MD5.569E547273C25B019054A12A40400ECE] - (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [11318784] [PID.2248] =>.OpenOffice.org [MD5.8E53B67FA3816E854B07C5DC66E10730] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [296056] [PID.2308] =>.RealNetworks, Inc.® [MD5.BCB742E868592973406ACE3ADA97304F] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [121128] [PID.2112] =>.Synaptics Incorporated® [MD5.4B723F33D7331F20E06F3A2FD76EC1D5] - (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [11312128] [PID.4664] =>.OpenOffice.org [MD5.B4187346F54E362DAFFE647B25A58D50] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton Internet Security\Engine\17.9.0.12\ccsvchst.exe [126400] [PID.4116] =>.Symantec Corporation® [MD5.2B1A3B089D0D59786FB821B2638A7B45] - (...) -- C:\Program Files (x86)\Syncios\SynciosDeviceService.exe [723456] [PID.612] [MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496] [PID.3160] =>.AVAST Software a.s.® [MD5.1606CBD0193E93952CD4EACDC9229651] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744] [PID.2528] =>.Oracle America, Inc.® [MD5.28D65D179F0C3AF87F41B6B141E6D616] - (...) -- C:\Users\zizou\AppData\Roaming\ACEStream\updater\ace_update.exe [27000] [PID.4304] {0098482CF6234AA973EFE82ED8EEFE5361} [MD5.3429E299485DAA041082DB099D5367E8] - (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648] [PID.2300] =>.Adobe Systems Incorporated® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.6372] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.4580] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.8032] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.6280] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.7956] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.5552] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe [748360] [PID.4684] =>.Google Inc® [MD5.23A60D80D22DE6BDD3A41EF87CB197FD] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\zizou\AppData\Roaming\ZHP\ZHPDiag3.exe [2092544] [PID.3380] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://google.com G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [cgbhdenfmgbagncdmgbholejjpmmiank] Ratings Preview for YouTube™ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gkojfkhlekighikafcpjkiklfbnlmeio] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [kdfieneakcjfaiglcfcgkidlkmlijjnh] __MSG_application_title__ G2 - GCE: Preference [User Data\Default] [kldmnkfegbdiloemiolicnddbokfdcfl] The Matrix G2 - GCE: Preference [User Data\Default] [mjbepbhonbojpoaenhckjocchgfiaofo] Ace Stream Web Extension G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (13) - 5s M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\firefox.gingersoftware.com M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\firefox@gingersoftware.com M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\linkfilter@kaspersky.ru_bak2 P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.DEU P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\WMP Firefox Plugin License.rtf P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\WMP Firefox Plugin RelNotes.txt P2 - FPN: [HKCU] [@acestream.net/acestreamplugin,version=3.0.10] - (.Innovative Digital Technologies.) -- C:\Users\zizou\AppData\Roaming\ACEStream\player\npace_plugin.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@pages.tvunetworks.com/WebPlayer] - (.TVU networks.) -- C:\Program Files (x86)\TVUPlayer\npTVUAx.dll P2 - FPN: [HKLM] [@veetle.com/veetleCorePlugin,version=0.9.18] - (.Veetle Inc.) -- C:\Program Files (x86)\Veetle\plugins\npVeetle.dll P2 - FPN: [HKLM] [@veetle.com/veetlePlayerPlugin,version=0.9.18] - (.Veetle Inc.) -- C:\Program Files (x86)\Veetle\Player\npvlc.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (23) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKEY_USERS\S-1-5-21-4024933894-3679460772-3821898492-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com R3 - URLSearchHook: (no name) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} Orphean R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (2) - 0s 54.225 ~ Le fichier hôte est sain (The hosts file is clean) (45) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Ginger Grammar & Spell Checker [64Bits] - {0877c1fc-19c6-4fe2-8e3d-699d8edb2964} (Orphean) O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.® O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® ---\\ Internet Explorer, Barre d'outil (3) - 1s O3 - Toolbar: 0x9D6D4B41954A8D4EB5B1149DD2D93BB3 - [HKCU]{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} . (...) -- (.not file.) O3 - Toolbar: 0xEA3427472A242B42ADF883D1E48CC825 - [HKCU]{472734EA-242A-422B-ADF8-83D1E48CC825} . (...) -- (.not file.) O3 - Toolbar: 0xE5C42AEEB0B0C64E88A9BCA1A32AB107 - [HKCU]{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (54) - 4s O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe =>.Intel Corporation® O4 - HKLM\..\Run: [VIAAUD] . (.VIA - VIA HD Audio App.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\viaaud.exe =>.VIA O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [Acer ePower Management] . (.Acer Incorporated - ePowerTrayLauncher.) -- C:\Program Files\Gateway\Gateway PowerSave Solution\ePowerTrayLauncher.exe =>.Acer Incorporated® O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - Chargeur CTF.) -- C:\Windows\System32\ctfmon.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Adobe Acrobat Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 10.0.) -- C:\Program Files (x86)\Adobe\Acrobat\AdobeCollabSync.exe =>.Adobe Systems, Incorporated® O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\zizou\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc® O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\zizou\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.® O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\zizou\AppData\Local\Akamai\netsession_win.exe =>.Akamai Technologies, Inc.® O4 - HKCU\..\Run: [SwvUpdtr] C:\Users\zizou\AppData\Local\SwvUpdater\Updater.exe (.not file.) =>PUP.Optional.SoftwareUpdater O4 - HKCU\..\Run: [Tok-Cirrhatus] (Orphean) O4 - HKCU\..\Run: [Registry Cleaner Scheduler] . (.CleanMyPC Software - CleanMyPC Scheduler.) -- C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe {00B22D5ED33A336918E76BE3A5C6CB25F1} O4 - HKCU\..\Run: [AceStream] . (...) -- C:\Users\zizou\AppData\Roaming\ACEStream\engine\ace_engine.exe {0098482CF6234AA973EFE82ED8EEFE5361} O4 - HKCU\..\Run: [AceWebException] . (...) -- C:\Users\zizou\AppData\Roaming\AceWebExtension\updater\ace_web_extension.exe O4 - HKCU\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\zizou\AppData\Local\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® O4 - HKLM\..\Wow6432Node\Run: [BackupManagerTray] . (.NewTech Infosystems, Inc. - Gateway MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe =>.NewTech InfoSystems, Inc. O4 - HKLM\..\Wow6432Node\Run: [VideoWebCamera] . (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe {3A1C56AA80ABA1A4C97C1AE60003232A} =>.Suyin O4 - HKLM\..\Wow6432Node\Run: [agentantidote.exe] . (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files (x86)\Druide\Antidote 7\Programmes32\agentantidote.exe =>.Druide informatique inc.® O4 - HKLM\..\Wow6432Node\Run: [agentantidote64.exe] . (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files (x86)\Druide\Antidote 7\Programmes64\agentantidote64.exe =>.Druide informatique inc.® O4 - HKLM\..\Wow6432Node\Run: [AdobeCS5ServiceManager] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Adobe Acrobat Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Acrobat\Acrobat_sl.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe =>.RealNetworks, Inc.® O4 - HKLM\..\Wow6432Node\Run: [Smart File Advisor] . (.Filefacts.net - Smart File Advisor.) -- C:\Program Files (x86)\Smart File Advisor\sfa.exe {00F9BAEE6A0D352EEBA49E9B8D15A73F81} =>.Filefacts.net O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [Syncios device service] . (...) -- C:\Program Files (x86)\Syncios\SynciosDeviceService.exe O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.® O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe =>.Apple Inc. O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Wow6432Node\RunOnce: [20150107] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\Setup\emupdate\950fca84-7b40-423a-9887-d6f60d9645f5.exe =>.AVAST Software a.s.® O4 - HKUS\.DEFAULT\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>PUP.Optional.SearchProtect O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>PUP.Optional.SearchProtect O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [ctfmon.exe] . (.Microsoft Corporation - Chargeur CTF.) -- C:\Windows\System32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Adobe Acrobat Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 10.0.) -- C:\Program Files (x86)\Adobe\Acrobat\AdobeCollabSync.exe =>.Adobe Systems, Incorporated® O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\zizou\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc® O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\zizou\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.® O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\zizou\AppData\Local\Akamai\netsession_win.exe =>.Akamai Technologies, Inc.® O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [SwvUpdtr] C:\Users\zizou\AppData\Local\SwvUpdater\Updater.exe (.not file.) =>PUP.Optional.SoftwareUpdater O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Tok-Cirrhatus] (Orphean) O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Registry Cleaner Scheduler] . (.CleanMyPC Software - CleanMyPC Scheduler.) -- C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe {00B22D5ED33A336918E76BE3A5C6CB25F1} O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [AceStream] . (...) -- C:\Users\zizou\AppData\Roaming\ACEStream\engine\ace_engine.exe {0098482CF6234AA973EFE82ED8EEFE5361} O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [AceWebException] . (...) -- C:\Users\zizou\AppData\Roaming\AceWebExtension\updater\ace_web_extension.exe O4 - HKUS\S-1-5-21-4024933894-3679460772-3821898492-1001\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\zizou\AppData\Local\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® ---\\ Raccourcis Global Startup (37) - 15s O4 - GS\Desktop [Administrateur]: Ace Player.lnk . (.Innovative Digital Technologies - Ace Player HD.) C:\Users\zizou\AppData\Roaming\ACEStream\player\ace_player.exe {7B8B16B733B307A72B321208E296DE11} O4 - GS\Desktop [Administrateur]: CleanMyPC - Registry Cleaner.lnk . (.CleanMyPC Tools Software - CleanMyPC Registry Cleaner.) C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCleaner.exe {00B22D5ED33A336918E76BE3A5C6CB25F1} O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\zizou\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: AnyTrans.lnk . (.iMobie Inc. - .) C:\Program Files (x86)\iMobie\AnyTrans\AnyTrans.exe {40FC78C65B855B6C0CF1AAA75524844C} =>.iMobie Inc. O4 - GS\Quicklaunch [Administrateur]: Easy Audio Cutter.lnk . (.Koyote Soft - .) C:\Program Files (x86)\Free mp3 Wma Converter\Easy Audio Cutter\AudioCutter.exe =>.Koyote Soft O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software - Foxit Reader 3.2, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Reader.exe {01D151D46A31F4D1FF4E3A0A8AEC820F} O4 - GS\Quicklaunch [Administrateur]: Free CD Ripper.lnk . (.Koyote Soft - FreeCDRipper.) C:\Program Files (x86)\Free mp3 Wma Converter\Free CD Ripper\FreeCDRipper.exe =>.Koyote Soft O4 - GS\Quicklaunch [Administrateur]: Free Mp3 Wma Converter.lnk . (.Koyote Soft - Free Audio Converter.) C:\Program Files (x86)\Free mp3 Wma Converter\FreeConverter\FreeConverter.exe =>.Koyote Soft O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files (x86)\Gateway\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated® O4 - GS\Startup [Administrateur]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) C:\Users\zizou\AppData\Roaming\Dropbox\bin\Dropbox.exe =>.Dropbox, Inc® O4 - GS\Startup [Administrateur]: OpenOffice.org 3.2.lnk . (...) C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - GS\Desktop [zizou]: Ace Player.lnk . (.Innovative Digital Technologies - Ace Player HD.) C:\Users\zizou\AppData\Roaming\ACEStream\player\ace_player.exe {7B8B16B733B307A72B321208E296DE11} O4 - GS\Desktop [zizou]: CleanMyPC - Registry Cleaner.lnk . (.CleanMyPC Tools Software - CleanMyPC Registry Cleaner.) C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCleaner.exe {00B22D5ED33A336918E76BE3A5C6CB25F1} O4 - GS\Desktop [zizou]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\zizou\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [zizou]: AnyTrans.lnk . (.iMobie Inc. - .) C:\Program Files (x86)\iMobie\AnyTrans\AnyTrans.exe {40FC78C65B855B6C0CF1AAA75524844C} =>.iMobie Inc. O4 - GS\Quicklaunch [zizou]: Easy Audio Cutter.lnk . (.Koyote Soft - .) C:\Program Files (x86)\Free mp3 Wma Converter\Easy Audio Cutter\AudioCutter.exe =>.Koyote Soft O4 - GS\Quicklaunch [zizou]: Foxit Reader.lnk . (.Foxit Software - Foxit Reader 3.2, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Reader.exe {01D151D46A31F4D1FF4E3A0A8AEC820F} O4 - GS\Quicklaunch [zizou]: Free CD Ripper.lnk . (.Koyote Soft - FreeCDRipper.) C:\Program Files (x86)\Free mp3 Wma Converter\Free CD Ripper\FreeCDRipper.exe =>.Koyote Soft O4 - GS\Quicklaunch [zizou]: Free Mp3 Wma Converter.lnk . (.Koyote Soft - Free Audio Converter.) C:\Program Files (x86)\Free mp3 Wma Converter\FreeConverter\FreeConverter.exe =>.Koyote Soft O4 - GS\Quicklaunch [zizou]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\TaskBar [zizou]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [zizou]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [zizou]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files (x86)\Gateway\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated® O4 - GS\Startup [zizou]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) C:\Users\zizou\AppData\Roaming\Dropbox\bin\Dropbox.exe =>.Dropbox, Inc® O4 - GS\Startup [zizou]: OpenOffice.org 3.2.lnk . (...) C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - GS\CommonDesktop [Public]: Adobe Reader X.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Avast Free Antivirus.lnk . (.Avast Software s.r.o. - avast! Antivirus.) C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.® O4 - GS\CommonDesktop [Public]: Mendeley Desktop.lnk . (.Mendeley Ltd. - Mendeley Desktop.) C:\Program Files (x86)\Mendeley Desktop\MendeleyDesktop.exe =>.Mendeley Ltd. O4 - GS\CommonDesktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe =>.Apple Inc.® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.1.5.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN O4 - GS\CommonDesktop [Public]: WinZip.lnk . (.WinZip Computing, S.L. - WinZip.) C:\Program Files (x86)\WinZip\WINZIP32.EXE {4A0099B9A58D592947DF50CC37517426} =>.WinZip Computing, S.L. O4 - GS\CommonDesktop [Public]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Programs [Public]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\zizou\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Winsock hijacker (Layered Service Provider) (8) - 1s O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000014\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000001\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000002\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000003\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000014\Winsock LSP File . (.PC Tools Research Pty Ltd..) -- C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll =>Hijacker.Winsock ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 75.75.75.75 75.75.76.76 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{44A1689A-40FC-4502-AEA9-6858AB2182D9}: DhcpNameServer = 75.75.75.75 75.75.76.76 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{58200644-86D6-4FC4-8CCE-62B0D869AC61}: DhcpNameServer = 75.75.75.75 75.75.76.76 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{44A1689A-40FC-4502-AEA9-6858AB2182D9}: DhcpDomain = hsd1.nh.comcast.net ---\\ Protocole additionnel (28) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: grooveLocalGWS [64Bits] - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation® O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (140) - 52s O42 - Logiciel: µTorrent - (...) [HKLM][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 9.21 - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2701-0921-000001000000} =>.Igor Pavlov O42 - Logiciel: 7-Zip 9.22beta - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: Ace Stream Media 3.0.10 - (.Ace Stream Media.) [HKCU][64Bits] -- AceStream =>.Ace Stream Media O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Acrobat X Pro - English, Français, Deutsch - (.Adobe Systems.) [HKLM][64Bits] -- {AC76BA86-1033-F400-7760-000000000005} =>.Adobe Systems O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7B77622E-DE90-48EA-B2C7-227B1DE58A01} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 16 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 16 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {15FEDA5F-141C-4127-8D7E-B962D1742728} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader X (10.1.13) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai =>.Akamai Technologies, Inc.® O42 - Logiciel: Antidote HD - (.Druide informatique inc..) [HKLM][64Bits] -- {56CDB4FE-895F-4E0D-8BB4-9A8D4310898D} =>.Druide informatique inc. O42 - Logiciel: Any Video Converter 5 5.0.3 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter 5_is1 =>.AnvSoft Co., Ltd.® O42 - Logiciel: AnyTrans 3.6.6 - (.iMobie Inc..) [HKLM][64Bits] -- {E580ED1F-AAF8-4F7E-B174-54BFA2B94E0B}}_is1 =>.iMobie Inc. O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {45C56AA7-ED1B-4800-A97F-EDDF3F3520B1} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2F72F540-1F60-4266-9506-952B21D6640D} =>.Apple Inc. O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast =>.AVAST Software a.s.® O42 - Logiciel: Avast License by ZeNiX [2012-03-14] - (...) [HKLM][64Bits] -- Avast_2050_ZeNiX [2012-03-14]_is1 O42 - Logiciel: Backup Manager Basic - (.NewTech Infosystems.) [HKLM][64Bits] -- {72B776E5-4530-4C4B-9453-751DF87D9D93} =>.NewTech Infosystems, Inc® O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT078871 =>.WildTangent Inc O42 - Logiciel: Blackhawk Striker 2 - (.WildTangent.) [HKLM][64Bits] -- WT078955 =>.WildTangent Inc O42 - Logiciel: Bob the Builder Can-Do-Zoo - (.WildTangent.) [HKLM][64Bits] -- WT078963 =>.WildTangent Inc O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {96F70DF8-160F-4F9C-9B9E-2A9B439B4EB9} =>.Broadcom Corporation O42 - Logiciel: Build-a-lot 2 - (.WildTangent.) [HKLM][64Bits] -- WT079239 =>.WildTangent Inc O42 - Logiciel: Canon MP280 series MP Drivers - (...) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP280_series =>.Canon Inc.® O42 - Logiciel: CleanMyPC - Registry Cleaner - (.CleanMyPC Software.) [HKLM][64Bits] -- CleanMyPC - Registry Cleaner_is1 O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} =>.Microsoft Corporation O42 - Logiciel: CoreAVC Professional Edition (remove only) - (...) [HKLM][64Bits] -- CoreAVC Professional Edition O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: DemoForge Mirage Driver for TightVNC 2.0 - (.DemoForge LLC.) [HKLM][64Bits] -- DemoForge Mirage Driver for TightVNC_is1 {1176AA5BF393896227C363405176661F} O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: Escape Rosecliff Island - (.WildTangent.) [HKLM][64Bits] -- WT079258 =>.WildTangent Inc O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited O42 - Logiciel: Faerie Solitaire - (.WildTangent.) [HKLM][64Bits] -- WT079019 =>.WildTangent Inc O42 - Logiciel: FATE - The Traitor Soul - (.WildTangent.) [HKLM][64Bits] -- WT079023 =>.WildTangent Inc O42 - Logiciel: Foxit Reader - (.Foxit Corporation.) [HKLM][64Bits] -- Foxit Reader {01D151D46A31F4D1FF4E3A0A8AEC820F} =>.Foxit Corporation O42 - Logiciel: Free Mp3 Wma Converter V 2.2 - (.Koyote Soft.) [HKLM][64Bits] -- Free Mp3 Wma Converter_is1 =>.Koyote Soft O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} =>.Adobe Systems Incorporated O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Gateway Game Console - (.WildTangent.) [HKLM][64Bits] -- Gateway Game Console =>.WildTangent Inc O42 - Logiciel: Gateway Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent gateway Master Uninstall =>.WildTangent Inc O42 - Logiciel: Gateway InfoCentre - (.Gateway Incorporated.) [HKLM][64Bits] -- Gateway InfoCentre =>.Acer Incorporated® O42 - Logiciel: Gateway MyBackup - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93} =>.NewTech Infosystems, Inc® O42 - Logiciel: Gateway PowerSave Solution - (.Gateway Incorporated.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} =>.Gateway Incorporated O42 - Logiciel: Gateway Recovery Management - (.Gateway Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated® O42 - Logiciel: Gateway Registration - (.Gateway Incorporated.) [HKLM][64Bits] -- Gateway Registration =>.Acer Incorporated® O42 - Logiciel: Gateway ScreenSaver - (.Gateway Incorporated.) [HKLM][64Bits] -- Gateway Screensaver =>.Gateway Incorporated O42 - Logiciel: GenoPro 2.0.1.6 - (.GenoPro Inc..) [HKLM][64Bits] -- GenoPro O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: GraphPad Prism 5 (Trial) - (.GraphPad Software.) [HKLM][64Bits] -- {EDC08986-48D6-41aa-BCE1-F63FDB63CF6D} {12B4CA9B4BD7922F84C04D75558C0DF1} O42 - Logiciel: Haali Media Splitter - (...) [HKLM][64Bits] -- HaaliMkx O42 - Logiciel: HDAUDIO Soft Data Fax Modem with SmartCP - (.Conexant Systems.) [HKLM][64Bits] -- CNXT_MODEM_HDA_HSF =>.Conexant Systems O42 - Logiciel: HijackThis 2.0.2 - (.TrendMicro.) [HKLM][64Bits] -- HijackThis O42 - Logiciel: Identity Card - (.Gateway Incorporated.) [HKLM][64Bits] -- Identity Card =>.Acer Incorporated® O42 - Logiciel: IHMC CmapTools v5.05.01 - (.Institute for Human & Machine Cognition.) [HKLM][64Bits] -- IHMC CmapTools v5.05.01 =>.Institute for Human & Machine Cognition O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- HDMI =>.Intel Corporation® O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM][64Bits] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E} =>.Intel Corporation® O42 - Logiciel: Internet-based TOEFL - (.Kaplan.) [HKLM][64Bits] -- Internet-based TOEFL_is1 O42 - Logiciel: Java 7 Update 76 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217076FF} =>.Oracle O42 - Logiciel: Java Auto Updater - (.Oracle, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle, Inc. O42 - Logiciel: Java(TM) 6 Update 22 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216022FF} =>.Oracle O42 - Logiciel: Java(TM) 7 Update 5 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217005F0} =>.Oracle O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM][64Bits] -- {1111706F-666A-4037-7777-211328764D10} =>.Oracle Corporation O42 - Logiciel: Jewel Quest Solitaire 3 - (.WildTangent.) [HKLM][64Bits] -- WT079067 =>.WildTangent Inc O42 - Logiciel: join.me - (.LogMeIn, Inc..) [HKCU][64Bits] -- JoinMe =>.LogMeIn, Inc.® O42 - Logiciel: Juniper Networks, Inc. Setup Client - (.Juniper Networks, Inc..) [HKCU][64Bits] -- Juniper_Setup_Client {023D1E19DFF13EA6DC4FE7E3CD6C1151} =>.Juniper Networks, Inc. O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation O42 - Logiciel: Launch Manager - (.Gateway.) [HKLM][64Bits] -- LManager =>.Dritek System Inc.® O42 - Logiciel: MacAnova 5.05 release 3 - (.School of Statistics, University of Minnesota.) [HKLM][64Bits] -- MacAnova Windows Version_is1 O42 - Logiciel: MagicDisc 2.7.106 - (...) [HKLM][64Bits] -- MagicDisc 2.7.106 O42 - Logiciel: Mendeley Desktop 1.8.4 - (.Mendeley Ltd..) [HKLM][64Bits] -- Mendeley Desktop =>.Mendeley Ltd. O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {3DB84568-DD0E-401F-BC21-CE24720A0C5B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client =>.Microsoft Corporation® O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} =>.Microsoft Corporation O42 - Logiciel: Mobile Mouse Server - (.RPA Tech, Inc.) [HKLM][64Bits] -- {5AB36A6C-27A8-4CB1-89A1-9D05F3F16625} O42 - Logiciel: Monopoly - (.WildTangent.) [HKLM][64Bits] -- WT079099 =>.WildTangent Inc O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft O42 - Logiciel: MSXML4 Parser - (.Microsoft Game Studios.) [HKLM][64Bits] -- {01501EBA-EC35-4F9F-8889-3BE346E5DA13} =>.Microsoft Game Studios O42 - Logiciel: Mystery P.I. - Lost in Los Angeles - (.WildTangent.) [HKLM][64Bits] -- WT079103 =>.WildTangent Inc O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS =>.Symantec Corporation® O42 - Logiciel: OI App Manager - (.Optimum Installer.) [HKLM][64Bits] -- OI App Manager O42 - Logiciel: OpenOffice.org 3.2 - (.OpenOffice.org.) [HKLM][64Bits] -- {69B040CC-E9B1-4769-950E-87786C9E16AD} =>.OpenOffice.org O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392} =>.Adobe Systems Incorporated O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM][64Bits] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1 =>.Tracker Software Products Ltd® O42 - Logiciel: PDF-XChange 3 - (.Tracker Software.) [HKLM][64Bits] -- PDF-XChange 3_is1 =>.Tracker Software O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT079107 =>.WildTangent Inc O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT079111 =>.WildTangent Inc O42 - Logiciel: Plants vs. Zombies (remove only) - (...) [HKLM][64Bits] -- Plants vs. Zombies O42 - Logiciel: Platform - (.VIA Technologies, Inc..) [HKLM][64Bits] -- {20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WT079115 =>.WildTangent Inc O42 - Logiciel: Polar Golfer - (.WildTangent.) [HKLM][64Bits] -- WT079119 =>.WildTangent Inc O42 - Logiciel: QuickShare - (.Linkury Inc..) [HKLM][64Bits] -- {B630320B-4B6A-4623-A05D-80DAA4C73CE9} O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} =>.Apple Inc. O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 15.0 =>.RealNetworks, Inc.® O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} =>.Realtek Semiconductor Corp. O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} =>.RealNetworks, Inc. O42 - Logiciel: Scrabble Plus - (.WildTangent.) [HKLM][64Bits] -- WT079151 =>.WildTangent Inc O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} =>.Microsoft Corporation O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 =>.Microsoft Corporation O42 - Logiciel: Smart File Advisor 1.1.1 - (.Filefacts.net.) [HKLM][64Bits] -- Smart File Advisor_is1 {00F9BAEE6A0D352EEBA49E9B8D15A73F81} =>.Filefacts.net O42 - Logiciel: Solid Savings - (.215 Apps.) [HKLM][64Bits] -- Solid Savings =>PUP.Optional.VidSaver O42 - Logiciel: SopCast 3.5.0 - (.www.sopcast.com.) [HKLM][64Bits] -- SopCast =>.www.sopcast.com O42 - Logiciel: StatsDirect - (.StatsDirect Ltd.) [HKLM][64Bits] -- {489277DB-11AB-4EEA-98D8-D8B9D0382FCF} O42 - Logiciel: Stellarium 0.11.0 - (...) [HKLM][64Bits] -- Stellarium_is1 O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: Syncios version 3.0.1 - (.Anvsoft, Inc..) [HKLM][64Bits] -- {068A5D84-8419-4BDE-9689-FE65F412EFBB}_is1 {26267E29934668A10F0731D9C546D7CE} =>.Anvsoft, Inc. O42 - Logiciel: tdk-screensaver-a03 - (...) [HKLM][64Bits] -- tdk-screensaver-a03 O42 - Logiciel: The Price is Right - (.WildTangent.) [HKLM][64Bits] -- WT079155 =>.WildTangent Inc O42 - Logiciel: TightVNC-Jaadu 1.3.9-1.2 - (.TightVNC Group / Jugaari.) [HKLM][64Bits] -- TightVNC-Jaadu_is1 O42 - Logiciel: TVAnts 1.0 - (...) [HKLM][64Bits] -- TVAnts 1.0 O42 - Logiciel: TVUPlayer 2.5.3.1 - (.TVU networks.) [HKLM][64Bits] -- TVUPlayer =>.TVU networks® O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (KB2536413) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{95DF5260-331D-4FFD-A2D5-C64164751945} =>.Microsoft O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (KB2536413) - (.Microsoft.) [HKLM][64Bits] -- {91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{95DF5260-331D-4FFD-A2D5-C64164751945} =>.Microsoft O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM][64Bits] -- Veetle TV =>.Veetle, Inc O42 - Logiciel: VIA Platform Device Manager - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: Video Web Camera - (.SuYin.) [HKLM][64Bits] -- {6D9021DC-CF1B-4148-8C80-6D8E8A8A33EB} =>.Macrovision Corporation® O42 - Logiciel: Virtual Families - (.WildTangent.) [HKLM][64Bits] -- WT079419 =>.WildTangent Inc O42 - Logiciel: Virtual Villagers - A New Home - (.WildTangent.) [HKLM][64Bits] -- WT079176 =>.WildTangent Inc O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: Welcome Center - (.Gateway Incorporated.) [HKLM][64Bits] -- Gateway Welcome Center =>.Acer Incorporated® O42 - Logiciel: WinDirStat 1.1.2 - (...) [HKCU][64Bits] -- WinDirStat O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corp O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WinZip 19.0 - (.WinZip Computing, S.L. .) [HKLM][64Bits] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240E6} =>.WinZip Computing, S.L. O42 - Logiciel: Xvid 1.2.1 final uninstall - (.Xvid team (Koepi).) [HKLM][64Bits] -- Xvid_is1 =>.XviD Team (Koepi) O42 - Logiciel: Yahtzee - (.WildTangent.) [HKLM][64Bits] -- WT079182 =>.WildTangent Inc O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT078903 =>.WildTangent Inc O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WT079619 =>.WildTangent Inc ---\\ HKCU & HKLM Software Keys (191) - 52s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\ABBYY HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\anset HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\AVG HKLM\SOFTWARE\Wow6432Node\Canon HKLM\SOFTWARE\Wow6432Node\CBS Interactive HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CheckPoint HKLM\SOFTWARE\Wow6432Node\Cisco Systems HKLM\SOFTWARE\Wow6432Node\ComputerAssociates HKLM\SOFTWARE\Wow6432Node\CoreCodec HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Cygwin HKLM\SOFTWARE\Wow6432Node\DanMorin.Com HKLM\SOFTWARE\Wow6432Node\Digital River HKLM\SOFTWARE\Wow6432Node\Druide informatique inc. HKLM\SOFTWARE\Wow6432Node\Foxit Software HKLM\SOFTWARE\Wow6432Node\Ginger HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Kaplan HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Longman HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MAXSOFT-OCRON HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha2165 =>PUP.Optional.MediaViewer HKLM\SOFTWARE\Wow6432Node\Mendeley Ltd. HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NewTech Infosystems HKLM\SOFTWARE\Wow6432Node\Nico Mak Computing HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OEM HKLM\SOFTWARE\Wow6432Node\OpenOffice.org HKLM\SOFTWARE\Wow6432Node\Oracle HKLM\SOFTWARE\Wow6432Node\ORL HKLM\SOFTWARE\Wow6432Node\PopCap Games HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Serif HKLM\SOFTWARE\Wow6432Node\Smart File Advisor HKLM\SOFTWARE\Wow6432Node\SopCast HKLM\SOFTWARE\Wow6432Node\Sun Microsystems HKLM\SOFTWARE\Wow6432Node\SweetPacks_A11 HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TightVNC HKLM\SOFTWARE\Wow6432Node\TrendMicro HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\TVU networks HKLM\SOFTWARE\Wow6432Node\Veetle HKLM\SOFTWARE\Wow6432Node\VIA Technologies, Inc HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WhiteSmoke =>PUP.Optional.WhiteSmoke HKLM\SOFTWARE\Wow6432Node\WhiteSmokeTranslator =>PUP.Optional.WhiteSmoke HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wise Solutions HKLM\SOFTWARE\Wow6432Node\Wistron HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp. HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\Zone Labs HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\2D8E2AA632B9F2BEC50DB35981E9F08E =>PUP.Optional.CrossRider HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\ABBYY HKCU\SOFTWARE\Acer HKCU\SOFTWARE\AceStream HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Akamai HKCU\SOFTWARE\AnvSoft HKCU\SOFTWARE\Any Video Editor HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\AVG HKCU\SOFTWARE\Axantum HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Canon HKCU\SOFTWARE\Caphyon HKCU\SOFTWARE\CBS Interactive HKCU\SOFTWARE\CleanMyPC HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\D9L83679SM HKCU\SOFTWARE\DanMorin.com HKCU\SOFTWARE\Digital River HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\Druide informatique inc. HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Imobie HKCU\SOFTWARE\Intel HKCU\SOFTWARE\iWrapper HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\join.me HKCU\SOFTWARE\JP595IR86O HKCU\SOFTWARE\Lake HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Macrovision HKCU\SOFTWARE\Magical Jelly Bean Software HKCU\SOFTWARE\MagicDisc HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\Mendeley Ltd. HKCU\SOFTWARE\Mindjet HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nico Mak Computing HKCU\SOFTWARE\Norton HKCU\SOFTWARE\NtWqIVLZEWZU HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OEM HKCU\SOFTWARE\OpenOffice.org HKCU\SOFTWARE\OpenXML Writer HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\ORL HKCU\SOFTWARE\PopCap Games HKCU\SOFTWARE\Pure Networks HKCU\SOFTWARE\Real HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Redemption HKCU\SOFTWARE\Redemption HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SearchProtectP =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Seifert HKCU\SOFTWARE\Serif HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Smart File Advisor HKCU\SOFTWARE\Smart Projects HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\Sonix HKCU\SOFTWARE\Suyin HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Syncios HKCU\SOFTWARE\Tific HKCU\SOFTWARE\TightVNC HKCU\SOFTWARE\Tracker Software HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\TVANTS HKCU\SOFTWARE\TVU networks HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Veetle HKCU\SOFTWARE\WajamCheck =>PUP.Optional.Wajam HKCU\SOFTWARE\Webex HKCU\SOFTWARE\WhiteSmoke =>PUP.Optional.WhiteSmoke HKCU\SOFTWARE\WhiteSmokeTranslator =>PUP.Optional.WhiteSmoke HKCU\SOFTWARE\WildTangent HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wistron HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Xerox HKCU\SOFTWARE\Yahoo =>.Yahoo! HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Zone Labs HKCU\SOFTWARE\AppDataLow\Avg HKCU\SOFTWARE\AppDataLow\ISWVolatile HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Google HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Macromedia HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.SmartBar HKCU\SOFTWARE\AppDataLow\Software\Solid Savings HKCU\SOFTWARE\AppDataLow\Software\SweetPacks_A11 HKCU\SOFTWARE\AppDataLow\Software\WorldWinner.com HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programmes (406) - 122s O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 07/06/2014 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 14/09/2011 - [] D -- C:\Program Files (x86)\Adobe Media Player O43 - CFD: 28/02/2011 - [] D -- C:\Program Files (x86)\Air Mouse =>.RPA Tech® O43 - CFD: 19/02/2013 - [] D -- C:\Program Files (x86)\AnvSoft =>.AnvSoft Co., Ltd.® O43 - CFD: 23/10/2011 - [0] D -- C:\Program Files (x86)\Any DVD Cloner Platinum O43 - CFD: 10/01/2011 - [] D -- C:\Program Files (x86)\AveApps O43 - CFD: 20/06/2011 - [] D -- C:\Program Files (x86)\AVG O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Bing Bar Installer O43 - CFD: 17/08/2011 - [0] D -- C:\Program Files (x86)\Blinkx O43 - CFD: 26/02/2013 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 27/11/2013 - [] D -- C:\Program Files (x86)\CleanMyPC {00B22D5ED33A336918E76BE3A5C6CB25F1} O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 20/09/2011 - [] D -- C:\Program Files (x86)\CoreCodec O43 - CFD: 17/08/2011 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 23/08/2011 - [] D -- C:\Program Files (x86)\Druide =>.Druide informatique inc.® O43 - CFD: 08/09/2011 - [] D -- C:\Program Files (x86)\Electronic Arts O43 - CFD: 07/09/2010 - [] D -- C:\Program Files (x86)\Foxit Software {01D151D46A31F4D1FF4E3A0A8AEC820F} O43 - CFD: 09/09/2012 - [] D -- C:\Program Files (x86)\Free mp3 Wma Converter O43 - CFD: 10/07/2010 - [] D -- C:\Program Files (x86)\Gateway =>.Acer Incorporated® O43 - CFD: 20/08/2010 - [] D -- C:\Program Files (x86)\Gateway Games O43 - CFD: 22/09/2011 - [] D -- C:\Program Files (x86)\GenoPro O43 - CFD: 25/02/2015 - [] D -- C:\Program Files (x86)\Ginger {00805CE1E5B7A9691A65F01E1A040A1E37} O43 - CFD: 19/08/2014 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 03/12/2012 - [] D -- C:\Program Files (x86)\GraphPad {12B4CA9B4BD7922F84C04D75558C0DF1} O43 - CFD: 20/09/2011 - [] D -- C:\Program Files (x86)\Haali O43 - CFD: 05/11/2012 - [] D -- C:\Program Files (x86)\IHMC CmapTools O43 - CFD: 02/12/2013 - [] D -- C:\Program Files (x86)\iMobie {40FC78C65B855B6C0CF1AAA75524844C} O43 - CFD: 25/02/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Acer Incorporated® O43 - CFD: 10/07/2010 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation® O43 - CFD: 13/09/2011 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 13/06/2012 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 25/02/2015 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 05/03/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 17/08/2011 - [] D -- C:\Program Files (x86)\JDownloader O43 - CFD: 06/09/2011 - [] D -- C:\Program Files (x86)\Juniper Networks O43 - CFD: 26/06/2012 - [] D -- C:\Program Files (x86)\Kap.TOEFL O43 - CFD: 08/09/2011 - [0] D -- C:\Program Files (x86)\KONAMI O43 - CFD: 10/07/2010 - [] D -- C:\Program Files (x86)\Launch Manager =>.Dritek System Inc.® O43 - CFD: 18/06/2012 - [] D -- C:\Program Files (x86)\Longman iBT O43 - CFD: 20/01/2011 - [] D -- C:\Program Files (x86)\MacAnova O43 - CFD: 10/09/2011 - [] D -- C:\Program Files (x86)\MagicDisc O43 - CFD: 13/04/2013 - [] D -- C:\Program Files (x86)\Mendeley Desktop O43 - CFD: 11/01/2011 - [] D -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 18/11/2010 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 27/05/2010 - [] D -- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant =>.Digital River, Inc.® O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Microsoft Security Client O43 - CFD: 20/08/2010 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 18/11/2010 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 10/01/2011 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 18/12/2010 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation® O43 - CFD: 14/02/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 30/01/2012 - [] D -- C:\Program Files (x86)\Mindjet {00F8DF5734A96C9698943F691AF7A34AAC} O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 18/11/2010 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 28/05/2010 - [] D -- C:\Program Files (x86)\NewTech Infosystems =>.NewTech Infosystems, Inc® O43 - CFD: 28/05/2010 - [] D -- C:\Program Files (x86)\Norton Internet Security =>.Symantec Corporation® O43 - CFD: 28/05/2010 - [] D -- C:\Program Files (x86)\NortonInstaller =>.Symantec Corporation® O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\OI App Manager O43 - CFD: 18/11/2010 - [] D -- C:\Program Files (x86)\OpenOffice.org 3 O43 - CFD: 18/06/2012 - [] D -- C:\Program Files (x86)\OpenXML Writer O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 26/12/2013 - [] D -- C:\Program Files (x86)\Oracle =>.Oracle America, Inc.® O43 - CFD: 22/08/2010 - [] D -- C:\Program Files (x86)\PopCap Games O43 - CFD: 05/10/2013 - [0] D -- C:\Program Files (x86)\qualitink =>PUP.Optional.Qualitink O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 17/05/2012 - [] D -- C:\Program Files (x86)\Real =>.RealNetworks, Inc.® O43 - CFD: 27/05/2010 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 05/07/2012 - [] D -- C:\Program Files (x86)\Smart File Advisor {00F9BAEE6A0D352EEBA49E9B8D15A73F81} =>.Superfluous.Totalpc O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\Solid Savings =>PUP.Optional.SolidSavings O43 - CFD: 07/10/2012 - [] D -- C:\Program Files (x86)\SopCast O43 - CFD: 03/04/2011 - [] D -- C:\Program Files (x86)\Spyware Doctor O43 - CFD: 03/12/2012 - [] D -- C:\Program Files (x86)\StatsDirect {331B9D34C21600C191A2CB65D1189A54} O43 - CFD: 18/09/2011 - [] D -- C:\Program Files (x86)\Stellarium O43 - CFD: 05/10/2013 - [] D -- C:\Program Files (x86)\SweetPacks_A11 {3A82654719D8F75B59134F7B66465210} =>PUP.Optional.SweetIM O43 - CFD: 30/11/2013 - [] D -- C:\Program Files (x86)\Syncios O43 - CFD: 14/11/2010 - [] D -- C:\Program Files (x86)\TightVNC-Jaadu O43 - CFD: 19/09/2012 - [] D -- C:\Program Files (x86)\Trend Micro O43 - CFD: 19/01/2011 - [] D -- C:\Program Files (x86)\TuneUpMedia O43 - CFD: 10/10/2011 - [] D -- C:\Program Files (x86)\TVAnts O43 - CFD: 09/10/2011 - [] D -- C:\Program Files (x86)\TVUPlayer =>.TVU networks® O43 - CFD: 14/11/2010 - [] D -- C:\Program Files (x86)\UltraVNC O43 - CFD: 13/07/2009 - [0] D -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 25/02/2015 - [] D -- C:\Program Files (x86)\USTechSupport O43 - CFD: 15/12/2012 - [] D -- C:\Program Files (x86)\uTorrent =>.BitTorrent Inc® O43 - CFD: 25/10/2010 - [] D -- C:\Program Files (x86)\Veetle O43 - CFD: 10/07/2010 - [] D -- C:\Program Files (x86)\VIA O43 - CFD: 20/09/2011 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 10/07/2010 - [] D -- C:\Program Files (x86)\VideoWebCamera {3A1C56AA80ABA1A4C97C1AE60003232A} O43 - CFD: 10/11/2011 - [0] D -- C:\Program Files (x86)\WhiteSmokeTranslator =>PUP.Optional.WhiteSmoke O43 - CFD: 26/02/2013 - [] D -- C:\Program Files (x86)\WinDirStat O43 - CFD: 16/09/2010 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation® O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 05/03/2015 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\WinZip {4A0099B9A58D592947DF50CC37517426} O43 - CFD: 02/03/2011 - [] D -- C:\Program Files (x86)\Xvid O43 - CFD: 05/11/2012 - [] HD -- C:\Program Files (x86)\Zero G Registry O43 - CFD: 13/02/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 22/06/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 22/06/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe O43 - CFD: 18/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2 O43 - CFD: 28/02/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Air Mouse O43 - CFD: 23/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antidote O43 - CFD: 19/02/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft O43 - CFD: 07/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt O43 - CFD: 18/11/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP280 series O43 - CFD: 27/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CleanMyPC Registry Cleaner O43 - CFD: 20/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CoreCodec O43 - CFD: 19/09/2011 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cygwin O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader O43 - CFD: 09/09/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Audio Pack O43 - CFD: 08/09/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 22/06/2011 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gateway O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gateway MyBackup O43 - CFD: 03/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GraphPad Software O43 - CFD: 20/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 19/09/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis O43 - CFD: 05/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IHMC CmapTools O43 - CFD: 02/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie O43 - CFD: 28/05/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager O43 - CFD: 12/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 24/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 26/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaplan O43 - CFD: 18/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Longman iBT O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MacAnova O43 - CFD: 08/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc O43 - CFD: 22/06/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 13/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mendeley Desktop O43 - CFD: 17/01/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 10/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005 O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works O43 - CFD: 20/10/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security O43 - CFD: 22/06/2011 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.2 O43 - CFD: 18/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenXML Writer O43 - CFD: 30/01/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange 3 O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer O43 - CFD: 22/08/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PopCap Games O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 17/05/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks O43 - CFD: 07/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast O43 - CFD: 01/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 03/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StatsDirect O43 - CFD: 18/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellarium O43 - CFD: 30/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syncios O43 - CFD: 28/05/2010 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TightVNC-Jaadu O43 - CFD: 10/10/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TVAnts O43 - CFD: 09/10/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TVUPlayer O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 29/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid O43 - CFD: 23/10/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7 O43 - CFD: 25/02/2015 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 28/08/2013 - [] D -- C:\ProgramData\ABBYY O43 - CFD: 10/07/2010 - [] D -- C:\ProgramData\Acer O43 - CFD: 24/02/2013 - [] D -- C:\ProgramData\Adobe O43 - CFD: 16/10/2010 - [] D -- C:\ProgramData\Apple O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 25/02/2015 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 03/04/2011 - [] D -- C:\ProgramData\AVG10 O43 - CFD: 28/05/2010 - [] D -- C:\ProgramData\BackupManager O43 - CFD: 28/08/2013 - [] D -- C:\ProgramData\Bradford Networks O43 - CFD: 18/11/2011 - [] HD -- C:\ProgramData\CanonBJ O43 - CFD: 08/08/2011 - [] D -- C:\ProgramData\CheckPoint O43 - CFD: 04/11/2012 - [] D -- C:\ProgramData\Cisco Systems O43 - CFD: 15/01/2011 - [] D -- C:\ProgramData\Common Files O43 - CFD: 22/06/2011 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 30/06/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 08/09/2011 - [] D -- C:\ProgramData\EA Core O43 - CFD: 08/09/2011 - [] D -- C:\ProgramData\Electronic Arts O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 28/05/2010 - [] D -- C:\ProgramData\Gateway O43 - CFD: 06/09/2011 - [] D -- C:\ProgramData\Google O43 - CFD: 03/12/2012 - [] D -- C:\ProgramData\GraphPad Software O43 - CFD: 14/01/2014 - [] D -- C:\ProgramData\InstallMate =>.Superfluous.Tarma O43 - CFD: 07/09/2011 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 07/09/2010 - [] D -- C:\ProgramData\McAfee O43 - CFD: 15/01/2011 - [] D -- C:\ProgramData\MFAData O43 - CFD: 13/01/2014 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 18/06/2011 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 24/11/2012 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 27/05/2013 - [] D -- C:\ProgramData\Norton O43 - CFD: 28/05/2010 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 20/08/2010 - [] D -- C:\ProgramData\OEM O43 - CFD: 24/12/2013 - [0] D -- C:\ProgramData\Oracle O43 - CFD: 03/04/2011 - [] D -- C:\ProgramData\PC Tools O43 - CFD: 25/02/2015 - [] D -- C:\ProgramData\Pure Networks O43 - CFD: 18/06/2012 - [] D -- C:\ProgramData\QuickTime O43 - CFD: 27/05/2013 - [] D -- C:\ProgramData\Real O43 - CFD: 22/08/2010 - [] D -- C:\ProgramData\Real Games O43 - CFD: 25/02/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 13/06/2012 - [] D -- C:\ProgramData\SafeNet Sentinel O43 - CFD: 17/08/2011 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 10/01/2011 - [] D -- C:\ProgramData\Start Orb Manager O43 - CFD: 12/12/2010 - [] D -- C:\ProgramData\Sun O43 - CFD: 25/01/2016 - [] AD -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 13/06/2012 - [] D -- C:\ProgramData\TI-Nspire CAS O43 - CFD: 08/08/2011 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 02/02/2012 - [] D -- C:\ProgramData\Turning Technologies O43 - CFD: 09/10/2011 - [] D -- C:\ProgramData\TVU Networks O43 - CFD: 25/02/2015 - [] D -- C:\ProgramData\USTechSupport O43 - CFD: 20/11/2012 - [] D -- C:\ProgramData\WebEx O43 - CFD: 21/08/2010 - [] D -- C:\ProgramData\Wild Tangent O43 - CFD: 03/01/2011 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\WinZip O43 - CFD: 06/09/2011 - [] D -- C:\ProgramData\Xerox O43 - CFD: 23/10/2011 - [0] D -- C:\ProgramData\Yahoo! O43 - CFD: 08/08/2011 - [] SHD -- C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16} O43 - CFD: 13/12/2010 - [] D -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001} O43 - CFD: 07/09/2011 - [] D -- C:\ProgramData\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A} O43 - CFD: 14/12/2011 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 05/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 25/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\Common Files\AV O43 - CFD: 28/09/2010 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 10/07/2010 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 05/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 29/08/2013 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 07/01/2013 - [] D -- C:\Program Files (x86)\Common Files\MSSoap O43 - CFD: 03/04/2011 - [] D -- C:\Program Files (x86)\Common Files\PC Tools O43 - CFD: 28/05/2010 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 13/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 21/08/2010 - [] D -- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 16/09/2010 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 13/06/2012 - [] D -- C:\Program Files (x86)\Common Files\TI Shared O43 - CFD: 20/08/2010 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 03/04/2013 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 17/05/2012 - [] D -- C:\Program Files (x86)\Common Files\xing shared O43 - CFD: 26/01/2016 - [] D -- C:\Users\zizou\AppData\Roaming\.ACEStream O43 - CFD: 02/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\ABBYY O43 - CFD: 15/01/2013 - [] D -- C:\Users\zizou\AppData\Roaming\Acapela Group O43 - CFD: 27/02/2015 - [] D -- C:\Users\zizou\AppData\Roaming\ACEStream O43 - CFD: 28/02/2015 - [] D -- C:\Users\zizou\AppData\Roaming\AceWebExtension O43 - CFD: 14/12/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Adobe O43 - CFD: 14/11/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Adobe Mini Bridge CS5 O43 - CFD: 07/06/2014 - [] D -- C:\Users\zizou\AppData\Roaming\AdobeMuse O43 - CFD: 19/02/2013 - [] D -- C:\Users\zizou\AppData\Roaming\AnvSoft O43 - CFD: 21/10/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Any Video Editor O43 - CFD: 22/12/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Apple Computer O43 - CFD: 09/09/2012 - [] D -- C:\Users\zizou\AppData\Roaming\Audacity O43 - CFD: 25/02/2015 - [] D -- C:\Users\zizou\AppData\Roaming\AVAST Software O43 - CFD: 15/01/2011 - [] D -- C:\Users\zizou\AppData\Roaming\AVG10 O43 - CFD: 18/06/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Azureus O43 - CFD: 19/01/2011 - [0] D -- C:\Users\zizou\AppData\Roaming\CBS Interactive O43 - CFD: 08/08/2011 - [] D -- C:\Users\zizou\AppData\Roaming\CheckPoint O43 - CFD: 27/11/2013 - [] D -- C:\Users\zizou\AppData\Roaming\CleanMyPC Software O43 - CFD: 11/01/2013 - [] D -- C:\Users\zizou\AppData\Roaming\CmapTools O43 - CFD: 12/12/2010 - [] D -- C:\Users\zizou\AppData\Roaming\CyberLink O43 - CFD: 13/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\DMCache O43 - CFD: 25/01/2016 - [] D -- C:\Users\zizou\AppData\Roaming\Dropbox O43 - CFD: 23/09/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Druide O43 - CFD: 07/09/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Foxit O43 - CFD: 07/09/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Foxit Software O43 - CFD: 09/09/2012 - [] D -- C:\Users\zizou\AppData\Roaming\FreeAudioPack O43 - CFD: 10/10/2011 - [0] D -- C:\Users\zizou\AppData\Roaming\GetRightToGo O43 - CFD: 08/08/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Google O43 - CFD: 03/12/2012 - [] D -- C:\Users\zizou\AppData\Roaming\GraphPad Software O43 - CFD: 20/08/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Identities O43 - CFD: 13/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\IDM O43 - CFD: 02/12/2013 - [] D -- C:\Users\zizou\AppData\Roaming\iMobie O43 - CFD: 28/05/2013 - [] D -- C:\Users\zizou\AppData\Roaming\InstallShield O43 - CFD: 06/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Juniper Networks O43 - CFD: 19/06/2012 - [] D -- C:\Users\zizou\AppData\Roaming\Macromedia O43 - CFD: 28/05/2010 - [0] D -- C:\Users\zizou\AppData\Roaming\Media Center Programs O43 - CFD: 03/09/2014 - [] SD -- C:\Users\zizou\AppData\Roaming\Microsoft O43 - CFD: 13/01/2014 - [] D -- C:\Users\zizou\AppData\Roaming\Mozilla O43 - CFD: 18/11/2010 - [] D -- C:\Users\zizou\AppData\Roaming\OpenOffice.org O43 - CFD: 13/01/2014 - [0] D -- C:\Users\zizou\AppData\Roaming\Opera Software O43 - CFD: 22/08/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Packard Bell O43 - CFD: 28/09/2012 - [] D -- C:\Users\zizou\AppData\Roaming\Real O43 - CFD: 17/06/2011 - [] RD -- C:\Users\zizou\AppData\Roaming\SecuROM O43 - CFD: 07/01/2013 - [] D -- C:\Users\zizou\AppData\Roaming\Serif O43 - CFD: 14/11/2011 - [] D -- C:\Users\zizou\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 19/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Stellarium O43 - CFD: 30/11/2013 - [] D -- C:\Users\zizou\AppData\Roaming\Syncios O43 - CFD: 17/11/2010 - [] D -- C:\Users\zizou\AppData\Roaming\Template O43 - CFD: 13/06/2012 - [] D -- C:\Users\zizou\AppData\Roaming\Texas Instruments O43 - CFD: 07/01/2013 - [] D -- C:\Users\zizou\AppData\Roaming\Thinstall O43 - CFD: 13/06/2012 - [0] D -- C:\Users\zizou\AppData\Roaming\TI-Nspire O43 - CFD: 27/05/2013 - [] D -- C:\Users\zizou\AppData\Roaming\Tific O43 - CFD: 14/11/2010 - [0] D -- C:\Users\zizou\AppData\Roaming\TightVNC O43 - CFD: 19/01/2011 - [] D -- C:\Users\zizou\AppData\Roaming\TorrentBitch O43 - CFD: 08/08/2011 - [] D -- C:\Users\zizou\AppData\Roaming\TuneUp Software O43 - CFD: 02/02/2012 - [] D -- C:\Users\zizou\AppData\Roaming\Turning Technologies O43 - CFD: 14/11/2010 - [] D -- C:\Users\zizou\AppData\Roaming\UltraVNC O43 - CFD: 23/10/2011 - [] D -- C:\Users\zizou\AppData\Roaming\URSoft O43 - CFD: 03/12/2013 - [0] D -- C:\Users\zizou\AppData\Roaming\USTechSupport O43 - CFD: 27/05/2015 - [] D -- C:\Users\zizou\AppData\Roaming\uTorrent O43 - CFD: 11/11/2010 - [] D -- C:\Users\zizou\AppData\Roaming\veetle_vlc O43 - CFD: 02/05/2012 - [] D -- C:\Users\zizou\AppData\Roaming\vlc O43 - CFD: 09/01/2011 - [] D -- C:\Users\zizou\AppData\Roaming\VoipBuster O43 - CFD: 20/08/2010 - [] D -- C:\Users\zizou\AppData\Roaming\WildTangent O43 - CFD: 14/04/2011 - [0] D -- C:\Users\zizou\AppData\Roaming\Windows Live Writer O43 - CFD: 28/09/2010 - [] D -- C:\Users\zizou\AppData\Roaming\WinRAR O43 - CFD: 06/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Xerox O43 - CFD: 26/01/2016 - [] D -- C:\Users\zizou\AppData\Roaming\ZHP O43 - CFD: 23/03/2015 - [] D -- C:\Users\zizou\AppData\Local\26340 O43 - CFD: 28/08/2013 - [] D -- C:\Users\zizou\AppData\Local\ABBYY O43 - CFD: 07/06/2014 - [] D -- C:\Users\zizou\AppData\Local\Adobe O43 - CFD: 06/01/2011 - [] D -- C:\Users\zizou\AppData\Local\adslTV O43 - CFD: 28/02/2011 - [] D -- C:\Users\zizou\AppData\Local\AirMouse O43 - CFD: 25/01/2016 - [] D -- C:\Users\zizou\AppData\Local\Akamai O43 - CFD: 16/10/2010 - [] D -- C:\Users\zizou\AppData\Local\Apple O43 - CFD: 22/12/2010 - [] D -- C:\Users\zizou\AppData\Local\Apple Computer O43 - CFD: 21/08/2010 - [0] SHD -- C:\Users\zizou\AppData\Local\Application Data O43 - CFD: 10/01/2011 - [] D -- C:\Users\zizou\AppData\Local\Apps O43 - CFD: 01/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-1 =>Worm.Brontok O43 - CFD: 11/08/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-11 =>Worm.Brontok O43 - CFD: 12/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-12 =>Worm.Brontok O43 - CFD: 13/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-13 =>Worm.Brontok O43 - CFD: 14/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-14 =>Worm.Brontok O43 - CFD: 14/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-15 =>Worm.Brontok O43 - CFD: 16/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-16 =>Worm.Brontok O43 - CFD: 17/08/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-17 =>Worm.Brontok O43 - CFD: 18/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-18 =>Worm.Brontok O43 - CFD: 18/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-19 =>Worm.Brontok O43 - CFD: 02/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-2 =>Worm.Brontok O43 - CFD: 19/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-20 =>Worm.Brontok O43 - CFD: 21/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-21 =>Worm.Brontok O43 - CFD: 22/08/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-22 =>Worm.Brontok O43 - CFD: 23/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-23 =>Worm.Brontok O43 - CFD: 24/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-24 =>Worm.Brontok O43 - CFD: 24/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-25 =>Worm.Brontok O43 - CFD: 26/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-26 =>Worm.Brontok O43 - CFD: 27/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-27 =>Worm.Brontok O43 - CFD: 28/08/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-28 =>Worm.Brontok O43 - CFD: 29/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-29 =>Worm.Brontok O43 - CFD: 03/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-3 =>Worm.Brontok O43 - CFD: 30/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-30 =>Worm.Brontok O43 - CFD: 31/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-31 =>Worm.Brontok O43 - CFD: 04/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-4 =>Worm.Brontok O43 - CFD: 04/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-5 =>Worm.Brontok O43 - CFD: 07/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-7 =>Worm.Brontok O43 - CFD: 07/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-8 =>Worm.Brontok O43 - CFD: 09/07/2013 - [0] D -- C:\Users\zizou\AppData\Local\Bron.tok-17-9 =>Worm.Brontok O43 - CFD: 22/03/2015 - [] D -- C:\Users\zizou\AppData\Local\CrashDumps O43 - CFD: 05/10/2013 - [] D -- C:\Users\zizou\AppData\Local\CRE O43 - CFD: 25/02/2015 - [0] D -- C:\Users\zizou\AppData\Local\Diagnostics O43 - CFD: 19/06/2012 - [] D -- C:\Users\zizou\AppData\Local\Downloaded Installations O43 - CFD: 30/06/2015 - [] D -- C:\Users\zizou\AppData\Local\Dropbox O43 - CFD: 07/04/2015 - [0] D -- C:\Users\zizou\AppData\Local\ElevatedDiagnostics O43 - CFD: 25/05/2012 - [] D -- C:\Users\zizou\AppData\Local\Facebook O43 - CFD: 22/08/2010 - [] D -- C:\Users\zizou\AppData\Local\Gateway O43 - CFD: 19/08/2014 - [] D -- C:\Users\zizou\AppData\Local\Google O43 - CFD: 21/08/2010 - [0] SHD -- C:\Users\zizou\AppData\Local\Historique O43 - CFD: 02/12/2013 - [] D -- C:\Users\zizou\AppData\Local\iMobie_Inc O43 - CFD: 28/05/2013 - [] D -- C:\Users\zizou\AppData\Local\join.me O43 - CFD: 12/08/2013 - [] D -- C:\Users\zizou\AppData\Local\Loc.Mail.Bron.Tok =>Worm.Brontok O43 - CFD: 15/05/2013 - [] D -- C:\Users\zizou\AppData\Local\Macromedia O43 - CFD: 13/04/2013 - [] D -- C:\Users\zizou\AppData\Local\Mendeley Ltd O43 - CFD: 13/01/2014 - [] D -- C:\Users\zizou\AppData\Local\Microsoft O43 - CFD: 01/09/2014 - [] D -- C:\Users\zizou\AppData\Local\Microsoft Games O43 - CFD: 05/02/2013 - [] D -- C:\Users\zizou\AppData\Local\Microsoft Help O43 - CFD: 30/01/2012 - [] D -- C:\Users\zizou\AppData\Local\Mindjet O43 - CFD: 13/01/2014 - [] D -- C:\Users\zizou\AppData\Local\Mozilla O43 - CFD: 23/06/2013 - [0] D -- C:\Users\zizou\AppData\Local\Ok-SendMail-Bron-tok O43 - CFD: 13/01/2014 - [0] D -- C:\Users\zizou\AppData\Local\Opera Software O43 - CFD: 20/08/2010 - [] D -- C:\Users\zizou\AppData\Local\Packard Bell O43 - CFD: 20/08/2010 - [] D -- C:\Users\zizou\AppData\Local\Power2Go O43 - CFD: 19/02/2013 - [] D -- C:\Users\zizou\AppData\Local\Programs O43 - CFD: 17/03/2014 - [] D -- C:\Users\zizou\AppData\Local\Solid Savings =>PUP.Optional.SolidSavings O43 - CFD: 27/05/2013 - [] D -- C:\Users\zizou\AppData\Local\Symantec O43 - CFD: 26/01/2016 - [] D -- C:\Users\zizou\AppData\Local\Temp O43 - CFD: 21/08/2010 - [0] SHD -- C:\Users\zizou\AppData\Local\Temporary Internet Files O43 - CFD: 07/01/2013 - [] D -- C:\Users\zizou\AppData\Local\Thinstall O43 - CFD: 03/04/2011 - [] D -- C:\Users\zizou\AppData\Local\Threat Expert O43 - CFD: 09/10/2011 - [] D -- C:\Users\zizou\AppData\Local\TVU Networks O43 - CFD: 25/02/2015 - [0] D -- C:\Users\zizou\AppData\Local\Updater26278 O43 - CFD: 23/08/2011 - [] D -- C:\Users\zizou\AppData\Local\uTorrent O43 - CFD: 23/06/2013 - [] D -- C:\Users\zizou\AppData\Local\VirtualStore O43 - CFD: 06/09/2011 - [] D -- C:\Users\zizou\AppData\Local\VS Revo Group O43 - CFD: 09/01/2014 - [] D -- C:\Users\zizou\AppData\Local\Windows Live O43 - CFD: 08/01/2014 - [] D -- C:\Users\zizou\AppData\Local\Windows Live Writer O43 - CFD: 01/03/2015 - [] D -- C:\Users\zizou\AppData\Local\WinZip O43 - CFD: 30/01/2012 - [] D -- C:\Users\zizou\AppData\Local\{71AAD1BB-75D4-41F8-BE0A-D978E361FDEE} O43 - CFD: 28/05/2010 - [] RD -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 27/02/2015 - [] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media O43 - CFD: 29/08/2013 - [] RD -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 23/09/2010 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antidote O43 - CFD: 23/10/2011 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnvSoft O43 - CFD: 25/01/2016 - [] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 15/01/2013 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 20/09/2011 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 12/09/2011 - [] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 08/09/2011 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc O43 - CFD: 28/05/2010 - [] RD -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 18/06/2012 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenXML Writer O43 - CFD: 07/10/2012 - [0] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast O43 - CFD: 11/05/2015 - [] RD -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 05/03/2015 - [] D -- C:\Users\zizou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (12) - 2s O106 - SIOI: DropboxExt1 Class [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\zizou\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\zizou\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\zizou\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.Avast Software s.r.o. - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.® O106 - SIOI: DropboxExt4 Class [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\zizou\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® ---\\ Liste des pilotes du système (76) - 15s O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 01:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 01:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2015/05/27 20:12:08 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [29168] =>.AVAST Software a.s.® O58 - SDL:2015/05/27 20:12:09 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [89944] =>.AVAST Software a.s.® O58 - SDL:2015/05/27 20:12:07 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] =>.AVAST Software a.s.® O58 - SDL:2015/05/27 20:12:09 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65736] =>.AVAST Software a.s.® O58 - SDL:2015/05/27 20:11:23 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1047320] =>.AVAST Software a.s.® O58 - SDL:2015/07/01 21:46:23 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [442264] =>.AVAST Software a.s.® O58 - SDL:2015/05/27 20:12:09 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [137288] =>.AVAST Software a.s.® O58 - SDL:2015/05/27 20:12:09 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [272248] =>.AVAST Software a.s.® O58 - SDL:2009/09/21 14:00:44 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [1537024] =>.Atheros Communications, Inc. O58 - SDL:2010/07/12 04:34:00 A . (.AVG Technologies CZ, s.r.o. - AVG Filter Driver.) -- C:\Windows\System32\drivers\avgfwd6a.sys [57696] =>.AVG Technologies® O58 - SDL:2009/06/10 15:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 15:34:38 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL664.SYS [1311232] =>.Broadcom Corporation O58 - SDL:2009/06/10 15:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 15:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 20:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2009/02/13 01:20:56 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\CAXHWAZL.sys [292864] =>.Conexant Systems, Inc. O58 - SDL:2009/02/13 01:19:34 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\CAX_CNXT.sys [740864] =>.Conexant Systems, Inc. O58 - SDL:2009/02/13 01:24:56 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\CAX_DPV.sys [1485824] =>.Conexant Systems, Inc. O58 - SDL:2009/07/13 20:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2008/03/05 00:00:38 A . (.DemoForge, LLC - Mirage Driver.) -- C:\Windows\System32\drivers\dfmirage.sys [36432] =>.DemoForge LLC® O58 - SDL:2011/04/25 06:59:18 A . (.Juniper Networks - dsNcAdapter.) -- C:\Windows\System32\drivers\dsNcAdpt.sys [32768] =>.Juniper Networks O58 - SDL:2009/07/13 20:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 15:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2008/03/13 13:51:00 A . (.FTDI Ltd. - FTDIBUS USB Driver.) -- C:\Windows\System32\drivers\ftdibus.sys [68800] {525DE6D376A7E434A293A186496FE7BE} =>.FTDI Ltd. O58 - SDL:2009/06/10 15:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2010/11/20 08:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2009/06/04 21:54:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [408600] =>.Intel Corporation® O58 - SDL:2011/03/11 01:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2010/08/25 19:36:04 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [10611552] =>.Intel Corporation O58 - SDL:2009/07/13 20:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2009/07/10 09:45:12 A . (.Intel(R) Corporation - Intel(R) High Definition Audio HDMI.) -- C:\Windows\System32\drivers\IntcHdmi.sys [139264] =>.Intel(R) Corporation O58 - SDL:2009/06/20 06:35:00 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\Windows\System32\drivers\k57nd60a.sys [317480] =>.Broadcom Corporation® O58 - SDL:2009/06/19 21:09:57 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E62x64.sys [54272] =>.Atheros Communications, Inc. O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2009/02/24 17:35:44 A . (.MagicISO, Inc. - MagicISO SCSI Host Controller.) -- C:\Windows\System32\drivers\mcdbus.sys [255552] =>.JiaPing Gan® O58 - SDL:2009/06/10 16:15:04 A . (.Conexant - Diagnostic Interface x64 Driver.) -- C:\Windows\System32\drivers\mdmxsdk.sys [17024] =>.Conexant O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2009/05/05 18:46:08 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [18432] =>.NewTech Infosystems, Inc® O58 - SDL:2011/03/11 01:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 01:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2009/06/10 15:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/13 19:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 20:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2010/08/20 14:49:07 A . (.Symantec Corporation - Symantec Event Library.) -- C:\Windows\System32\drivers\SYMEVENT64x86.SYS [173104] =>.Symantec Corporation® O58 - SDL:2009/09/17 23:12:06 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [292912] =>.Synaptics Incorporated® O58 - SDL:2009/05/05 18:46:08 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [16896] =>.NewTech Infosystems, Inc® O58 - SDL:2012/12/13 13:50:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2009/10/02 17:30:10 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\viahduaa.sys [1240064] =>.VIA Technologies, Inc. O58 - SDL:2009/07/13 20:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2009/06/10 16:01:11 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL6.SYS [292864] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 16:01:11 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT6.SYS [740864] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 16:01:11 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV6.SYS [1485312] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 16:15:04 A . (.Conexant Systems, Inc. - Modem Audio Device Driver.) -- C:\Windows\System32\drivers\XAudio64.sys [10240] =>.Conexant Systems, Inc. ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- %ProgramFiles(x86)%\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\zizou\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (3) - 1s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {80c554b9-c7f8-4a21-9471-06d606da78a2} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (32) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2420736] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (53) - 10s O87 - FAEL: "{E2F17E43-76A5-43E8-80AA-160FCF23B4BD}" [In-None-P6-TRUE] .(...) -- c:\Program Files (x86)\CyberLink\PowerDVD8\PowerDVD8.EXE (.not file.) O87 - FAEL: "TCP Query User{76696082-F6C0-4C31-A33F-DEF487800F97}C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe (.not file.) O87 - FAEL: "UDP Query User{CC3C99EF-B476-4901-A3C7-31937F59B8C5}C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe (.not file.) O87 - FAEL: "TCP Query User{E7AA5C26-1F34-4358-AA39-B687F1507C13}C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe (.not file.) O87 - FAEL: "UDP Query User{7C20FDAC-F2F6-44E8-AE7A-4354083AF3B5}C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\voipbuster.com\voipbuster\voipbuster.exe (.not file.) O87 - FAEL: "TCP Query User{76F58D1A-7DE8-42C4-A4F4-37A5AF43F3A1}C:\program files (x86)\tightvnc-jaadu\winvnc.exe" [In-None-P6-TRUE] .(.TightVNC Group - TightVNC Win32 Server.) -- C:\program files (x86)\tightvnc-jaadu\winvnc.exe O87 - FAEL: "UDP Query User{2DA10F71-8FB5-4A7D-B199-BA702758F003}C:\program files (x86)\tightvnc-jaadu\winvnc.exe" [In-None-P17-TRUE] .(.TightVNC Group - TightVNC Win32 Server.) -- C:\program files (x86)\tightvnc-jaadu\winvnc.exe O87 - FAEL: "TCP Query User{ECC8FAA2-3067-439E-B717-A05EFAC53D14}C:\program files (x86)\torrentbitch\torrentbitch.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\torrentbitch\torrentbitch.exe (.not file.) O87 - FAEL: "UDP Query User{91BAB3E8-46AD-469D-958E-1062929F1FC0}C:\program files (x86)\torrentbitch\torrentbitch.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\torrentbitch\torrentbitch.exe (.not file.) O87 - FAEL: "{FADCBAE4-CB3F-465D-8583-550F73C436BA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\TightVNC\tvnserver.exe (.not file.) O87 - FAEL: "{CA3AE9D8-D5A0-46E4-8D02-893CFE57FA9F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TightVNC\tvnserver.exe (.not file.) O87 - FAEL: "{10E2F222-467E-4972-9313-AE0C10BAA865}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\TightVNC\vncviewer.exe (.not file.) O87 - FAEL: "{712E156C-7759-4FC7-97A4-FA0FA249FB6F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TightVNC\vncviewer.exe (.not file.) O87 - FAEL: "{8B7633B2-F058-44CE-B9B5-B7797C4AC0BC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\adslTV\adsltv.exe (.not file.) O87 - FAEL: "{A20B4DC4-CC69-490E-8E85-08C9DF256DDB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\adslTV\adsltv.exe (.not file.) O87 - FAEL: "{CC96F679-DFB5-4390-8E5A-7DD3809DBECC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\adslTV\VLC\vlc.exe (.not file.) O87 - FAEL: "{8BB400A0-7C9D-460F-9501-463EDFC4B83D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\adslTV\VLC\vlc.exe (.not file.) O87 - FAEL: "TCP Query User{C7CE981B-5867-44F2-8D80-7FA677FB9F3B}C:\program files (x86)\tvants\tvants.exe" [In-None-P6-TRUE] .(.Zhejiang University - TVAnts.) -- C:\program files (x86)\tvants\tvants.exe O87 - FAEL: "UDP Query User{5E299AB5-0ED9-4338-97A3-6F5373212CB9}C:\program files (x86)\tvants\tvants.exe" [In-None-P17-TRUE] .(.Zhejiang University - TVAnts.) -- C:\program files (x86)\tvants\tvants.exe O87 - FAEL: "TCP Query User{A722B988-C6EE-4F2C-B949-186DB469252F}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\mozilla firefox\firefox.exe (.not file.) O87 - FAEL: "UDP Query User{1C0DB8C2-34D5-4930-8CFC-0F3F5AA9FA44}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\mozilla firefox\firefox.exe (.not file.) O87 - FAEL: "{8C950985-7712-46EE-92F8-02E9F7D7180D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Vuze\Azureus.exe (.not file.) O87 - FAEL: "{838AC45A-6C71-4957-B1D9-0102764782B5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Vuze\Azureus.exe (.not file.) O87 - FAEL: "{B05C2D34-7D5C-45CB-A141-606265A253AB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgdiagex.exe (.not file.) O87 - FAEL: "{194F16F5-5451-4C50-B02E-7E7C0D8C38B9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgdiagex.exe (.not file.) O87 - FAEL: "{8AA0D183-C81A-4A5C-98F5-1469D8CC4081}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgnsa.exe (.not file.) O87 - FAEL: "{DFCC4177-16F4-4FC5-801E-AD36FAF8CF52}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgnsa.exe (.not file.) O87 - FAEL: "{54078EA7-D820-4710-97C1-6ECDF9F75AB7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe (.not file.) O87 - FAEL: "{E0E4143B-E6DF-45FD-88ED-65C88F2ADF05}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe (.not file.) O87 - FAEL: "{AB143AD4-212B-4BD2-816D-4089091A9F82}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgam.exe (.not file.) O87 - FAEL: "{14463A47-9960-4F38-8582-2BE5A4C81DC5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgam.exe (.not file.) O87 - FAEL: "{3AE149E7-8278-49EE-81C9-99D3EC95A5BD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgemca.exe (.not file.) O87 - FAEL: "{B2759891-1D2F-450F-A3D0-4035CB70A62A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\AVG10\avgemca.exe (.not file.) O87 - FAEL: "{41AAF886-4D87-41AA-93E2-8F7CAACC712A}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\ZoneLabs\vsmon.exe (.not file.) O87 - FAEL: "{5D501AF0-20E2-45BD-AA97-9F463C7119FF}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\ZoneLabs\vsmon.exe (.not file.) O87 - FAEL: "TCP Query User{8EB9B45F-2C29-4C6B-A3B6-821B77C39453}C:\program files (x86)\tvants\tvants.exe" [In-None-P6-TRUE] .(.Zhejiang University - TVAnts.) -- C:\program files (x86)\tvants\tvants.exe O87 - FAEL: "UDP Query User{4960CB55-8259-4342-8686-088DE6826D47}C:\program files (x86)\tvants\tvants.exe" [In-None-P17-TRUE] .(.Zhejiang University - TVAnts.) -- C:\program files (x86)\tvants\tvants.exe O87 - FAEL: "{B04CBA46-1BBE-44D0-AE1E-237B41723F52}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\YourFileDownloader\Downloader.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{44806683-1322-4C3A-9644-BD49C2089FBB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\YourFileDownloader\Downloader.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{64F4DE4C-FD74-4797-A727-2FB8A9AE0612}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\YourFileDownloader\YourFile.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{FD1C47EB-E9B7-47D2-B391-333A56431483}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\YourFileDownloader\YourFile.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "TCP Query User{6F7249BA-1261-4539-B318-FAF2AE98DD30}C:\ti-nspire cas student software\ti-nspire cas student software.exe" [In-None-P6-TRUE] .(...) -- C:\ti-nspire cas student software\ti-nspire cas student software.exe (.not file.) O87 - FAEL: "UDP Query User{A9630AA7-BC53-4E6C-8BC5-032C42EAB405}C:\ti-nspire cas student software\ti-nspire cas student software.exe" [In-None-P17-TRUE] .(...) -- C:\ti-nspire cas student software\ti-nspire cas student software.exe (.not file.) O87 - FAEL: "TCP Query User{F2372403-FDF0-49A9-BA06-8001258AF0A5}C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe (.not file.) O87 - FAEL: "UDP Query User{CB38DB85-9328-42F9-96A0-CA5584B2122F}C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe (.not file.) O87 - FAEL: "{2A87E413-7794-4576-ABC9-66B81E6263A8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Bradford Networks\Persistent Agent\bndaemon.exe (.not file.) O87 - FAEL: "{155ACCCB-6711-46B2-A96C-83E2D065E947}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Bradford Networks\Persistent Agent\bndaemon.exe (.not file.) O87 - FAEL: "{02E2E70E-4A61-4845-9A48-FBA36DFBDB37}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\dmwu.exe (.not file.) O87 - FAEL: "{6002A653-16CC-4AF1-86BC-ABB1A1B24B1A}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\dmwu.exe (.not file.) O87 - FAEL: "{6F12541A-76BA-4838-B525-1717BAE14F9D}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\ARFC\wrtc.exe (.not file.) =>.Superfluous.Perion O87 - FAEL: "{74618984-720A-4B3A-9923-2B17BD5D3491}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\ARFC\wrtc.exe (.not file.) =>.Superfluous.Perion O87 - FAEL: "TCP Query User{270E8038-7E3F-4208-ABD8-867B1ADDF729}C:\users\zizou\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P6-TRUE] .(...) -- C:\users\zizou\appdata\roaming\acestream\engine\ace_engine.exe {0098482CF6234AA973EFE82ED8EEFE5361} O87 - FAEL: "UDP Query User{465DD724-71C6-4FBF-8E16-352F45C79550}C:\users\zizou\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P17-TRUE] .(...) -- C:\users\zizou\appdata\roaming\acestream\engine\ace_engine.exe {0098482CF6234AA973EFE82ED8EEFE5361} ---\\ Enumère les codes produits des logiciels (1) - 6s O90 - PUC: "3A9F56B942D9A2546BFE41756DE52495" . (.ScorpionSaver.) -- c:\Windows\Installer\{9B65F9A3-9D24-452A-B6EF-1457D65E4259}\icon64.ico =>PUP.Optional.ScorpionSaver ---\\ Scan Additionnel (54) - 0s C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll =>Hijacker.Winsock C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll =>Hijacker.Winsock HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Solid Savings =>PUP.Optional.VidSaver HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Solid Savings =>PUP.Optional.VidSaver HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha2165 =>PUP.Optional.MediaViewer HKLM\SOFTWARE\Wow6432Node\WhiteSmoke =>PUP.Optional.WhiteSmoke HKLM\SOFTWARE\Wow6432Node\WhiteSmokeTranslator =>PUP.Optional.WhiteSmoke HKCU\SOFTWARE\2D8E2AA632B9F2BEC50DB35981E9F08E =>PUP.Optional.CrossRider HKCU\SOFTWARE\SearchProtectP =>PUP.Optional.SearchProtect HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\WajamCheck =>PUP.Optional.Wajam HKCU\SOFTWARE\WhiteSmoke =>PUP.Optional.WhiteSmoke HKCU\SOFTWARE\WhiteSmokeTranslator =>PUP.Optional.WhiteSmoke HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.SmartBar C:\Program Files (x86)\qualitink =>PUP.Optional.Qualitink C:\Program Files (x86)\Smart File Advisor =>.Superfluous.Totalpc C:\Program Files (x86)\Solid Savings =>PUP.Optional.SolidSavings C:\Program Files (x86)\SweetPacks_A11 =>PUP.Optional.SweetIM C:\Program Files (x86)\WhiteSmokeTranslator =>PUP.Optional.WhiteSmoke C:\ProgramData\InstallMate =>.Superfluous.Tarma C:\Users\zizou\AppData\Local\Bron.tok-17-1 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-11 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-12 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-13 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-14 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-15 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-16 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-17 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-18 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-19 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-2 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-20 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-21 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-22 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-23 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-24 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-25 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-26 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-27 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-28 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-29 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-3 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-30 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-31 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-4 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-5 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-7 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-8 =>Worm.Brontok C:\Users\zizou\AppData\Local\Bron.tok-17-9 =>Worm.Brontok C:\Users\zizou\AppData\Local\Loc.Mail.Bron.Tok =>Worm.Brontok C:\Users\zizou\AppData\Local\Solid Savings =>PUP.Optional.SolidSavings c:\Windows\Installer\{9B65F9A3-9D24-452A-B6EF-1457D65E4259}\icon64.ico =>PUP.Optional.ScorpionSaver HKLM\Software\Classes\Installer\Products\3A9F56B942D9A2546BFE41756DE52495 =>PUP.Optional.ScorpionSaver HKLM\Software\Classes\Installer\Features\3A9F56B942D9A2546BFE41756DE52495 =>PUP.Optional.ScorpionSaver ---\\ Récapitulatif des éléments trouvés sur votre station (17) - 0s http://www.nicolascoolman.fr/?p=641 =>PUP.Optional.SoftwareUpdater http://www.nicolascoolman.fr/?p=1633 =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/?p=251 =>PUP.Optional.VidSaver http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.MediaViewer http://www.nicolascoolman.fr/?p=318 =>PUP.Optional.WhiteSmoke http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/?p=308 =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/?p=263 =>PUP.Optional.Wajam http://www.nicolascoolman.fr/?p=1644 =>PUP.Optional.Qualitink http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Totalpc http://www.nicolascoolman.fr/pup-solidsavings/ =>PUP.Optional.SolidSavings http://www.nicolascoolman.fr/?p=332 =>PUP.Optional.SweetIM http://www.nicolascoolman.fr/?p=259 =>.Superfluous.Tarma http://www.nicolascoolman.fr/?p=384 =>Worm.Brontok http://www.nicolascoolman.fr/?p=1128 =>PUP.Optional.YourFileDownloader http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Perion http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.ScorpionSaver ~ End of the scan, 61940 items in 00h10mn39s (1376)(0)