~ ZHPDiag v2016.1.16.17 Par Nicolas Coolman (2016/01/16) ~ Démarré par scandella (Administrator) (2016/01/17 21:40:58) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\scandella\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\scandella\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v24.0.1312.57 MSIE: Internet Explorer v11.0.9600.17801 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 28s McAfee Internet Security v14.0.6136 Windows Defender W7 (Deactivate) ---\\ Logiciels de protection et autres (Superflus) (1) - 29s McAfee Security Scan Plus v3.11.266.3 ---\\ Surveillance de Logiciels (2) - 30s Adobe Flash Player 20 ActiveX Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4122.6 MB (26% free) System Restore: Activé (Enable) System drive C: has 356 GB () free of 464 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: SCANDELLA-PC ~ User Name: scandella ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 0s ~ Drive C: has 356 GB free of 464 GB (System) ---\\ Etat du Centre de Sécurité Windows (12) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 16s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.F0289B3A341429117696F0279DA977B6] - 21/04/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2352128] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.FA886682CFC5D36718D3E436AACF10B9] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497152] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.A5D9106A73DC88564C825D317CAC68AC] - 27/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [158208] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.70988118145F5F10EF24720B97F35F65] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (22) - 13s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: DefaultTabUpdate (DefaultTabUpdate) . (...) - C:\Users\scandella\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe =>PUP.Optional.Bandoo O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe =>.Acer Incorporated® O23 - Service: GRegService (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe =>.Acer Incorporated® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: McAfee Home Network (HomeNetSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe =>.Intel Corporation® O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - McAfee WebAdvisor.) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.® O23 - Service: McAfee AP Service (McAPExe) . (.McAfee, Inc. - McAfee Access Protection.) - C:\Program Files\McAfee\MSC\McAPExe.exe =>.McAfee, Inc.® O23 - Service: McAfee CSP Service (mccspsvc) . (.McAfee, Inc. - McAfee CSP Service Host.) - C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe =>.McAfee, Inc.® O23 - Service: McAfee Personal Firewall Service (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® O23 - Service: McAfee VirusScan Announcer (McNaiAnn) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® O23 - Service: McAfee Platform Services (mcpltsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® O23 - Service: McAfee Proxy Service (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® O23 - Service: McAfee Service Controller (mfemms) . (.McAfee, Inc. - McAfee Management Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.® O23 - Service: McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\System32\mfevtps.exe =>.McAfee, Inc.® O23 - Service: 1% (MOBKbackup) . (...) - C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe (.not file.) O23 - Service: McAfee Anti-Spam Service (MSK80Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 SchedulerSvc NT Service.) - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe =>.NewTech Infosystems, Inc® O23 - Service: Software Update Service (supdate) (supdate) . (.Boxore OU. - Programme d'installation de Software.) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore O23 - Service: Updater Service (Updater Service) . (.Acer - Acer Update Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe =>.Acer Incorporated® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (30) - 104s SR - Auto [13/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [03/01/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [03/02/2013] [ 107520] DefaultTabUpdate (DefaultTabUpdate) . (...) - C:\Users\scandella\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe =>PUP.Optional.Bandoo SR - Auto [30/09/2009] [ 844320] Acer ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe =>.Acer Incorporated® SR - Auto [28/08/2009] [ 1150496] GRegService (Greg_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe =>.Acer Incorporated® SS - Auto [26/06/2011] [ 135664] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [26/06/2011] [ 135664] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [21/08/2012] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [02/11/2015] [ 451960] McAfee Home Network (HomeNetSvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® SR - Auto [13/10/2009] [ 354840] Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe =>.Intel Corporation® SR - Auto [28/03/2012] [ 140456] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® SR - Auto [02/12/2015] [ 157928] McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc..) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.® SR - Auto [03/12/2015] [ 863448] McAfee AP Service (McAPExe) . (.McAfee, Inc..) - C:\Program Files\McAfee\MSC\McAPExe.exe =>.McAfee, Inc.® SS - Demand [02/12/2015] [ 289256] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.266\McCHSvc.exe =>.McAfee, Inc.® SR - Auto [02/12/2015] [ 1694152] McAfee CSP Service (mccspsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe =>.McAfee, Inc.® SR - Auto [02/11/2015] [ 451960] McAfee Personal Firewall Service (McMPFSvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® SR - Auto [02/11/2015] [ 451960] McAfee VirusScan Announcer (McNaiAnn) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® SS - Demand [20/10/2015] [ 679120] McAfee Scanner (McODS) . (.McAfee, Inc..) - C:\Program Files\McAfee\VirusScan\mcods.exe =>.McAfee, Inc.® SR - Auto [02/11/2015] [ 451960] McAfee Platform Services (mcpltsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® SR - Auto [02/11/2015] [ 451960] McAfee Proxy Service (McProxy) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® SR - Demand [21/09/2015] [ 233680] McAfee Firewall Core Service (mfefire) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe =>.McAfee, Inc.® SR - Auto [21/10/2015] [ 378848] McAfee Service Controller (mfemms) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.® SR - Auto [21/09/2015] [ 256840] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc..) - C:\Windows\system32\mfevtps.exe =>.McAfee, Inc. SR - Auto [02/11/2015] [ 451960] McAfee Anti-Spam Service (MSK80Service) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.® SS - Demand [10/09/2009] [ 305448] MyWinLocker Service (MWLService) . (.Egis Technology Inc..) - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe =>.EGIS TECHNOLOGY INC.® SS - Demand [18/06/2009] [ 50432] NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe =>.NewTech Infosystems, Inc® SR - Auto [18/06/2009] [ 144640] NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe =>.NewTech Infosystems, Inc® SS - Auto [04/02/2013] [ 139576] Software Update Service (supdate) (supdate) . (.Boxore OU..) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore SR - Auto [04/07/2009] [ 240160] Updater Service (Updater Service) . (.Acer.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe =>.Acer Incorporated® ---\\ Tâches planifiées en automatique (23) - 6s [MD5.4EAF6F8F0B3BE33A0E3877EB7FFD48D4] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656] =>.Adobe Systems, Incorporated® [MD5.84DB0A40692CF8A58D1E3710FA5D121F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.00000000000000000000000000000000] [APT] [BoxSoftwareUpdate] (...) -- C:\ProgramData\BoxUpdChk\updchk.exe (.not file.) [0] =>PUP.Optional.Boxore [MD5.C649BD38C31322113468D2998966B2B7] [APT] [DefaultCheck] (...) -- c:\Users\All Users\dtdata\R002.exe [193112] {64CA9F4A3D9A5E89553273D5E484CBE9} [MD5.00000000000000000000000000000000] [APT] [DefaultReg] (...) -- c:\Users\All Users\dtdata\R001.exe (.not file.) [0] [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [135664] =>.Google Inc® [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [135664] =>.Google Inc® [MD5.251A1AED2D4A26A47C0A4A3058AAE4A8] [APT] [SoftwareUpdateTaskMachineCore] (.Boxore OU..) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [139576] =>PUP.Optional.Boxore [MD5.251A1AED2D4A26A47C0A4A3058AAE4A8] [APT] [SoftwareUpdateTaskMachineUA] (.Boxore OU..) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [139576] =>PUP.Optional.Boxore O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc. O39 - APT: SoftwareUpdateTaskMachineCore - (.Boxore OU..) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job [1088] =>PUP.Optional.Boxore O39 - APT: SoftwareUpdateTaskMachineUA - (.Boxore OU..) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job [1092] =>PUP.Optional.Boxore O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated O39 - APT: BoxSoftwareUpdate - (...) -- C:\Windows\System32\Tasks\BoxSoftwareUpdate [3284] (.Orphean.) =>PUP.Optional.Boxore O39 - APT: DefaultCheck - (...) -- C:\Windows\System32\Tasks\DefaultCheck [3680] O39 - APT: DefaultReg - (...) -- C:\Windows\System32\Tasks\DefaultReg [3680] (.Orphean.) O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc. O39 - APT: SoftwareUpdateTaskMachineCore - (.Boxore OU..) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineCore [3836] =>PUP.Optional.Boxore O39 - APT: SoftwareUpdateTaskMachineUA - (.Boxore OU..) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA [4088] =>PUP.Optional.Boxore ---\\ Processus lancés (47) - 12s [MD5.8F0DE4FEF8201E306F9938B0905AC96A] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [135664] [PID.1764] =>.Google Inc® [MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1036] =>.Adobe Systems, Incorporated® [MD5.34AE0DFA3EE3B5B9975042D87332D0B7] - (...) -- C:\Users\scandella\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe [107520] [PID.1216] [MD5.FB67AA8AC61B9365ADD546139A21BED6] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [844320] [PID.1516] =>.Acer Incorporated® [MD5.816FD5A6F3C2F3D600900096632FC60E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [1150496] [PID.1172] =>.Acer Incorporated® [MD5.EDCCC8C13B1EB882F77BA0ABB84566E7] - (.Copyright CANON INC. 2006-2012 All Rights Reserved - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe [140456] [PID.704] =>.Canon Inc.® [MD5.5096855DA1FB50A028ACA15B5CC358D9] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [157928] [PID.1728] =>.McAfee, Inc.® [MD5.29CAAED140D5A9E837E1188FA2EF0FD0] - (.McAfee, Inc. - McAfee Management Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [378848] [PID.1800] =>.McAfee, Inc.® [MD5.C76DEBD4675A90C6A9CECA4E12F9295C] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\System32\mfevtps.exe [256840] [PID.1948] =>.McAfee, Inc.® [MD5.3F6268A2EC33CD38CF75C880AF8DED42] - (.NewTech Infosystems, Inc. - NTI Backup Now 5 SchedulerSvc NT Service.) -- C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [144640] [PID.2076] =>.NewTech Infosystems, Inc® [MD5.C76DEBD4675A90C6A9CECA4E12F9295C] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\System32\mfevtps.exe [256840] [PID.2092] =>.McAfee, Inc.® [MD5.2F95003AA0074E67DA44F472A2BCE399] - (.McAfee, Inc. - McAfee Scanner service.) -- C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1046296] [PID.2128] =>.McAfee, Inc.® [MD5.70DDE3A86DBEB1D6C3C30AD687B1877A] - (.Acer - Acer Update Service.) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe [240160] [PID.2284] =>.Acer Incorporated® [MD5.660BF3255A1EB18ED803FD2FBA6AE400] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe [354840] [PID.2432] =>.Intel Corporation® [MD5.0A8120FB835F5FC47609F7C7744343C2] - (.McAfee, Inc. - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [233680] [PID.2756] =>.McAfee, Inc.® [MD5.DB0B5D190F92DE7ED732EC51DCB4D49B] - (.McAfee, Inc. - McAfee Access Protection.) -- C:\Program Files\McAfee\MSC\McAPExe.exe [863448] [PID.2768] =>.McAfee, Inc.® [MD5.0A8120FB835F5FC47609F7C7744343C2] - (.McAfee, Inc. - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [233680] [PID.2828] =>.McAfee, Inc.® [MD5.47F727600D00D12E15748FCCAF29E6FA] - (.McAfee, Inc. - McAfee Service Host.) -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [451960] [PID.2884] =>.McAfee, Inc.® [MD5.D1930CA970D4250D891F432419E3D6C9] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [186904] [PID.3716] =>.Intel Corporation® [MD5.E64270B5DB7218E60AD62ED0C52E3A09] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [823840] [PID.3760] =>.Acer Incorporated® [MD5.3F09D12C0DF3BFF61E80309063F165D2] - (.Egis Technology Inc. - MyWinLocker.) -- C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480] [PID.3228] =>.EGIS TECHNOLOGY INC.® [MD5.910AFE116ADE17C93E892C38452075F9] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7982112] [PID.3236] =>.Realtek Semiconductor Corp® [MD5.3871366824799F77A299FBD06DE7507E] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [301056] [PID.3284] =>.Alps Electric Co., Ltd. [MD5.2F2DF068BED6E62E4C007DF7446B4F19] - (.Copyright (C) 2007 - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe [200704] [PID.3560] [MD5.2F16207A65B62001FC73E6798D0B8F2A] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [386584] [PID.3768] =>.Intel Corporation® [MD5.B69A01794D44C769C2575AE75E2EB31F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [415256] [PID.3392] =>.Intel Corporation® [MD5.D890EDDD0528E04049C9D524FBA1C506] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [508952] [PID.3796] =>.Intel Corporation® [MD5.C373124A5CA723B53C0948B6343E4C87] - (.Intel Corporation - igfxext Module.) -- C:\Windows\System32\igfxext.exe [223768] [PID.3792] =>.Intel Corporation® [MD5.A7BFE47052F8A76AD739C31B8CF006E3] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe [330456] [PID.4032] =>.McAfee, Inc.® [MD5.2CA8BDCD46DA5CFA6B54A067BA27267E] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe [467488] [PID.4276] =>.Acer Incorporated® [MD5.34BC222864CEF86DABB5032DA36485DA] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1157128] [PID.4720] =>.Dritek System Inc.® [MD5.1AF9CB7C8158D38A6CC8D6834C2043E0] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [66856] [PID.4768] =>.Alps Electric Co., LTD.® [MD5.EF533F9D1E4F51C783D4349A7C3F518F] - (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [199464] [PID.4780] =>.EGIS TECHNOLOGY INC.® [MD5.9D9B61AF3DBDC1490CBC508C8380510B] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\ApntEx.exe [23552] [PID.4500] =>.Alps Electric Co., Ltd. [MD5.B569E48B3A30E24601FCE6C98501E383] - (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [419112] [PID.2880] =>.CyberLink® [MD5.FA2A98A2B7E5604CF041405E1706CF5B] - (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480] [PID.5112] =>.CyberLink® [MD5.0B836459B84E16F3D3F908AEC8352041] - (. - Printer Card Transfer Monitor.) -- C:\Program Files (x86) (x86)\Lexmark X5400 Series\lxdvamon.exe [25256] [PID.2248] =>.Lexmark International, Inc.® [MD5.CDFFB0058BA113ED8C6099DE11FAAD49] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448] [PID.4884] =>.Canon Inc.® [MD5.A14D72B43D5138E18629253F77ABF5CB] - (.Boxore OU - Boxore.) -- C:\Program Files (x86)\Boxore\Boxore Client\boxore.exe [1527808] [PID.5128] =>PUP.Optional.Boxore [MD5.A14D72B43D5138E18629253F77ABF5CB] - (.Boxore OU - Boxore.) -- C:\Program Files (x86)\Boxore\Boxore Client\boxore.exe [1527808] [PID.5236] =>PUP.Optional.Boxore [MD5.BE4F25620D39E7FA1A9CB715E2F60E96] - (.CANON INC. - Canon Quick Menu Updater.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE [1087608] [PID.5988] =>.Canon Inc.® [MD5.C2AFC01FA404ADFD3B915730C7DB2D55] - (.CANON INC. - Canon Quick Menu Image Display.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE [940168] [PID.5996] =>.Canon Inc.® [MD5.C82884FD99A4A17A43B1EC6F654E8EDF] - (.CANON INC. - Canon My Image Garden.) -- C:\Program Files (x86)\Canon\My Image Garden\cnmigmain.exe [559736] [PID.3568] =>.Canon Inc.® [MD5.92D753DC474A4DD78ABB24A32DE53A55] - (.McAfee, Inc. - McAfee CSP Service Host.) -- C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe [1694152] [PID.2632] =>.McAfee, Inc.® [MD5.8C9BD078573EB023066B39B22D349ACD] - (.McAfee, Inc. - McAfee.) -- C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [791360] [PID.4612] =>.McAfee, Inc.® [MD5.B0B3FF0981D7CA2A4662604E4562742D] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil64_20_0_0_270_ActiveX.exe [879808] [PID.4704] =>.Adobe Systems Incorporated® [MD5.27CE6F79851F228BA18A4B0ED527AC57] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\scandella\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J97YBHME\ZHPDiag3.exe [2081280] [PID.7280] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (7) - 30s G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [engaigpbgdjjmanonjcjkcmomgibneba] ["update_url": "http://dlmanager.net/chro] Smart Display =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [eooncjejnppfjjklapaamhcdmjbilmde] [http://img.delta-search.com/ext/chrome/update/upda] Delta Toolbar =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [fheoggkfdfchfphceeifdbepaooicaho] SiteAdvisor G2 - GCE: Preference [User Data\Default] [pbpohikckhbcljgombipcdoinkaedlfa] ["update_url": "http://dlmanager.net/chro] Smart Display =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 2s P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- c:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll =>.McAfee Total Protection MIME Plugin P2 - FPN: [HKLM] [@www.dlmanager.net/omaha/tools//Software Update;version=8] - (.Boxore OU..) -- C:\Program Files (x86)\Software\Update\1.2.201.0\npSoftwareOneClick8.dll =>PUP.Optional.Boxore ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKEY_USERS\S-1-5-21-3836272904-2792645365-4267722713-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (2) - 0s 0 ~ Le fichier hôte est sain (The hosts file is clean) (26) ---\\ Browser Helper Object de navigateur (BHO) (1) - 0s O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc® ---\\ Internet Explorer, Barre d'outil (1) - 1s O3 - Toolbar: Delta Toolbar - [HKLM]{82E1477C-B154-48D3-9891-33D83C26BCD3} . (.Delta-search.com - .) -- C:\Program Files (x86)\Delta\delta\1.8.10.0\deltaTlbr.dll =>.Montera Technologeis LTD® ---\\ Applications lancées au démarrage du système (24) - 3s O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Acer ePower Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe =>.Acer Incorporated® O4 - HKLM\..\Run: [mwlDaemon] . (.Egis Technology Inc. - MyWinLocker.) -- C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe =>.EGIS TECHNOLOGY INC.® O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe =>.Alps Electric Co., Ltd. O4 - HKLM\..\Run: [PLFSetI] . (.Copyright (C) 2007 - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe =>.Dritek System Inc.® O4 - HKLM\..\Wow6432Node\Run: [EgisTecLiveUpdate] . (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe =>.EGIS TECHNOLOGY INC.® O4 - HKLM\..\Wow6432Node\Run: [NortonOnlineBackupReminder] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe =>.Symantec Corporation® O4 - HKLM\..\Wow6432Node\Run: [ArcadeDeluxeAgent] . (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe =>.CyberLink® O4 - HKLM\..\Wow6432Node\Run: [PlayMovie] . (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe =>.CyberLink® O4 - HKLM\..\Wow6432Node\Run: [mcui_exe] . (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe =>.McAfee, Inc.® O4 - HKLM\..\Wow6432Node\Run: [lxdvmon.exe] . (. - Printer Device Monitor.) -- C:\Program Files (x86) (x86)\Lexmark X5400 Series\lxdvmon.exe =>.Lexmark International, Inc.® O4 - HKLM\..\Wow6432Node\Run: [lxdvamon] . (. - Printer Card Transfer Monitor.) -- C:\Program Files (x86) (x86)\Lexmark X5400 Series\lxdvamon.exe =>.Lexmark International, Inc.® O4 - HKLM\..\Wow6432Node\Run: [Lexmark X5400 Series] . (.Copyright (C) 2003 - Fax Man Server.) -- C:\Program Files (x86) (x86)\Lexmark X5400 Series\fm3032.exe =>.Lexmark International, Inc.® O4 - HKLM\..\Wow6432Node\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.® O4 - HKLM\..\Wow6432Node\Run: [Boxore Client] . (.Boxore OU - Boxore.) -- C:\Program Files (x86)\Boxore\Boxore Client\boxore.exe =>PUP.Optional.Boxore O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (18) - 11s O4 - GS\Desktop [Administrateur]: 27.09.2015 016.JPG - Raccourci.lnk . (...) C:\Users\scandella\Pictures\CANAL DU MIDI 27.09.2015\27.09.2015 016.JPG O4 - GS\Desktop [Administrateur]: SAM_0847.JPG - Raccourci.lnk . (...) C:\Users\scandella\Pictures\CANAL DU MIDI 27.09.2015\SAM_0847.JPG O4 - GS\Desktop [Administrateur]: Toute.Premiere.Fois.2015.FRENCH.BRRip.XviD.AC3-S.V.zone-telechargement.com.avi - Raccourci.lnk . (...) E:\Toute.Premiere.Fois.2015.FRENCH.BRRip.XviD.AC3-S.V.zone-telechargement.com.avi O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\scandella\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated® O4 - GS\Desktop [scandella]: 27.09.2015 016.JPG - Raccourci.lnk . (...) C:\Users\scandella\Pictures\CANAL DU MIDI 27.09.2015\27.09.2015 016.JPG O4 - GS\Desktop [scandella]: SAM_0847.JPG - Raccourci.lnk . (...) C:\Users\scandella\Pictures\CANAL DU MIDI 27.09.2015\SAM_0847.JPG O4 - GS\Desktop [scandella]: Toute.Premiere.Fois.2015.FRENCH.BRRip.XviD.AC3-S.V.zone-telechargement.com.avi - Raccourci.lnk . (...) E:\Toute.Premiere.Fois.2015.FRENCH.BRRip.XviD.AC3-S.V.zone-telechargement.com.avi O4 - GS\Desktop [scandella]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\scandella\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [scandella]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [scandella]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files (x86)\Acer\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated® O4 - GS\CommonDesktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Canon Quick Menu.lnk . (.CANON INC. - Canon Quick Menu.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.® O4 - GS\CommonDesktop [Public]: McAfee Internet Security.lnk . (.McAfee, Inc. - McAfee.) C:\Program Files (x86)\McAfee.com\Agent\mcagent.exe =>.McAfee, Inc.® O4 - GS\CommonDesktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee.) C:\Program Files\McAfee Security Scan\3.11.266\McUICnt.exe =>.McAfee, Inc.® O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe =>.McAfee, Inc.® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.20 109.0.66.10 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8CCE4227-FD47-47ED-B841-74FEE056AF13}: DhcpNameServer = 109.0.66.20 109.0.66.10 ---\\ Protocole additionnel (29) - 3s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dssrequest [64Bits] - {5513F07E-936B-4E52-9B00-067394E91CC5} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll =>.McAfee, Inc.® O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation® O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: sacore [64Bits] - {5513F07E-936B-4E52-9B00-067394E91CC5} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll =>.McAfee, Inc.® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-mfe-ipt [64Bits] - {3EF5086B-5478-4598-A054-786C45D75692} . (.McAfee, Inc. - McAfee MSC IE plugin DLL.) -- c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll =>.McAfee, Inc.® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (80) - 20s O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761} =>.CyberLink® O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761} =>.CyberLink® O42 - Logiciel: Acer Crystal Eye Webcam - (.Suyin Optronics Corp.) [HKLM][64Bits] -- {7760D94E-B1B5-40A0-9AA0-ABF942108755} =>.Macrovision Corporation® O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} =>.Acer Incorporated O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated® O42 - Logiciel: Acer GameZone Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1 =>.Oberon Media, Inc. O42 - Logiciel: Acer GridVista - (.Acer Inc..) [HKLM][64Bits] -- GridVista =>.Dritek System Inc.® O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Registration =>.Acer Incorporated® O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Screensaver =>.Acer Incorporated O42 - Logiciel: Acer Updater - (.Acer Incorporated.) [HKLM][64Bits] -- {EE171732-BEB4-4576-887D-CB62727F01CA} =>.Acer Incorporated® O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} =>.Adobe Systems Inc. O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.13) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Alice Greenfingers - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767} =>.Oberon Media O42 - Logiciel: ALPS Touch Pad Driver - (.Alps Electric.) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.® O42 - Logiciel: Amazonia - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477} =>.Oberon Media O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Atheros Communications Inc. O42 - Logiciel: Boxore Client - (.Boxore OU.) [HKLM][64Bits] -- {DE778E8E-5286-41FF-A85E-D41A6384DD83} =>PUP.Optional.Boxore O42 - Logiciel: Canon Easy-WebPrint EX - (...) [HKLM][64Bits] -- Easy-WebPrint EX =>.Canon Inc.® O42 - Logiciel: Canon IJ Scan Utility - (.‪Canon Inc.‬.) [HKLM][64Bits] -- Canon_IJ_Scan_Utility =>.Canon Inc.® O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM][64Bits] -- CANONIJPLM100 =>.Canon Inc.® O42 - Logiciel: Canon MP230 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP230_series =>.Canon Inc.® O42 - Logiciel: Canon MP230 series On-screen Manual - (.Canon Inc..) [HKLM][64Bits] -- Canon MP230 series On-screen Manual =>.Canon Inc.® O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden =>.Canon Inc.® O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden Design Files =>.Canon Inc.® O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter =>.Canon Inc.® O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu =>.Canon Inc.® O42 - Logiciel: Chicken Invaders 2 - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593} =>.Oberon Media O42 - Logiciel: Dairy Dash - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100} =>.Oberon Media O42 - Logiciel: DefaultTab - (.Search Results, LLC.) [HKLM][64Bits] -- DefaultTab {00B6815DF3B6D64839E008D65B53EF0170} =>PUP.Optional.IMBooster O42 - Logiciel: Delta Chrome Toolbar - (.DeltaInstaller.) [HKLM][64Bits] -- {177586E7-E42E-4F38-83D1-D15B4AF5B714} =>Toolbar.DeltaSearch O42 - Logiciel: Delta toolbar - (.Delta.) [HKLM][64Bits] -- delta {48C39FBA62460E24E169054FE518E0AF} =>Toolbar.DeltaSearch O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110} =>.Oberon Media O42 - Logiciel: eBay Worldwide - (.OEM.) [HKLM][64Bits] -- {E0B19DF7-B1C7-4937-82C4-0E4B1E346965} =>.OEM O42 - Logiciel: Enregistrement utilisateur de Canon MP230 series - (.Canon Inc.‎.) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MP230 series =>.Canon Inc.® O42 - Logiciel: eSobi v2 - (.esobi Inc..) [HKLM][64Bits] -- {15D967B5-A4BE-42AE-9E84-64CD062B25AA} =>.esobi Inc. O42 - Logiciel: eSobi v2 - (.esobi Inc..) [HKLM][64Bits] -- InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA} =>.esobi Inc. O42 - Logiciel: Farm Frenzy 2 - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173} =>.Oberon Media O42 - Logiciel: First Class Flurry - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115208410} =>.Oberon Media O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>.Google Inc. O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Granny In Paradise - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697} =>.Oberon Media O42 - Logiciel: Heroes of Hellas - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380} =>.Oberon Media O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- Identity Card =>.Acer Incorporated® O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- HDMI =>.Intel Corporation O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM][64Bits] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E} =>.Intel Corporation® O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {E2DFE069-083E-4631-9B6C-43C48E991DE5} =>.Microsoft Corporation O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager =>.Dritek System Inc.® O42 - Logiciel: Lexmark 5400 Series - (.Lexmark International, Inc..) [HKLM][64Bits] -- Lexmark 5400 Series {3FB8F5} =>.Lexmark International, Inc. O42 - Logiciel: Lexmark X5400 Series - (.Lexmark International, Inc..) [HKLM][64Bits] -- Lexmark X5400 Series =>.Lexmark International, Inc. O42 - Logiciel: McAfee Internet Security - (.McAfee, Inc..) [HKLM][64Bits] -- MSC =>.McAfee, Inc.® O42 - Logiciel: McAfee Online Backup - (.McAfee, Inc..) [HKLM][64Bits] -- {27C467F8-F8EF-4f68-BD72-D63632B2096C} =>.McAfee, Inc. O42 - Logiciel: McAfee Online Backup - (.McAfee, Inc..) [HKLM][64Bits] -- {CFF4500E-C5D6-695D-A027-B3D4DDED2CC3} =>.McAfee, Inc. O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan =>.McAfee, Inc.® O42 - Logiciel: McAfee WebAdvisor - (.McAfee, Inc..) [HKLM][64Bits] -- {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} =>.McAfee, Inc.® O42 - Logiciel: Merriam Websters Spell Jam - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477} =>.Oberon Media O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} =>.Microsoft Corporation O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} =>.Microsoft O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM][64Bits] -- {68301905-2DEA-41CE-A4D4-E8B443B099BA} =>.Egis Technology Inc. O42 - Logiciel: Norton Online Backup - (.Symantec.) [HKLM][64Bits] -- {C57BCDE1-7CB9-467D-B3BA-7E119916CDC1} =>.Symantec O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403} =>.NewTech Infosystems, Inc® O42 - Logiciel: NTI Backup Now Standard - (.NewTech Infosystems.) [HKLM][64Bits] -- {12EFA1A4-AC3B-443C-8143-237EDE760403} =>.NewTech Infosystems O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM][64Bits] -- {2413930C-8309-47A6-BC61-5EF27A4222BC} =>.NewTech Infosystems O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM][64Bits] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC} =>.NewTech Infosystems O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} =>.Realtek Semiconductor Corp® O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} =>.McAfee O42 - Logiciel: Software Update Helper - (.Boxore OU..) [HKLM][64Bits] -- {006E6A46-8D55-4F10-BBA8-2C9653B4278B} =>PUP.Optional.Boxore O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Welcome Center =>.Acer Incorporated® ---\\ HKCU & HKLM Software Keys (80) - 20s HKLM\SOFTWARE\Wow6432Node\Acer Incorporated HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\America Online HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Atheros Communications Inc. HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Canon HKLM\SOFTWARE\Wow6432Node\Compal HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Default Tab =>Toolbar.Agent HKLM\SOFTWARE\Wow6432Node\DellShared HKLM\SOFTWARE\Wow6432Node\Delta =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Digital River HKLM\SOFTWARE\Wow6432Node\EgisTec Egis Software Update HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Lexmark HKLM\SOFTWARE\Wow6432Node\LexmarkInkjet HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\LogMeIn Rescue HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\McAfeeMOBK HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Network Associates HKLM\SOFTWARE\Wow6432Node\NewTech Infosystems HKLM\SOFTWARE\Wow6432Node\nSplitter HKLM\SOFTWARE\Wow6432Node\Oberon Media HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OEM HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\SiteAdvisor HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\Suyin Optronics Corp HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Acer HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Alps HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\Canon HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Default Tab =>Toolbar.Agent HKCU\SOFTWARE\DefaultTab HKCU\SOFTWARE\Delta =>Toolbar.DeltaSearch HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail HKCU\SOFTWARE\IncrediMail HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Lexmark HKCU\SOFTWARE\Lexmark X5400 Series HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\McAfee Online Backup HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Northcode Inc HKCU\SOFTWARE\Oberon Media HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OEM HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Sonix HKCU\SOFTWARE\SUPERAntiSpyware.com HKCU\SOFTWARE\Windows Live Writer HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Canon HKCU\SOFTWARE\AppDataLow\Software\DefaultTab HKCU\SOFTWARE\AppDataLow\Software\Google HKCU\SOFTWARE\AppDataLow\Software\Macromedia ---\\ Contenu des dossiers Programmes (178) - 33s O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Acer =>.Acer Incorporated® O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Acer Arcade Deluxe =>.CyberLink® O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Acer GameZone =>.Oberon Media Inc.® O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Acer Inc =>.Dritek System Inc.® O43 - CFD: 18/02/2014 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 09/05/2015 - [] D -- C:\Program Files (x86)\Boxore =>PUP.Optional.Boxore O43 - CFD: 06/08/2013 - [] D -- C:\Program Files (x86)\Canon =>.Canon Inc.® O43 - CFD: 24/05/2014 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Cyberlink O43 - CFD: 03/02/2013 - [] D -- C:\Program Files (x86)\Delta =>.Montera Technologeis LTD® O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\EgisTec =>.EGIS TECHNOLOGY INC.® O43 - CFD: 01/12/2012 - [] D -- C:\Program Files (x86)\EgisTec Egis Software Update =>.EGIS TECHNOLOGY INC.® O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\eSobi =>.esobi Inc.® O43 - CFD: 18/12/2012 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 24/12/2009 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Acer Incorporated® O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation® O43 - CFD: 15/05/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 01/12/2012 - [] D -- C:\Program Files (x86)\Launch Manager =>.Dritek System Inc.® O43 - CFD: 03/02/2013 - [] D -- C:\Program Files (x86)\Lexmark 5400 Series {3FB8F5} O43 - CFD: 03/02/2013 - [] D -- C:\Program Files (x86)\Lexmark Toolbar O43 - CFD: 13/02/2013 - [] D -- C:\Program Files (x86)\Lexmark X5400 Series O43 - CFD: 18/08/2012 - [] D -- C:\Program Files (x86)\McAfee =>.McAfee, Inc.® O43 - CFD: 20/02/2015 - [] D -- C:\Program Files (x86)\McAfee Online Backup O43 - CFD: 18/08/2012 - [] D -- C:\Program Files (x86)\McAfee.com =>.McAfee, Inc.® O43 - CFD: 20/02/2015 - [] D -- C:\Program Files (x86)\McAfeeMOBK O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation® O43 - CFD: 06/01/2012 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant =>.Digital River, Inc.® O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 11/10/2012 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation® O43 - CFD: 07/08/2011 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 03/02/2013 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 23/06/2011 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\NewTech Infosystems =>.NewTech Infosystems, Inc® O43 - CFD: 14/02/2010 - [] D -- C:\Program Files (x86)\OEM O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 03/02/2013 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore =>PUP.Optional.Boxore O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Symantec =>.Symantec Corporation® O43 - CFD: 24/12/2009 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 19/07/2013 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation® O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive O43 - CFD: 14/12/2011 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 14/12/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 14/12/2011 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 14/12/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe O43 - CFD: 24/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista O43 - CFD: 24/12/2009 - [] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 06/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP230 series O43 - CFD: 06/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP230 series Manual O43 - CFD: 06/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec O43 - CFD: 06/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MP230 series O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2 O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 11/01/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager O43 - CFD: 03/02/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark 5400 Series O43 - CFD: 13/02/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark X5400 Series O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 28/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee O43 - CFD: 01/12/2012 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Online Backup O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 01/12/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 11/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Online Backup O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5 O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8 O43 - CFD: 13/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 24/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Acer O43 - CFD: 22/02/2014 - [] D -- C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 03/02/2013 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 16/01/2014 - [] D -- C:\ProgramData\BoxUpdChk =>PUP.Optional.Boxore O43 - CFD: 14/02/2010 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 06/08/2013 - [] HD -- C:\ProgramData\CanonBJ O43 - CFD: 10/02/2014 - [] HD -- C:\ProgramData\CanonIJEGV O43 - CFD: 06/08/2013 - [] HD -- C:\ProgramData\CanonIJMIG O43 - CFD: 01/09/2013 - [] HD -- C:\ProgramData\CanonIJMyPrinter O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\CanonIJPLM O43 - CFD: 06/08/2013 - [] HD -- C:\ProgramData\CanonIJQuickMenu O43 - CFD: 06/08/2013 - [] HD -- C:\ProgramData\CanonIJScan O43 - CFD: 06/08/2013 - [] D -- C:\ProgramData\CanonIJWSpt O43 - CFD: 24/12/2009 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 04/01/2015 - [] D -- C:\ProgramData\dtdata O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\EgisTec O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\eSobi O43 - CFD: 14/02/2010 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 25/07/2010 - [] D -- C:\ProgramData\Friends Games O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Google O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\McAfee O43 - CFD: 20/08/2015 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 14/02/2010 - [] D -- C:\ProgramData\McQcModifier-5c47-a7b0 O43 - CFD: 14/02/2010 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 13/12/2014 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 14/02/2010 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 14/02/2010 - [] D -- C:\ProgramData\OEM O43 - CFD: 24/07/2010 - [] D -- C:\ProgramData\Partner =>Toolbar.YahooPartner O43 - CFD: 17/02/2010 - [] D -- C:\ProgramData\Sandlot Games O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\SiteAdvisor O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 29/10/2009 - [] D -- C:\ProgramData\Symantec O43 - CFD: 25/07/2010 - [] AD -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 13/02/2013 - [] D -- C:\ProgramData\X5400 Series O43 - CFD: 18/02/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 24/05/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 01/12/2012 - [] D -- C:\Program Files (x86)\Common Files\EgisTec O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 28/04/2015 - [] D -- C:\Program Files (x86)\Common Files\McAfee O43 - CFD: 28/04/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 29/10/2009 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 13/07/2012 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 24/12/2009 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 25/07/2010 - [] SHD -- C:\Users\scandella\AppData\Roaming\.# O43 - CFD: 05/01/2015 - [] D -- C:\Users\scandella\AppData\Roaming\Adobe O43 - CFD: 03/02/2013 - [] D -- C:\Users\scandella\AppData\Roaming\Babylon =>PUP.Optional.Babylon O43 - CFD: 15/08/2013 - [] D -- C:\Users\scandella\AppData\Roaming\Canon O43 - CFD: 03/02/2013 - [] D -- C:\Users\scandella\AppData\Roaming\DefaultTab O43 - CFD: 03/02/2013 - [] D -- C:\Users\scandella\AppData\Roaming\Delta O43 - CFD: 17/02/2010 - [] D -- C:\Users\scandella\AppData\Roaming\GameConsole O43 - CFD: 14/02/2010 - [] D -- C:\Users\scandella\AppData\Roaming\Google O43 - CFD: 14/02/2010 - [] D -- C:\Users\scandella\AppData\Roaming\Identities O43 - CFD: 14/02/2010 - [] D -- C:\Users\scandella\AppData\Roaming\Macromedia O43 - CFD: 14/07/2009 - [0] D -- C:\Users\scandella\AppData\Roaming\Media Center Programs O43 - CFD: 18/02/2014 - [] SD -- C:\Users\scandella\AppData\Roaming\Microsoft O43 - CFD: 15/07/2013 - [0] D -- C:\Users\scandella\AppData\Roaming\Windows Live Writer O43 - CFD: 13/02/2013 - [] D -- C:\Users\scandella\AppData\Roaming\X5400 Series O43 - CFD: 17/01/2016 - [] D -- C:\Users\scandella\AppData\Roaming\ZHP O43 - CFD: 03/01/2016 - [] D -- C:\Users\scandella\AppData\Local\Adobe O43 - CFD: 14/02/2010 - [0] SHD -- C:\Users\scandella\AppData\Local\Application Data O43 - CFD: 29/12/2011 - [] D -- C:\Users\scandella\AppData\Local\Apps O43 - CFD: 25/11/2014 - [] D -- C:\Users\scandella\AppData\Local\Boxore =>PUP.Optional.Boxore O43 - CFD: 30/12/2011 - [0] D -- C:\Users\scandella\AppData\Local\Deployment O43 - CFD: 26/12/2015 - [] D -- C:\Users\scandella\AppData\Local\Diagnostics O43 - CFD: 14/02/2010 - [] D -- C:\Users\scandella\AppData\Local\EgisTec O43 - CFD: 23/12/2015 - [0] D -- C:\Users\scandella\AppData\Local\ElevatedDiagnostics O43 - CFD: 17/11/2014 - [] SHD -- C:\Users\scandella\AppData\Local\EmieBrowserModeList O43 - CFD: 26/04/2014 - [] SHD -- C:\Users\scandella\AppData\Local\EmieSiteList O43 - CFD: 26/04/2014 - [] SHD -- C:\Users\scandella\AppData\Local\EmieUserList O43 - CFD: 18/01/2013 - [] D -- C:\Users\scandella\AppData\Local\Google O43 - CFD: 11/06/2015 - [] D -- C:\Users\scandella\AppData\Local\GWX O43 - CFD: 14/02/2010 - [0] SHD -- C:\Users\scandella\AppData\Local\Historique O43 - CFD: 14/01/2016 - [0] D -- C:\Users\scandella\AppData\Local\LogMeIn Rescue Applet O43 - CFD: 03/01/2016 - [] D -- C:\Users\scandella\AppData\Local\Microsoft O43 - CFD: 26/12/2012 - [] D -- C:\Users\scandella\AppData\Local\Microsoft Help O43 - CFD: 03/02/2013 - [] D -- C:\Users\scandella\AppData\Local\Software =>PUP.Optional.Boxore O43 - CFD: 17/01/2016 - [] D -- C:\Users\scandella\AppData\Local\Temp O43 - CFD: 14/02/2010 - [0] SHD -- C:\Users\scandella\AppData\Local\Temporary Internet Files O43 - CFD: 26/11/2013 - [] D -- C:\Users\scandella\AppData\Local\VirtualStore O43 - CFD: 15/07/2013 - [] D -- C:\Users\scandella\AppData\Local\Windows Live Writer O43 - CFD: 01/12/2012 - [] RD -- C:\Users\scandella\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 17/03/2015 - [] RD -- C:\Users\scandella\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 01/12/2012 - [] RD -- C:\Users\scandella\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 17/03/2015 - [] RD -- C:\Users\scandella\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 8s O45 - LFCP:[MD5.1930C09ABD1CC7DE82773BB2771D1C46] 14/01/2016 A -- C:\Windows\Prefetch\BOXORE.EXE-E57564D6.pf =>PUP.Optional.Boxore ---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s O106 - SIOI: DragDropProtect Class [egisPSDP] - {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}. (.Egis Technology Inc. - PSD DragDrop Protection.) -- C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll =>.EGIS TECHNOLOGY INC.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (65) - 38s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2009/06/15 11:03:40 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [245296] =>.Alps Electric Co., LTD.® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2009/09/21 04:00:44 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [1537024] =>.Atheros Communications, Inc. O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/08/21 10:18:16 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL664.SYS [2978296] =>.Broadcom Corporation® O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\Windows\System32\drivers\cfwids.sys [80760] =>.McAfee, Inc.® O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2015/05/19 13:59:02 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\Windows\System32\drivers\HipShieldK.sys [207208] =>.McAfee, Inc.® O58 - SDL:2010/11/20 14:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2009/10/13 19:16:40 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [409624] =>.Intel Corporation® O58 - SDL:2011/03/11 07:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2010/08/25 18:36:04 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [10611552] =>.Intel Corporation O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2009/07/27 08:04:36 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\Windows\System32\drivers\L1C62x64.sys [58880] =>.Atheros Communications, Inc. O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Arbitrary Access Control Driver.) -- C:\Windows\System32\drivers\mfeaack.sys [415976] =>.McAfee, Inc.® O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\Windows\System32\drivers\mfeavfk.sys [351120] =>.McAfee, Inc.® O58 - SDL:2015/10/06 21:32:30 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\Windows\System32\drivers\mfeclnrk.sys [20480] =>.McAfee, Inc.® O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\Windows\System32\drivers\mfefirek.sys [497888] =>.McAfee, Inc.® O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - McAfee Link Driver.) -- C:\Windows\System32\drivers\mfehidk.sys [841944] =>.McAfee, Inc.® O58 - SDL:2015/10/06 21:32:30 A . (.McAfee, Inc. - Event Driver.) -- C:\Windows\System32\drivers\mfencbdc.sys [537192] =>.McAfee, Inc.® O58 - SDL:2015/10/06 21:32:30 A . (.McAfee, Inc. - Detection driver.) -- C:\Windows\System32\drivers\mfencrk.sys [109480] =>.McAfee, Inc.® O58 - SDL:2015/09/23 09:43:48 A . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\Windows\System32\drivers\mfewfpk.sys [244544] =>.McAfee, Inc.® O58 - SDL:2010/04/13 19:10:24 A . (.Mozy, Inc. - Mozy Change Monitor Filter Driver.) -- C:\Windows\System32\drivers\MOBK.sys [66040] {17C335BB39562B3BFB2BC0AC3C230F29} O58 - SDL:2009/06/02 12:15:30 A . (.Egis Technology Inc. - PSD Filter Driver.) -- C:\Windows\System32\drivers\mwlPSDFilter.sys [22576] =>.EGIS TECHNOLOGY INC.® O58 - SDL:2009/06/02 12:15:30 A . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\mwlPSDNserv.sys [20016] =>.EGIS TECHNOLOGY INC.® O58 - SDL:2009/06/02 12:15:30 A . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\mwlPSDVDisk.sys [60464] =>.EGIS TECHNOLOGY INC.® O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2009/05/05 09:46:08 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [18432] =>.NewTech Infosystems, Inc® O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2009/07/28 14:00:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [1966624] =>.Realtek Semiconductor Corp® O58 - SDL:2009/09/02 02:58:08 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUStor.sys [225280] =>.Realtek Semiconductor Corp. O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2009/05/05 09:46:08 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [16896] =>.NewTech Infosystems, Inc® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (10) - 1s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Delta Search) - http://www.delta-search.com/ =>Toolbar.DeltaSearch O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {7BB2C89E-8821-4722-A514-B013C40A0115} - (Search Here) - http://www.mysearchresults.com/ O69 - SBI: SearchScopes [HKCU] {A82AB35A-8B60-4706-ABBB-E7A07CB1B920} [DefaultScope] - (Recherche sécurisée) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {DBF3DB46-A315-4B6D-A7E1-4BF33917A890} - (Bing.com) - http://search.conduit.com/ =>PUP.Optional.Conduit O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} [DefaultScope] - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ ---\\ Enumère les services démarrés par Svchost (32) - 5s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2553856] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (7) - 13s O87 - FAEL: "{4142BE91-CE8A-4763-BF6D-C45D41AF269D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Common Files\Mcafee\MNA\McNaSvc.exe (.not file.) O87 - FAEL: "{2500E301-C3D4-4BFB-963D-5B30521B1242}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\lxctcoms.exe {3FB8F5} O87 - FAEL: "{7FADF26E-5506-4F74-8A5A-FD3B6D99F947}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\lxctcoms.exe {3FB8F5} O87 - FAEL: "{0F20C4D4-DFFA-4FF9-8570-CCF46A619246}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\lxctcoms.exe {3FB8F5} O87 - FAEL: "{F260949A-007E-4ABF-BC88-CCEBF10F6CB4}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\lxctcoms.exe {3FB8F5} O87 - FAEL: "{4A1F89F0-AEC5-4441-B649-044AA989638F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86) (x86)\Lexmark X5400 Series\frun.exe O87 - FAEL: "{8BF3BF32-0B1C-47B4-886C-1FA846E08EDE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86) (x86)\Lexmark X5400 Series\frun.exe ---\\ Enumère les codes produits des logiciels (2) - 2s O90 - PUC: "7E685771E24E83F4381D1DB5A45F7B41" . (.Delta Chrome Toolbar.) -- C:\Windows\Installer\{177586E7-E42E-4F38-83D1-D15B4AF5B714}\Delta.ico =>Toolbar.DeltaSearch O90 - PUC: "E8E877ED6825FF148AE54DA13648DD38" . (.Boxore Client.) -- C:\Windows\Installer\{DE778E8E-5286-41FF-A85E-D41A6384DD83}\Boxore.ico =>PUP.Optional.Boxore ---\\ Recherche de clés de registre Tracing (8) - 4s HKLM\SOFTWARE\Microsoft\Tracing\DomaIQ_RASAPI32 =>PUP.Optional.DomaIQ HKLM\SOFTWARE\Microsoft\Tracing\DomaIQ_RASMANCS =>PUP.Optional.DomaIQ HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASAPI32 =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASMANCS =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASAPI32 =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASMANCS =>PUP.Optional.Babylon ---\\ Scan Additionnel (55) - 0s HKLM\SYSTEM\CurrentControlSet\Services\DefaultTabUpdate =>PUP.Optional.Bandoo C:\Users\scandella\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe =>PUP.Optional.Bandoo C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job =>PUP.Optional.Boxore C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job =>PUP.Optional.Boxore C:\Windows\System32\Tasks\BoxSoftwareUpdate =>PUP.Optional.Boxore C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineCore =>PUP.Optional.Boxore C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA =>PUP.Optional.Boxore C:\Program Files (x86)\Boxore\Boxore Client\boxore.exe =>PUP.Optional.Boxore C:\Users\scandella\AppData\Local\Google\Chrome\User Data\Default\Extensions\engaigpbgdjjmanonjcjkcmomgibneba =>Hijacker.Browser C:\Users\scandella\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde =>Hijacker.Browser C:\Users\scandella\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa =>Hijacker.Browser C:\Program Files (x86)\Software\Update\1.2.201.0\npSoftwareOneClick8.dll =>PUP.Optional.Boxore HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab =>PUP.Optional.IMBooster HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\delta =>Toolbar.DeltaSearch HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{006E6A46-8D55-4F10-BBA8-2C9653B4278B} =>PUP.Optional.Boxore HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{177586E7-E42E-4F38-83D1-D15B4AF5B714} =>Toolbar.DeltaSearch HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DE778E8E-5286-41FF-A85E-D41A6384DD83} =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\delta =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{006E6A46-8D55-4F10-BBA8-2C9653B4278B} =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{177586E7-E42E-4F38-83D1-D15B4AF5B714} =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{DE778E8E-5286-41FF-A85E-D41A6384DD83} =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Default Tab =>Toolbar.Agent HKLM\SOFTWARE\Wow6432Node\Delta =>Toolbar.DeltaSearch HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\Default Tab =>Toolbar.Agent HKCU\SOFTWARE\Delta =>Toolbar.DeltaSearch HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail C:\Program Files (x86)\Boxore =>PUP.Optional.Boxore C:\Program Files (x86)\Software =>PUP.Optional.Boxore C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\BoxUpdChk =>PUP.Optional.Boxore C:\ProgramData\Partner =>Toolbar.YahooPartner C:\Users\scandella\AppData\Roaming\Babylon =>PUP.Optional.Babylon C:\Users\scandella\AppData\Local\Boxore =>PUP.Optional.Boxore C:\Users\scandella\AppData\Local\Software =>PUP.Optional.Boxore C:\Windows\Prefetch\BOXORE.EXE-E57564D6.pf =>PUP.Optional.Boxore HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} =>Toolbar.DeltaSearch HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{DBF3DB46-A315-4B6D-A7E1-4BF33917A890} =>PUP.Optional.Conduit C:\Windows\Installer\{177586E7-E42E-4F38-83D1-D15B4AF5B714}\Delta.ico =>Toolbar.DeltaSearch HKLM\Software\Classes\Installer\Products\7E685771E24E83F4381D1DB5A45F7B41 =>Toolbar.DeltaSearch HKLM\Software\Classes\Installer\Features\7E685771E24E83F4381D1DB5A45F7B41 =>Toolbar.DeltaSearch C:\Windows\Installer\{DE778E8E-5286-41FF-A85E-D41A6384DD83}\Boxore.ico =>PUP.Optional.Boxore HKLM\Software\Classes\Installer\Products\E8E877ED6825FF148AE54DA13648DD38 =>PUP.Optional.Boxore HKLM\Software\Classes\Installer\Features\E8E877ED6825FF148AE54DA13648DD38 =>PUP.Optional.Boxore HKLM64\SOFTWARE\Microsoft\Tracing\DomaIQ_RASAPI32 =>PUP.Optional.DomaIQ HKLM64\SOFTWARE\Microsoft\Tracing\DomaIQ_RASMANCS =>PUP.Optional.DomaIQ HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASAPI32 =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASMANCS =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASAPI32 =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASMANCS =>PUP.Optional.Babylon ---\\ Récapitulatif des éléments trouvés sur votre station (12) - 0s http://www.nicolascoolman.fr/?p=237 =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/?p=90 =>PUP.Optional.Boxore http://www.nicolascoolman.fr/?p=4664 =>Hijacker.Browser http://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster http://www.nicolascoolman.fr/?p=273 =>Toolbar.DeltaSearch http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon http://www.nicolascoolman.fr/?p=4664 =>Toolbar.Agent http://www.nicolascoolman.fr/?p=4664 =>Toolbar.IncrediMail http://www.nicolascoolman.fr/?p=4664 =>Toolbar.YahooPartner http://www.nicolascoolman.fr/?p=210 =>PUP.Optional.Conduit http://www.nicolascoolman.fr/?p=679 =>PUP.Optional.DomaIQ http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.FLVPlayer ~ End of the scan, 36144 items in 00h06mn48s (883)(0)