~ ZHPDiag v2016.2.3.25 Par Nicolas Coolman (2016/02/03) ~ Démarré par team (Administrator) (2016/02/02 17:54:33) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\team\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\team\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 32-bit (Build 7600) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 38.0.6 (x86 en-US) MSIE: Internet Explorer v8.0.7600.16385 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 6s Malwarebytes Anti-Malware النسخة 2.2.0.1024 Windows Defender W7 (Activate) ---\\ Logiciels d'optimisation (2) - 6s CCleaner v5.14 Tweaking.com - Windows Repair v3.7.3 ---\\ Surveillance de Logiciels (1) - 6s Adobe Flash Player 11 Plugin ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2028.792 MB (59% free) System Restore: Activé (Enable) System drive C: has 84 GB () free of 133 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: TEAM-PC ~ User Name: team ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 84 GB free of 133 GB (System) ~ Drive E: has 1 GB free of 7 GB ~ Drive H: has 85 GB free of 152 GB ---\\ Etat du Centre de Sécurité Windows (16) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoResolveSearch: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.2626FC9755BE22F805D3CFA0CE3EE727] - 31/10/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2614272] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.0D874F3BC751CC2198AF2E6783FB8B35] - 14/07/2009 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [977920] =>.Microsoft Corporation [MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - 28/10/2009 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [285696] =>.Microsoft Corporation [MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - 14/07/2009 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193024] =>.Microsoft Corporation [MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 14/07/2009 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [269824] =>.Microsoft Corporation [MD5.D8714A5FB3141F8226D16861F20C5AC4] - 14/07/2009 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.DDC040FDB01EF1712A6B13E52AFB104C] - 14/07/2009 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BA6E70AA0E6091BC39DE29477D866A77] - 14/07/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.8E09E52EE2E3CEB199EF3DD99CF9E3FB] - 14/07/2009 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.F1B6AA08497EA86CA6EF6F7A08B0BFB8] - 06/01/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123392] =>.Microsoft Corporation [MD5.DD52A733BF4CA5AF84562A5E2F963B91] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation [MD5.3795DCD21F740EE799FB7223234215AF] - 14/07/2009 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1210432] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133120] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.CB39E896A2A83702D1737BFD402B3542] - 14/07/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74240] =>.Microsoft Corporation [MD5.58DF9D2481A56EDDE167E51B334D44FD] - 14/07/2009 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245328] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (8) - 1s O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - AGS Service.) - C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® O23 - Service: Folder Guard (Folder Guard) . (.WinAbility® Software Corporation - Folder Guard Utility.) - C:\Program Files\Folder Guard\FG32.exe {06AF7FEA40DE7899A4A1BF4C0580B0EE} O23 - Service: GLArab.com HTTP Proxy (glarab_http_proxy) . (. - http_proxy.exe.) - C:\Program Files\GLArab.com\Proxy\http_proxy.exe {2B20137DFF09D1} O23 - Service: HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService.exe =>.HUAWEI Technologies Co., Ltd.® O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: RalinkRegistryWriter (RalinkRegistryWriter) . (.Ralink Technology, Corp. - RalinkRegistryWriter.) - C:\Program Files\Ralink\Common\RaRegistry.exe =>.Ralink Technology, Corp. O23 - Service: CLCV0 (UTSCSI) . (.Copyright @. All rights reserved. - UTSCSI Application.) - C:\Windows\System32\UTSCSI.EXE ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (21) - 51s SR - Auto [25/11/2015] [ 2016448] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SS - Demand [24/01/2016] [ 315208] Clean Master Core Service (cmcore) . (.Kingsoft Corporation.) - c:\program files\cmcm\Clean Master\cmcore.exe =>.Beijing Kingsoft Security software Co.,Ltd® SR - Auto [19/07/2012] [ 2568120] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® SR - Auto [19/04/2013] [ 180592] Folder Guard (Folder Guard) . (.WinAbility® Software Corporation.) - C:\Program Files\Folder Guard\FG32.exe {06AF7FEA40DE7899A4A1BF4C0580B0EE} SR - Auto [20/12/2012] [ 2255984] GLArab.com HTTP Proxy (glarab_http_proxy) . (...) - C:\Program Files\GLArab.com\Proxy\http_proxy.exe {2B20137DFF09D1} SS - Demand [20/11/2008] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [14/03/2011] [ 271712] HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008.) - C:\ProgramData\DatacardService\HWDeviceService.exe =>.HUAWEI Technologies Co., Ltd.® SS - Demand [22/10/2004] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe =>.Macrovision Corporation SS - Demand [09/10/2015] [ 2934048] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® SS - Disabl [14/04/2015] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SS - Auto [14/04/2015] [ 1080120] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [05/06/2015] [ 148080] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [12/01/2012] [ 372736] RalinkRegistryWriter (RalinkRegistryWriter) . (.Ralink Technology, Corp..) - C:\Program Files\Ralink\Common\RaRegistry.exe =>.Ralink Technology, Corp. SS - Demand [18/08/2011] [ 625728] Ralink UPnP Media Server (RaMediaServer) . (...) - C:\Program Files\Ralink\Common\RaMediaServer.exe =>.Ralink Technology Corporation® SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.® SS - Demand [04/01/2012] [ 718888] ServiceLayer (ServiceLayer) . (.Nokia.) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe =>.Nokia® SS - Demand [11/12/2014] [ 315496] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [14/12/2015] [ 2067736] Soda PDF 8 (Soda PDF 8) . (.LULU SOFTWARE LIMITED.) - C:\Program Files\Soda PDF 8\ws.exe {0768200E7F5A53461703AE577D989C30} SS - Demand [14/12/2015] [ 852760] Soda PDF 8 CrashHandler (Soda PDF 8 CrashHandler) . (.LULU SOFTWARE LIMITED.) - C:\Program Files\Soda PDF 8\crash-handler-ws.exe {0768200E7F5A53461703AE577D989C30} SR - Auto [15/09/2014] [ 45056] CLCV0 (UTSCSI) . (.Copyright @. All rights reserved..) - C:\Windows\System32\UTSCSI.EXE ---\\ Tâches planifiées en automatique (7) - 9s [MD5.7E49CB7F9BB53542F2944A527BC4E24D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] =>.Piriform Ltd® [MD5.8007AF9F2434F390AA51F0A516B9756F] [APT] [Tweaking.com - Windows Repair Tray Icon] (.Tweaking.com.) -- C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [66816] =>.Tweaking LLC® [MD5.00000000000000000000000000000000] [APT] [{7EC6900B-2C21-47B8-ADCF-3E826E773724}] (...) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe (.not file.) [0] [MD5.F5A0554F655C566EB946841E6E7AE061] [APT] [{C127BEA4-F334-47F4-A86F-4096246BBB22}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe [30877280] =>.Skype Software Sarl® [MD5.7B43567B4C32AD7ADED537CD3B1342B9] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [566592] =>.Apple Inc.® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2770] =>.Piriform Ltd O39 - APT: Tweaking.com - Windows Repair Tray Icon - (.Tweaking.com.) -- C:\Windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon [3628] =>.Tweaking.com ---\\ Processus lancés (16) - 3s [MD5.A9F3294F6939172C45D6C5AF2E563714] - (.Adobe Systems, Incorporated - AGS Service.) -- C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016448] [PID.1536] =>.Adobe Systems Incorporated® [MD5.DA0715AC8097B256FF9C7F374CE2254E] - (.WinAbility® Software Corporation - Folder Guard Utility.) -- C:\Program Files\Folder Guard\FG32.exe [180592] [PID.1600] {06AF7FEA40DE7899A4A1BF4C0580B0EE} [MD5.38FDB0D155F2BDB8A3147ABB00304FA3] - (. - http_proxy.exe.) -- C:\Program Files\GLArab.com\Proxy\http_proxy.exe [2255984] [PID.1724] {2B20137DFF09D1} [MD5.5EF3427AE503B5C03A48F7C9FF458B69] - (.Copyright (C) 2008 - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService.exe [271712] [PID.1744] =>.HUAWEI Technologies Co., Ltd.® [MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.1948] =>.HUAWEI Technologies Co., Ltd.® [MD5.F4C083E290BCBC8DA05C6E2C7F8053B9] - (.Ralink Technology, Corp. - RalinkRegistryWriter.) -- C:\Program Files\Ralink\Common\RaRegistry.exe [372736] [PID.436] =>.Ralink Technology, Corp. [MD5.8AFFFDA081CFF3057391FEDBBB483601] - (.Copyright @. All rights reserved. - UTSCSI Application.) -- C:\Windows\System32\UTSCSI.EXE [45056] [PID.680] [MD5.360959BBD4F451E1AB811F4304232766] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2568120] [PID.1076] =>.WIBU-SYSTEMS AG® [MD5.EDD15222718345DEF9F12336BA2405D1] - (.Murray Hurps Software Pty Ltd - Ad Muncher.) -- C:\Program Files\Ad Muncher\AdMunch.exe [560760] [PID.1324] {00C1A391D64C66} =>.Murray Hurps Software Pty Ltd [MD5.1DB01CEE814A7DF4DCFBA14B4115434A] - (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe [15872] [PID.1648] [MD5.44A9229022A519ED45294A1934C05EEC] - (.Flux Software LLC - f.lux.) -- C:\Users\team\AppData\Local\FluxSoftware\Flux\flux.exe [1017224] [PID.416] =>.Michael Herf® [MD5.B9C5AF197509DBF7B65465BEE9F39145] - (.OrdinarySoft - StartMenuX.) -- C:\Program Files\Start Menu X\StartMenuX.exe [5295936] [PID.676] {523257808639144A92C2578860319174} =>.OrdinarySoft [MD5.732CC7938BB3BD55DCD76371EA84F174] - (.SRS Labs, Inc. - SRS Audio Sandbox control panel.) -- C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe [4354048] [PID.1556] =>.SRS Labs, Inc. [MD5.B6AC6611EDE350B6162B3BDCAF8E540C] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [376944] [PID.3168] =>.Mozilla Corporation® [MD5.9EBE9DC74A5BC92831FF78CA791A5D68] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3392920] [PID.2924] =>.Tonec Inc. [MD5.A266CB6614733FD2FFA4E8155563DDC6] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\team\Downloads\Programs\ZHPDiag3.exe [2110464] [PID.212] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (9) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (14) - 5s P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazondotcom.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM integration.) -- C:\Users\team\AppData\Roaming\Mozilla\Firefox\Profiles\nmasnyrl.default\extensions\mozilla_cc2@internetdownloadmanager.com =>.Internet Download Manager, Tonec Inc. P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_11_5_502_110.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@divx.com/DivX Content Upload Plugin,version=1.0.0] - (.DivX,Inc..) -- C:\Program Files\DivX\DivX Content Uploader\npUpload.dll P2 - FPN: [HKLM] [@pages.tvunetworks.com/WebPlayer] - (.TVU networks.) -- C:\Windows\System32\TVUAx\npTVUAx.dll P2 - FPN: [HKLM] [Soda PDF 8] - (.LULU SOFTWARE LIMITED.) -- C:\Program Files\Soda PDF 8\np-previewer.dll ---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s B2 - EXT: C:\Users\team\AppData\Roaming\Opera Software\Opera Stable\Extensions\ilhhefepljbmehhbmjcflhcchkddfaon (Orphean) ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (14) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 0 R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer,Proxy Management (8) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (19) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} (Orphean) O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {C66D064F-82FE-4E1A-B06A-B2490BA48B18} . (...) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll (.not file.) ---\\ Internet Explorer, Barre d'outil (1) - 1s O3 - Toolbar: (no name) - [HKLM]{3507FA00-ADA2-4A02-99B9-51AD26CA9120} (Orphean) (.not file.) ---\\ Applications lancées au démarrage du système (11) - 1s O4 - HKLM\..\Run: [Ad Muncher] . (.Murray Hurps Software Pty Ltd - Ad Muncher.) -- C:\Program Files\Ad Muncher\AdMunch.exe {00C1A391D64C66} =>.Murray Hurps Software Pty Ltd O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKCU\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\team\AppData\Local\FluxSoftware\Flux\flux.exe =>.Michael Herf® O4 - HKCU\..\Run: [StartMenuX] . (.OrdinarySoft - StartMenuX.) -- C:\Program Files\Start Menu X\StartMenuX.exe {523257808639144A92C2578860319174} =>.OrdinarySoft O4 - HKCU\..\Run: [SRS Audio Sandbox] . (.SRS Labs, Inc. - SRS Audio Sandbox control panel.) -- C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe =>.SRS Labs, Inc. O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-2080095994-927668365-1145137388-1000\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\team\AppData\Local\FluxSoftware\Flux\flux.exe =>.Michael Herf® O4 - HKUS\S-1-5-21-2080095994-927668365-1145137388-1000\..\Run: [StartMenuX] . (.OrdinarySoft - StartMenuX.) -- C:\Program Files\Start Menu X\StartMenuX.exe {523257808639144A92C2578860319174} =>.OrdinarySoft O4 - HKUS\S-1-5-21-2080095994-927668365-1145137388-1000\..\Run: [SRS Audio Sandbox] . (.SRS Labs, Inc. - SRS Audio Sandbox control panel.) -- C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe =>.SRS Labs, Inc. O4 - HKUS\S-1-5-21-2080095994-927668365-1145137388-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® ---\\ Raccourcis Global Startup (96) - 25s O4 - GS\Desktop [Administrateur]: Bandicut.lnk . (.Bandisoft - Bandisoft - bdcut.exe.) C:\Program Files\Bandicut\bdcut.exe =>.Bandisoft O4 - GS\Desktop [Administrateur]: Bibliothèques.lnk . (...) C:\Users\team\AppData\Roaming\Microsoft\Windows\Libraries O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Users\team\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: Imagic Photo trial version.lnk . (.Imagic Photo - .) C:\Program Files\Imagic Photo\Imagic Photo trial version.exe O4 - GS\Desktop [Administrateur]: Isoplex.exe.lnk . (...) C:\Program Files\Isoplex\Isoplex\Isoplex.exe O4 - GS\Desktop [Administrateur]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [Administrateur]: Microsoft Office.lnk . (...) C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O4 - GS\Desktop [Administrateur]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Desktop [Administrateur]: Photo-Brush 5.lnk . (.MediaChance - Photo-Brush.) C:\Program Files\Photo-Brush 5\PhotoBrush.exe =>.Mediachance O4 - GS\Desktop [Administrateur]: PhotoFiltre Studio X.lnk . (.Antonio Da Cruz - PhotoFiltre Studio.) C:\Program Files\PhotoFiltre Studio X\pfstudiox.exe O4 - GS\Desktop [Administrateur]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files\PhotoFiltre\PhotoFiltre.exe O4 - GS\Desktop [Administrateur]: PhotoshopCS6Portable.exe.lnk . (.PainteR - Adobe Photoshop CS6 Pre-Release Portable.) C:\AdobePhotoshopCS6Portable\PhotoshopCS6Portable.exe O4 - GS\Desktop [Administrateur]: RadioMaximus.lnk . (...) C:\Program Files\RadioMaximus\radiomaximus.exe O4 - GS\Desktop [Administrateur]: RadioSure.lnk . (.TheBestWare Studio - RadioSure.) C:\Users\team\AppData\Local\RadioSure\RadioSure.exe O4 - GS\Desktop [Administrateur]: slimjet.exe.lnk . (.FlashPeak Inc. - Slimjet.) C:\Program Files\Slimjet\slimjet.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O4 - GS\Desktop [Administrateur]: tv.exe.lnk . (.VSG - SimpleTV v0.4.8 b8.) C:\Program Files\simpleTV_b8_215_+radio 2170\tv.exe O4 - GS\Desktop [Administrateur]: Tweaking.com - Windows Repair.lnk . (.Tweaking.com - Tweaking.com - Windows Repair.) C:\Program Files\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe =>.Tweaking LLC® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\team\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: ALLPlayer Remote Control.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe {569643B8827B0FF8BF76A119AD869752} =>.ALLPlayer Group Ltd. O4 - GS\Quicklaunch [Administrateur]: Bandicut.lnk . (.Bandisoft - Bandisoft - bdcut.exe.) C:\Program Files\Bandicut\bdcut.exe =>.Bandisoft O4 - GS\Quicklaunch [Administrateur]: BS.Player FREE.lnk . (.AB Team - BS.Player.) C:\Program Files\Webteh\BSPlayer\bsplayer.exe =>.AB Team O4 - GS\Quicklaunch [Administrateur]: eBay.lnk . (...) C:\Users\team\AppData\Roaming\Desktopicon\eBayShortcuts.exe =>PUP.Optional.ADON O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Users\team\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Hear.lnk . (...) C:\Program Files\Hear\Hear.exe {01000000000129CCE72C36} O4 - GS\Quicklaunch [Administrateur]: Internet Download Accelerator.lnk . (.WestByte - Internet Download Accelerator.) C:\Program Files\IDA\ida.exe {4EFAEA756528C238AEA65870CAA59268} =>.WestByte O4 - GS\Quicklaunch [Administrateur]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Snappersoft USB Healer.lnk . (.Snappersoft Inc - Snappersoft USB Healer Free tool..) C:\Program Files\Snappersoft Inc\Snappersoft USB Healer\SnappersoftUSBHealer.exe O4 - GS\Quicklaunch [Administrateur]: Total Video Player.lnk . (...) C:\Program Files\Total Video Converter\tvp.exe O4 - GS\Quicklaunch [Administrateur]: Winamp.lnk . (.Nullsoft, Inc. - Winamp.) C:\Program Files\Winamp\winamp.exe =>.Nullsoft Inc.® O4 - GS\Quicklaunch [Administrateur]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc.® O4 - GS\Quicklaunch [Administrateur]: Your Uninstaller! 2008.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller 2008\uruninstaller.exe {20D86DE3316D2F604A4A91753B51F566} O4 - GS\sendTo [Administrateur]: Android (ALLPlayer Remote Control).lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe {569643B8827B0FF8BF76A119AD869752} =>.ALLPlayer Group Ltd. O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files\PhotoFiltre\PhotoFiltre.exe O4 - GS\TaskBar [Administrateur]: RadioSure.lnk . (.TheBestWare Studio - RadioSure.) C:\Users\team\AppData\Local\RadioSure\RadioSure.exe O4 - GS\Desktop [team]: Bandicut.lnk . (.Bandisoft - Bandisoft - bdcut.exe.) C:\Program Files\Bandicut\bdcut.exe =>.Bandisoft O4 - GS\Desktop [team]: Bibliothèques.lnk . (...) C:\Users\team\AppData\Roaming\Microsoft\Windows\Libraries O4 - GS\Desktop [team]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Users\team\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [team]: Imagic Photo trial version.lnk . (.Imagic Photo - .) C:\Program Files\Imagic Photo\Imagic Photo trial version.exe O4 - GS\Desktop [team]: Isoplex.exe.lnk . (...) C:\Program Files\Isoplex\Isoplex\Isoplex.exe O4 - GS\Desktop [team]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [team]: Microsoft Office.lnk . (...) C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O4 - GS\Desktop [team]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Desktop [team]: Photo-Brush 5.lnk . (.MediaChance - Photo-Brush.) C:\Program Files\Photo-Brush 5\PhotoBrush.exe =>.Mediachance O4 - GS\Desktop [team]: PhotoFiltre Studio X.lnk . (.Antonio Da Cruz - PhotoFiltre Studio.) C:\Program Files\PhotoFiltre Studio X\pfstudiox.exe O4 - GS\Desktop [team]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files\PhotoFiltre\PhotoFiltre.exe O4 - GS\Desktop [team]: PhotoshopCS6Portable.exe.lnk . (.PainteR - Adobe Photoshop CS6 Pre-Release Portable.) C:\AdobePhotoshopCS6Portable\PhotoshopCS6Portable.exe O4 - GS\Desktop [team]: RadioMaximus.lnk . (...) C:\Program Files\RadioMaximus\radiomaximus.exe O4 - GS\Desktop [team]: RadioSure.lnk . (.TheBestWare Studio - RadioSure.) C:\Users\team\AppData\Local\RadioSure\RadioSure.exe O4 - GS\Desktop [team]: slimjet.exe.lnk . (.FlashPeak Inc. - Slimjet.) C:\Program Files\Slimjet\slimjet.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O4 - GS\Desktop [team]: tv.exe.lnk . (.VSG - SimpleTV v0.4.8 b8.) C:\Program Files\simpleTV_b8_215_+radio 2170\tv.exe O4 - GS\Desktop [team]: Tweaking.com - Windows Repair.lnk . (.Tweaking.com - Tweaking.com - Windows Repair.) C:\Program Files\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe =>.Tweaking LLC® O4 - GS\Desktop [team]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\team\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [team]: ALLPlayer Remote Control.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe {569643B8827B0FF8BF76A119AD869752} =>.ALLPlayer Group Ltd. O4 - GS\Quicklaunch [team]: Bandicut.lnk . (.Bandisoft - Bandisoft - bdcut.exe.) C:\Program Files\Bandicut\bdcut.exe =>.Bandisoft O4 - GS\Quicklaunch [team]: BS.Player FREE.lnk . (.AB Team - BS.Player.) C:\Program Files\Webteh\BSPlayer\bsplayer.exe =>.AB Team O4 - GS\Quicklaunch [team]: eBay.lnk . (...) C:\Users\team\AppData\Roaming\Desktopicon\eBayShortcuts.exe =>PUP.Optional.ADON O4 - GS\Quicklaunch [team]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Users\team\AppData\Local\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [team]: Hear.lnk . (...) C:\Program Files\Hear\Hear.exe {01000000000129CCE72C36} O4 - GS\Quicklaunch [team]: Internet Download Accelerator.lnk . (.WestByte - Internet Download Accelerator.) C:\Program Files\IDA\ida.exe {4EFAEA756528C238AEA65870CAA59268} =>.WestByte O4 - GS\Quicklaunch [team]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Quicklaunch [team]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\Quicklaunch [team]: Snappersoft USB Healer.lnk . (.Snappersoft Inc - Snappersoft USB Healer Free tool..) C:\Program Files\Snappersoft Inc\Snappersoft USB Healer\SnappersoftUSBHealer.exe O4 - GS\Quicklaunch [team]: Total Video Player.lnk . (...) C:\Program Files\Total Video Converter\tvp.exe O4 - GS\Quicklaunch [team]: Winamp.lnk . (.Nullsoft, Inc. - Winamp.) C:\Program Files\Winamp\winamp.exe =>.Nullsoft Inc.® O4 - GS\Quicklaunch [team]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc.® O4 - GS\Quicklaunch [team]: Your Uninstaller! 2008.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller 2008\uruninstaller.exe {20D86DE3316D2F604A4A91753B51F566} O4 - GS\sendTo [team]: Android (ALLPlayer Remote Control).lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe {569643B8827B0FF8BF76A119AD869752} =>.ALLPlayer Group Ltd. O4 - GS\sendTo [team]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [team]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [team]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files\PhotoFiltre\PhotoFiltre.exe O4 - GS\TaskBar [team]: RadioSure.lnk . (.TheBestWare Studio - RadioSure.) C:\Users\team\AppData\Local\RadioSure\RadioSure.exe O4 - GS\CommonDesktop [Public]: ALLPlayer Remote Control.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe {569643B8827B0FF8BF76A119AD869752} =>.ALLPlayer Group Ltd. O4 - GS\CommonDesktop [Public]: BS.Player FREE.lnk . (.AB Team - BS.Player.) C:\Program Files\Webteh\BSPlayer\bsplayer.exe =>.AB Team O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Clean Master.lnk . (.Kingsoft Corporation - Clean Master.) C:\Program Files\cmcm\Clean Master\kcleaner.exe =>.Beijing Kingsoft Security software Co.,Ltd® O4 - GS\CommonDesktop [Public]: CueClub.lnk . (...) C:\Program Files\Real\RealGames\CueClub\cueclub.exe O4 - GS\CommonDesktop [Public]: HD VDeck.lnk . (.VIA - VIA HD Audio CPL.) C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe =>.VIA Technologies Inc.® O4 - GS\CommonDesktop [Public]: Inpaint.lnk . (...) C:\Program Files\Inpaint\Inpaint.exe O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Maxthon Cloud Browser.lnk . (.Maxthon International ltd. - Maxthon Cloud Browser.) C:\Program Files\Maxthon\Bin\Maxthon.exe =>.Maxthon (Asia) Limited.® O4 - GS\CommonDesktop [Public]: MobiConnect.lnk . (...) C:\Program Files\MobiConnect\MobiConnect.exe O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Moonchild Productions O4 - GS\CommonDesktop [Public]: Photo Blend.lnk . (.Copyright Mediachance(C) 2011 - PhotoBlend 3D.) C:\Program Files\PhotoBlend\PhotoBlend.exe O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe O4 - GS\CommonDesktop [Public]: Snappersoft USB Healer.lnk . (.Snappersoft Inc - Snappersoft USB Healer Free tool..) C:\Program Files\Snappersoft Inc\Snappersoft USB Healer\SnappersoftUSBHealer.exe O4 - GS\CommonDesktop [Public]: Trojan Killer.lnk . (.GridinSoft LLC - Trojan Killer.) C:\Program Files\GridinSoft Trojan Killer\trojankiller.exe O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\CommonDesktop [Public]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\CommonDesktop [Public]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc.® O4 - GS\Programs [Public]: FG32.lnk . (.WinAbility® Software Corporation - Folder Guard Utility.) C:\Program Files\Folder Guard\FG32.exe {06AF7FEA40DE7899A4A1BF4C0580B0EE} O4 - GS\Programs [Public]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A0E4606-D5FB-46CA-812C-480E5EE12063}: NameServer = 4.2.2.2,4.2.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6EFF7AC0-D1D2-4ACB-940B-17A02B0E8700}: NameServer = 4.2.2.2,209.244.0.4,192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BF16F05D-B015-4111-AF1B-FAEED7618FDC}: NameServer = 4.2.2.2,4.2.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6EFF7AC0-D1D2-4ACB-940B-17A02B0E8700}: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (25) - 0s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (93) - 99s O42 - Logiciel: 360 Browser - (.360 Security Center.) [HKCU] -- 360Browser =>.360 Security Center O42 - Logiciel: Ad Muncher v4.94.34121 (Free) - (...) [HKLM] -- Ad Muncher {00C1A391D64C66} O42 - Logiciel: Adobe Extension Manager CC - (.Adobe Systems Incorporated.) [HKLM] -- {244FD30F-63F1-49B9-9D98-1150FF4FFCB1} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.Adobe Systems Incorporated® O42 - Logiciel: ALLPlayer Remote Control - (.ALLPlayer Group, Ltd..) [HKLM] -- {146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1 =>.ALLPlayer Group, Ltd. O42 - Logiciel: Any Video Converter 2.5.8 - (.Any-Video-Converter.com.) [HKLM] -- Any Video Converter_is1 O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033} =>.Apple Inc. O42 - Logiciel: ArionFX for Photoshop - (.RandomControl, SLU.) [HKLM] -- ArionFX for Photoshop O42 - Logiciel: Bandicut - (.Bandisoft.com.) [HKLM] -- Bandicut =>.Bandisoft.com O42 - Logiciel: BetternetForWindows version Final - (.ztona, Inc..) [HKLM] -- {316F5A7C-D4BE-49F7-9403-C75CA7EE91AE}_is1 O42 - Logiciel: BS.Player FREE - (.AB Team, d.o.o..) [HKLM] -- BSPlayerf O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Clean Master - (.Cheetah Mobile.) [HKLM] -- Clean Master =>.Beijing Kingsoft Security software Co.,Ltd® O42 - Logiciel: Clownfish for Skype - (...) [HKLM] -- Clownfish O42 - Logiciel: Complément Office 2007 - Microsoft Enregistrer en tant que PDF ou XPS (Beta - (.Microsoft Corporation.) [HKLM] -- {30120000-00B2-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Daum PotPlayer 1.5.45955 - (...) [HKLM] -- PotPlayer O42 - Logiciel: Express Burn Disc Burning Software - (.NCH Software.) [HKLM] -- ExpressBurn =>.NCH Software® O42 - Logiciel: f.lux - (...) [HKCU] -- Flux O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited O42 - Logiciel: Filter Forge 5.007 - (.Filter Forge, Inc..) [HKLM] -- Filter Forge 5_is1 =>.Filter Forge, Inc. O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Hear - (.Prosoft.) [HKLM] -- {4E341B88-61A8-4C28-A3F0-9021898AD3C2}_is1 O42 - Logiciel: Imagenomic Portraiture 2.1 Plug-in (build 2105) - (...) [HKLM] -- ImagenomicPortraiturePlugin O42 - Logiciel: Imagic Photo - (.Imagic Photo.) [HKLM] -- Imagic Photo8.2 O42 - Logiciel: Inpaint 4.4 - (.Teorex.) [HKLM] -- {2AEDC172-479F-47AE-8A48-A0524D4AED5B}_is1 =>.Teorex O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation® O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Internet Download Accelerator version 6.5 - (.WestByte.) [HKLM] -- Internet Download Accelerator_is1 {4EFAEA756528C238AEA65870CAA59268} =>.WestByte O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Isoplex - (.Isoplex.) [HKLM] -- {9BE6C54A-9A43-4F7B-85F8-F5610BE07873} O42 - Logiciel: Java 8 Update 71 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218071F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Kodi - (.XBMC-Foundation.) [HKCU] -- Kodi =>.XBMC-Foundation O42 - Logiciel: LAV Filters 0.60.1 - (.Hendrik Leppkes.) [HKLM] -- lavfilters_is1 =>.Hendrik Leppkes O42 - Logiciel: Lernout & Hauspie TruVoice American English TTS Engine - (...) [HKLM] -- tv_enua O42 - Logiciel: Malwarebytes Anti-Malware النسخة 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Maxthon Cloud Browser - (.Maxthon International Limited.) [HKLM] -- Maxthon3 =>.Maxthon (Asia) Limited.® O42 - Logiciel: Microsoft Report Viewer Redistributable 2005 - (.Microsoft Corporation.) [HKLM] -- {7635D07D-B727-496F-94CA-8AC60E0C40CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Report Viewer Redistributable 2005 - (.Microsoft Corporation.) [HKLM] -- Microsoft Report Viewer Redistributable 2005 =>.Microsoft Corporation® O42 - Logiciel: Microsoft Text-to-Speech Engine 4.0 (English) - (...) [HKLM] -- MSTTS O42 - Logiciel: MiPony 1.2.2 - (...) [HKLM] -- MiPony O42 - Logiciel: MobiConnect - (.Huawei Technologies Co.,Ltd.) [HKLM] -- MobiConnect =>.Huawei Technologies Co.,Ltd O42 - Logiciel: Monet V1.5 - (.Imagineer Systems Ltd.) [HKLM] -- {324B29DC-F24A-405C-80D7-3C18B7AEAAA4} O42 - Logiciel: Monet V1.5 - (.Imagineer Systems Ltd.) [HKLM] -- InstallShield_{324B29DC-F24A-405C-80D7-3C18B7AEAAA4} O42 - Logiciel: Mozilla Firefox 38.0.6 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.6 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MP3 Player Utilities 3.68 - (.myMPxPlayer.org.) [HKLM] -- {5DFDB75C-DA8C-45DB-987C-67000BB6C3B9} O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation O42 - Logiciel: My 7 Optimizer - (...) [HKLM] -- My 7 Optimizer O42 - Logiciel: Paint.NET v3.5.10 - (.dotPDN LLC.) [HKLM] -- {529125EF-E3AC-4B74-97E6-F688A7C0F1BF} =>.dotPDN LLC O42 - Logiciel: Pale Moon 25.4.1 (x86 en-US) - (.Moonchild Productions.) [HKLM] -- Pale Moon 25.4.1 (x86 en-US) =>.Moonchild Productions O42 - Logiciel: Photo Blend 3D 1.5 - (.Mediachance.com.) [HKLM] -- {DCDC7A33-A6DB-4A39-A955-57994D25902D}_is1 O42 - Logiciel: Photo-Brush 5.30 - (.Mediachance Corp..) [HKLM] -- Photo-Brush_is1 O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 =>.Google Inc® O42 - Logiciel: Platform - (.VIA Technologies, Inc..) [HKLM] -- {20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: PSD Codec by Ardfry Imaging, LLC (32 bit) - (.Ardfry Imaging, LLC.) [HKLM] -- {345E25C8-EC20-45D5-A088-C5891FC603D4} O42 - Logiciel: PSD CODEC Version 1.6.1.0 - (.Ardfry Imaging, LLC.) [HKLM] -- Ardfry PSD CODEC_is1 {549F541F8D4B12965A708643E7649DF3} O42 - Logiciel: pspx8.0 version Final - (.ztona, Inc..) [HKLM] -- {B231ECDF-E63A-458B-B3AE-EAAEB1398237}_is1 O42 - Logiciel: RadioMaximus 1.85 - (.Raimersoft.) [HKLM] -- RadioMaximus_is1 =>.Raimersoft O42 - Logiciel: RadioSure - (...) [HKCU] -- RadioSure O42 - Logiciel: Ralink RT2870 Wireless LAN Card - (.Ralink.) [HKLM] -- {28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D} =>.Ralink Technology Corporation® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Setup - (.Nom de société par défaut.) [HKLM] -- {53B640A8-36B3-4602-8812-37EA0BCB5473} O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A. O42 - Logiciel: SmartSound Quicktracks Plugin - (.SmartSound Software Inc.) [HKLM] -- {4A7FDA4D-F4D7-4A49-934A-066D59A43C7E} =>.SmartSound Software Inc O42 - Logiciel: SmartSound Quicktracks Plugin - (.SmartSound Software Inc.) [HKLM] -- InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E} =>.SmartSound Software Inc O42 - Logiciel: Snappersoft USB Healer 1.4 - (.Snappersoft (Pty) LTD.) [HKLM] -- {1C9F3B97-4669-45D8-A24C-B4EF918688EC}_is1 O42 - Logiciel: Soda PDF 8 - (.LULU Software Limited.) [HKLM] -- Soda8 {0768200E7F5A53461703AE577D989C30} O42 - Logiciel: Soda PDF 8 View Module - (.LULU Software Limited.) [HKLM] -- {1CAC1292-59AE-4F90-B913-6543E0EC55C6} O42 - Logiciel: Splash PRO EX - (.Mirillis.) [HKLM] -- {35FD015F-3D35-4EF9-A3FA-7CC9FE2888E1} =>.Mirillis O42 - Logiciel: Start Menu X version 5.30 - (.OrdinarySoft.) [HKLM] -- {3E494002-985C-4908-B72C-5B4DD15BE090}_is1 {523257808639144A92C2578860319174} =>.OrdinarySoft O42 - Logiciel: The KMPlayer (remove only) - (...) [HKLM] -- The KMPlayer O42 - Logiciel: Total Video Converter 3.61 100319 - (.EffectMatrix Inc..) [HKLM] -- Total Video Converter 3.61_is1 O42 - Logiciel: Trojan Killer - (.GridinSoft LLC.) [HKLM] -- GridinSoft Trojan Killer {36E430A048545F5E36E1B55CE55F65E0} O42 - Logiciel: Tweaking.com - Windows Repair - (.Tweaking.com.) [HKLM] -- Tweaking.com - Windows Repair =>.Tweaking.com O42 - Logiciel: Unlocker 1.8.7 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: Vertus Fluid Mask 3 3.3.14 - (...) [HKLM] -- vertusFluidMask3 O42 - Logiciel: VIA Platform Device Manager - (.VIA Technologies, Inc..) [HKLM] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: VideoPad Video Editor - (.NCH Software.) [HKLM] -- VideoPad =>.NCH Software® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Voxengo LF Max Punch - (.Voxengo.) [HKLM] -- Voxengo LF Max Punch_is1 {00E58C156ACAAA3401C1267B26D9777B44} O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM] -- Winamp =>.Nullsoft, Inc O42 - Logiciel: Winamp Detector Plug-in - (.Nullsoft, Inc.) [HKCU] -- Winamp Detect =>.Nullsoft, Inc O42 - Logiciel: Windows 7 Manager - (.Yamicsoft.) [HKLM] -- {2E146DCE-BA8C-49E1-BD7E-464231FBC9AE} =>.Yamicsoft O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corp O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM] -- WinPcapInst =>.Riverbed Technology, Inc. O42 - Logiciel: WinRAR 4.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH O42 - Logiciel: Yahoo! Messenger - (...) [HKLM] -- Yahoo! Messenger O42 - Logiciel: Your Uninstaller! 2008 Version 6.2 - (.URSoft, Inc..) [HKLM] -- Your Uninstaller! 2008_is1 ---\\ HKCU & HKLM Software Keys (311) - 99s HKLM\SOFTWARE\AdMuncher HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\Anvisoft HKLM\SOFTWARE\Artera HKLM\SOFTWARE\Ashampoo HKLM\SOFTWARE\AS_Mubashir HKLM\SOFTWARE\Atheros HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\Auslogics HKLM\SOFTWARE\Baidu Security HKLM\SOFTWARE\Baidu_Drp_pos HKLM\SOFTWARE\BANDISOFT HKLM\SOFTWARE\Bitdefender Agent HKLM\SOFTWARE\BlueStacks HKLM\SOFTWARE\Bulldog HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\cFos HKLM\SOFTWARE\Chrispc HKLM\SOFTWARE\Clownfish HKLM\SOFTWARE\cmcm HKLM\SOFTWARE\CyberLink HKLM\SOFTWARE\Cygwin HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\Dolby HKLM\SOFTWARE\dreAd HKLM\SOFTWARE\EASEUS HKLM\SOFTWARE\Essentware =>.Superfluous.Essentware HKLM\SOFTWARE\FinalData HKLM\SOFTWARE\Flaming Pear HKLM\SOFTWARE\Flash Memory Toolkit HKLM\SOFTWARE\FlashPeak HKLM\SOFTWARE\FlashSpeed200 HKLM\SOFTWARE\FolderProtect HKLM\SOFTWARE\Free YouTube Downloader HKLM\SOFTWARE\Freemake HKLM\SOFTWARE\GLArab.com HKLM\SOFTWARE\Glass Crystal Windows Theme HKLM\SOFTWARE\Google HKLM\SOFTWARE\GridinSoft HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\HitmanPro HKLM\SOFTWARE\Huawei technologies HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\Image-Line HKLM\SOFTWARE\Imagenomic HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\instinno HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\IObit HKLM\SOFTWARE\Isoplex HKLM\SOFTWARE\iTinySoft HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\JufSoft HKLM\SOFTWARE\K-Lite HKLM\SOFTWARE\KasperskyLab HKLM\SOFTWARE\L&H HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\LogMeInRescueCallingCard HKLM\SOFTWARE\MacKichan Software HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Magix HKLM\SOFTWARE\Magnet HKLM\SOFTWARE\Malwarebytes Anti-Exploit HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Maxthon3 HKLM\SOFTWARE\MediaFixer HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MT Solution HKLM\SOFTWARE\NCH Software HKLM\SOFTWARE\NCH Swift Sound HKLM\SOFTWARE\Netgate HKLM\SOFTWARE\Nevron HKLM\SOFTWARE\Nico Mak Computing HKLM\SOFTWARE\Nokia HKLM\SOFTWARE\Ntpad HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Outsim HKLM\SOFTWARE\Paint.NET HKLM\SOFTWARE\PC Connectivity Solution HKLM\SOFTWARE\PCRecovery HKLM\SOFTWARE\PCTools HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\PoINT HKLM\SOFTWARE\Prosoft HKLM\SOFTWARE\ProtectedData HKLM\SOFTWARE\QSound Labs, Inc. HKLM\SOFTWARE\Quantel HKLM\SOFTWARE\Ralink HKLM\SOFTWARE\RandomControl HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\Safer Networking Limited HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SmartSound Software HKLM\SOFTWARE\Soda PDF 8 HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SPlayer HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Swearware HKLM\SOFTWARE\ThinPrint HKLM\SOFTWARE\TuneUp HKLM\SOFTWARE\VertusTech HKLM\SOFTWARE\VIA Technologies, Inc HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Vitalwerks HKLM\SOFTWARE\VMware, Inc. HKLM\SOFTWARE\Voice HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Voxengo HKLM\SOFTWARE\VST HKLM\SOFTWARE\Webteh HKLM\SOFTWARE\WIBU-SYSTEMS HKLM\SOFTWARE\WinAbility HKLM\SOFTWARE\Windows 7 Black Windows Theme HKLM\SOFTWARE\Windows X HKLM\SOFTWARE\WindowsDoctor HKLM\SOFTWARE\WindowsThemeInstaller HKLM\SOFTWARE\WinPcap HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wise Solutions HKLM\SOFTWARE\Wondershare HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\yahoo =>.Yahoo! HKCU\SOFTWARE\2VG HKCU\SOFTWARE\360Browser HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\AC3filter HKCU\SOFTWARE\ACE Compression Software HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AKVIS HKCU\SOFTWARE\All-Radio HKCU\SOFTWARE\ALLPlayer Remote HKCU\SOFTWARE\AntiCrash HKCU\SOFTWARE\Anvisoft HKCU\SOFTWARE\Any Video Converter HKCU\SOFTWARE\AppConf HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AppWizard-Generated RegKey12773444 HKCU\SOFTWARE\ARAR HKCU\SOFTWARE\Ares HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\ATS-FFormula HKCU\SOFTWARE\Aurigma HKCU\SOFTWARE\AZR HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Balabolka HKCU\SOFTWARE\BANDISOFT HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BrowserTemp HKCU\SOFTWARE\BST HKCU\SOFTWARE\Camfrog HKCU\SOFTWARE\Caphyon HKCU\SOFTWARE\Caricature Software HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\cFos HKCU\SOFTWARE\ChrisTV Online HKCU\SOFTWARE\ChromePlus HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Class HKCU\SOFTWARE\Clownfish HKCU\SOFTWARE\cmcm HKCU\SOFTWARE\Codecs for Windows 7 Pack HKCU\SOFTWARE\ColorCast HKCU\SOFTWARE\Crystal Reality HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Datastead HKCU\SOFTWARE\Daum HKCU\SOFTWARE\DeadDiscDoctor HKCU\SOFTWARE\Digimarc HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Drivers HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\Easersoft HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\EpmNewsInfo HKCU\SOFTWARE\EXECryptorTestKeys HKCU\SOFTWARE\ExtractNow HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\FDRLab HKCU\SOFTWARE\Flaming Pear PV HKCU\SOFTWARE\Flash Player Pro HKCU\SOFTWARE\FlashPeak HKCU\SOFTWARE\FreeDownloadManager.ORG HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GetData HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GridinSoft HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hetman Software HKCU\SOFTWARE\iCarePro HKCU\SOFTWARE\iCare_Vesion HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Image-Line HKCU\SOFTWARE\Imagenomic HKCU\SOFTWARE\Integrator HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Iris HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JufSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\KMPlayer HKCU\SOFTWARE\Kodi HKCU\SOFTWARE\Kolor HKCU\SOFTWARE\ksdev HKCU\SOFTWARE\Lagarith HKCU\SOFTWARE\LAV HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Link64 HKCU\SOFTWARE\LogMeInRescueCallingCard HKCU\SOFTWARE\MacKichan Software HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Magicbit HKCU\SOFTWARE\MagicISO HKCU\SOFTWARE\Magix HKCU\SOFTWARE\MAGIX AG HKCU\SOFTWARE\Maxthon3 HKCU\SOFTWARE\MediaChance.Info HKCU\SOFTWARE\Michael Herf HKCU\SOFTWARE\MiniTool Solution Ltd. HKCU\SOFTWARE\Mirillis HKCU\SOFTWARE\Modern UI Test HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\msec.it HKCU\SOFTWARE\MyCam HKCU\SOFTWARE\NCH Software HKCU\SOFTWARE\NCH Swift Sound HKCU\SOFTWARE\Netgate HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nico Mak Computing HKCU\SOFTWARE\Nokia HKCU\SOFTWARE\NoVirusThanks HKCU\SOFTWARE\O&O UnErase HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Ordinarysoft HKCU\SOFTWARE\Outsim HKCU\SOFTWARE\Paint.NET HKCU\SOFTWARE\PanoramaStudio HKCU\SOFTWARE\PC App Store HKCU\SOFTWARE\PCTools HKCU\SOFTWARE\PhotoFiltre Studio X HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Pointstone HKCU\SOFTWARE\Popcorn Time HKCU\SOFTWARE\PopcornTime HKCU\SOFTWARE\P®O Group HKCU\SOFTWARE\QDFV HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RadioSure HKCU\SOFTWARE\Recover Files Co., Ltd. HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Safer Networking Limited HKCU\SOFTWARE\scms128 HKCU\SOFTWARE\SimpleTV by SergeyVS#3 HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Smart PC Soft HKCU\SOFTWARE\Snappersoft USB Healer HKCU\SOFTWARE\Soda PDF 8 HKCU\SOFTWARE\SoftVoice HKCU\SOFTWARE\Solveig Multimedia HKCU\SOFTWARE\SOMUSQUE HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Speaking Notepad HKCU\SOFTWARE\SPlayer HKCU\SOFTWARE\Stardock HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\System32 HKCU\SOFTWARE\techPowerUp HKCU\SOFTWARE\Temporary HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\tvp HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\uTorrentPlus HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VertusTech HKCU\SOFTWARE\VideoLAN HKCU\SOFTWARE\Virtual Plastic Surgery Software - VPSS HKCU\SOFTWARE\VMware, Inc. HKCU\SOFTWARE\Webcam HKCU\SOFTWARE\Win HKCU\SOFTWARE\WinAbility HKCU\SOFTWARE\Winamp HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WinZip Computing HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\yahoo =>.Yahoo! HKCU\SOFTWARE\Yamicsoft HKCU\SOFTWARE\YouTube Downloader Suite HKCU\SOFTWARE\Z-Com, Inc. HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\ThinPrint ---\\ Contenu des dossiers Programmes (542) - 158s O43 - CFD: 29/01/2016 - [0] D -- C:\Program Files\360 O43 - CFD: 16/01/2015 - [] D -- C:\Program Files\3D Real Boxshot O43 - CFD: 22/03/2015 - [] D -- C:\Program Files\Abadisoft Group O43 - CFD: 18/05/2015 - [] D -- C:\Program Files\Abrosoft O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Ad Muncher {00C1A391D64C66} O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 04/02/2015 - [] D -- C:\Program Files\Advanced Fix 2013 O43 - CFD: 15/12/2015 - [] D -- C:\Program Files\ALLPlayer Remote {569643B8827B0FF8BF76A119AD869752} O43 - CFD: 26/07/2015 - [0] D -- C:\Program Files\Anvisoft O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Any Video Converter O43 - CFD: 08/09/2015 - [] D -- C:\Program Files\ApeeeGoSoft O43 - CFD: 27/07/2015 - [0] D -- C:\Program Files\Apowersoft O43 - CFD: 04/01/2016 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc.® O43 - CFD: 06/01/2016 - [] D -- C:\Program Files\ArdfryImaging {0B087367D503190405C506E89CB2BC63} O43 - CFD: 07/09/2015 - [0] D -- C:\Program Files\Ashampoo O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Balabolka O43 - CFD: 06/01/2016 - [] D -- C:\Program Files\Bandicut O43 - CFD: 26/03/2014 - [] D -- C:\Program Files\BlueSprig O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\BotRevoltFree O43 - CFD: 02/05/2014 - [] D -- C:\Program Files\Broadcom O43 - CFD: 29/05/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 02/05/2014 - [] D -- C:\Program Files\Cisco O43 - CFD: 27/05/2015 - [] D -- C:\Program Files\Clownfish O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\cmcm =>.Beijing Kingsoft Security software Co.,Ltd® O43 - CFD: 13/05/2015 - [] D -- C:\Program Files\CodeMeter =>.WIBU-SYSTEMS AG® O43 - CFD: 30/01/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 19/03/2015 - [] D -- C:\Program Files\concept design O43 - CFD: 31/01/2016 - [] D -- C:\Program Files\CPUID O43 - CFD: 28/01/2016 - [0] D -- C:\Program Files\Dachshund Software O43 - CFD: 16/01/2015 - [] D -- C:\Program Files\Daum O43 - CFD: 12/06/2014 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows® O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Dodi TV O43 - CFD: 01/11/2013 - [] D -- C:\Program Files\Dolby O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 29/04/2014 - [] D -- C:\Program Files\Easersoft O43 - CFD: 29/01/2016 - [0] D -- C:\Program Files\EaseUS O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\ffmpeg-avcodex O43 - CFD: 11/03/2014 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Filter Forge 5 O43 - CFD: 26/06/2014 - [] D -- C:\Program Files\Folder Guard {06AF7FEA40DE7899A4A1BF4C0580B0EE} O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\Foxit Software O43 - CFD: 12/07/2015 - [] D -- C:\Program Files\Freemake O43 - CFD: 13/04/2015 - [] D -- C:\Program Files\frndic O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\GameTop.com O43 - CFD: 06/07/2015 - [] D -- C:\Program Files\GET VideoSoft Toolbar O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\GetData O43 - CFD: 15/06/2015 - [] D -- C:\Program Files\GLArab.com {2B20137DFF09D1} O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 30/07/2015 - [] D -- C:\Program Files\GreenBrowser O43 - CFD: 17/12/2015 - [] D -- C:\Program Files\GridinSoft Trojan Killer {36E430A048545F5E36E1B55CE55F65E0} O43 - CFD: 01/04/2015 - [] D -- C:\Program Files\Hear O43 - CFD: 27/01/2016 - [0] D -- C:\Program Files\HitmanPro O43 - CFD: 18/08/2015 - [] D -- C:\Program Files\IDA {4EFAEA756528C238AEA65870CAA59268} O43 - CFD: 13/01/2015 - [] D -- C:\Program Files\Image-Line O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Imagenomic O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Imagic Photo O43 - CFD: 20/08/2014 - [] D -- C:\Program Files\Inpaint O43 - CFD: 18/12/2015 - [] D -- C:\Program Files\InstallShield Installation Information =>.CyberLink® O43 - CFD: 11/03/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation® O43 - CFD: 28/01/2016 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 04/01/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 01/02/2016 - [] D -- C:\Program Files\IObit =>.IObit Information Technology® O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Isoplex O43 - CFD: 30/01/2016 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 12/04/2015 - [0] D -- C:\Program Files\JavaScript Maker O43 - CFD: 05/04/2015 - [0] D -- C:\Program Files\JLC's Software O43 - CFD: 15/03/2014 - [] D -- C:\Program Files\JufSoft {00B2034DDFD33C4C10A3FA403911E4F24B} O43 - CFD: 17/09/2015 - [] D -- C:\Program Files\Kodi O43 - CFD: 05/08/2015 - [0] D -- C:\Program Files\Kolor O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Konami O43 - CFD: 21/07/2015 - [] D -- C:\Program Files\LAV Filters O43 - CFD: 16/06/2015 - [] D -- C:\Program Files\Lavasoft O43 - CFD: 16/02/2015 - [] D -- C:\Program Files\Leawo O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\LSoft Technologies O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 26/01/2016 - [] D -- C:\Program Files\Maxthon =>.Maxthon (Asia) Limited.® O43 - CFD: 06/01/2016 - [] D -- C:\Program Files\Messenger for Desktop O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft Analysis Services O43 - CFD: 30/12/2015 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft Sync Framework O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft Synchronization Services O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 23/03/2014 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 25/01/2016 - [] D -- C:\Program Files\MiPony O43 - CFD: 23/11/2014 - [] D -- C:\Program Files\Mirillis {29B3F926B23673917017826E581A734D} O43 - CFD: 19/03/2014 - [] D -- C:\Program Files\MobiConnect O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 14/06/2014 - [] D -- C:\Program Files\MP3 Player Utilities 3.68 O43 - CFD: 05/04/2015 - [] D -- C:\Program Files\MSBuild O43 - CFD: 18/03/2014 - [] D -- C:\Program Files\MSECache O43 - CFD: 04/01/2015 - [] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 21/04/2015 - [0] D -- C:\Program Files\MunSoft O43 - CFD: 16/06/2015 - [0] D -- C:\Program Files\Naver O43 - CFD: 03/11/2014 - [] D -- C:\Program Files\NCH Software O43 - CFD: 06/05/2014 - [] D -- C:\Program Files\No-IP O43 - CFD: 11/09/2015 - [] D -- C:\Program Files\Nom de société par défaut O43 - CFD: 27/05/2014 - [] D -- C:\Program Files\ODEON O43 - CFD: 28/01/2016 - [] D -- C:\Program Files\OO Software O43 - CFD: 03/11/2014 - [] D -- C:\Program Files\Outsim O43 - CFD: 22/03/2015 - [] D -- C:\Program Files\Paint.NET =>.dotPDN LLC® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Pale Moon O43 - CFD: 27/05/2014 - [] D -- C:\Program Files\PC Connectivity Solution =>.Microsoft Windows® O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\PC Recovery O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Photo Genius O43 - CFD: 31/05/2015 - [] D -- C:\Program Files\Photo-Brush 5 O43 - CFD: 12/03/2014 - [] D -- C:\Program Files\PhotoBlend O43 - CFD: 27/04/2015 - [] D -- C:\Program Files\PhotoFiltre O43 - CFD: 08/02/2015 - [] D -- C:\Program Files\PhotoFiltre Studio X O43 - CFD: 21/01/2016 - [0] D -- C:\Program Files\Pointstone O43 - CFD: 17/06/2015 - [] D -- C:\Program Files\Portrait Professional Studio 10 O43 - CFD: 16/06/2015 - [0] D -- C:\Program Files\PortraitPro 12 Trial O43 - CFD: 21/01/2016 - [] D -- C:\Program Files\PowerDataRecovery O43 - CFD: 27/05/2015 - [] D -- C:\Program Files\QSocial O43 - CFD: 17/09/2015 - [] D -- C:\Program Files\RadioMaximus O43 - CFD: 02/05/2014 - [] D -- C:\Program Files\Ralink =>.Ralink Technology Corporation® O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\RandomControl O43 - CFD: 17/09/2014 - [] D -- C:\Program Files\Real O43 - CFD: 03/01/2016 - [] D -- C:\Program Files\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Reimage =>PUP.Optional.ReImageRepair O43 - CFD: 28/01/2016 - [] D -- C:\Program Files\RFA 10 O43 - CFD: 30/12/2015 - [0] D -- C:\Program Files\SecurityXploded O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\SimpleTV O43 - CFD: 03/12/2015 - [] D -- C:\Program Files\simpleTV_b8_215_+radio 2170 O43 - CFD: 06/01/2016 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 02/02/2016 - [] AD -- C:\Program Files\Slimjet O43 - CFD: 01/08/2014 - [] D -- C:\Program Files\SmartSound Software O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Snappersoft Inc O43 - CFD: 22/12/2015 - [] D -- C:\Program Files\Soda PDF 8 {0768200E7F5A53461703AE577D989C30} O43 - CFD: 28/01/2016 - [0] D -- C:\Program Files\SpeedyPC Software =>PUP.Optional.SpeedyPC O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\SRS Labs =>.SRS Labs, Inc® O43 - CFD: 11/01/2016 - [] D -- C:\Program Files\Start Menu X {523257808639144A92C2578860319174} O43 - CFD: 14/08/2015 - [] D -- C:\Program Files\The KMPlayer O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\Total Video Converter O43 - CFD: 21/09/2015 - [] D -- C:\Program Files\TV 3L PC O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Tweaking.com =>.Tweaking LLC® O43 - CFD: 22/01/2016 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Unlocker O43 - CFD: 20/12/2015 - [0] D -- C:\Program Files\uTorrent O43 - CFD: 04/01/2016 - [] D -- C:\Program Files\Vertus Fluid Mask 3 O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\VIA =>.SRS Labs, Inc® O43 - CFD: 05/04/2015 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 23/04/2014 - [] D -- C:\Program Files\VMware O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Voxengo {00E58C156ACAAA3401C1267B26D9777B44} O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\VPSS O43 - CFD: 27/03/2015 - [] D -- C:\Program Files\VstPlugins O43 - CFD: 04/01/2016 - [] D -- C:\Program Files\Webcam O43 - CFD: 03/12/2015 - [] D -- C:\Program Files\Webteh O43 - CFD: 01/11/2013 - [] D -- C:\Program Files\Winamp =>.Nullsoft Inc.® O43 - CFD: 14/09/2014 - [] D -- C:\Program Files\Winamp Detect O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 28/03/2014 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 31/08/2015 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 31/08/2015 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 11/03/2014 - [] D -- C:\Program Files\Windows NT O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 16/08/2009 - [] D -- C:\Program Files\Windows Virtual PC O43 - CFD: 18/12/2015 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology, Inc.® O43 - CFD: 27/07/2015 - [] D -- C:\Program Files\WinRAR O43 - CFD: 25/01/2016 - [] D -- C:\Program Files\WinThemePack O43 - CFD: 28/01/2015 - [] D -- C:\Program Files\Wireless WEP Key Password Spy O43 - CFD: 08/10/2014 - [] D -- C:\Program Files\Yahoo! O43 - CFD: 12/03/2014 - [] D -- C:\Program Files\Yamicsoft {17D0A9552B41FF0C3583D0DF3CC7712B} O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Your Uninstaller 2008 O43 - CFD: 11/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad Muncher O43 - CFD: 11/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 29/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare O43 - CFD: 15/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Remote Control O43 - CFD: 30/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Any Video Converter O43 - CFD: 06/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros O43 - CFD: 09/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicut O43 - CFD: 22/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BetternetForWindows O43 - CFD: 03/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS.Player O43 - CFD: 28/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BYclouder Data Recovery Pro O43 - CFD: 28/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clean Master O43 - CFD: 27/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clownfish O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codecs for Windows 7 Pack O43 - CFD: 28/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dachshund Software O43 - CFD: 16/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX O43 - CFD: 01/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby O43 - CFD: 01/11/2013 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby for Winamp5 O43 - CFD: 29/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard 7.5 O43 - CFD: 29/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExtremeCopy O43 - CFD: 27/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileRestore Professional O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Filter Forge 5 O43 - CFD: 22/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Player Pro O43 - CFD: 30/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameTop.com O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glass Crystal Windows Theme O43 - CFD: 17/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Trojan Killer O43 - CFD: 01/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hear O43 - CFD: 28/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hetman Software O43 - CFD: 04/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard Company O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagic Photo O43 - CFD: 20/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inpaint O43 - CFD: 31/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Accelerator O43 - CFD: 11/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 30/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 21/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxthon Cloud Browser O43 - CFD: 24/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 25/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiPony O43 - CFD: 19/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MobiConnect O43 - CFD: 13/05/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Monet V1.5 O43 - CFD: 14/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Player Utilities 3.68 O43 - CFD: 06/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\No-IP O43 - CFD: 01/11/2013 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ONSPEED O43 - CFD: 12/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Blend O43 - CFD: 31/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo-Brush 5 O43 - CFD: 08/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 12/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 O43 - CFD: 18/07/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSD Codec by Ardfry Imaging O43 - CFD: 12/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pspx8.0 O43 - CFD: 17/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RadioMaximus O43 - CFD: 03/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless O43 - CFD: 17/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealGames O43 - CFD: 23/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Mechanic O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair =>PUP.Optional.ReImageRepair O43 - CFD: 23/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scientific WorkPlace 5.5 O43 - CFD: 24/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snappersoft USB Healer O43 - CFD: 22/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soda PDF 8 O43 - CFD: 22/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPlayer O43 - CFD: 15/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu X O43 - CFD: 01/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 12/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Video Converter O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com O43 - CFD: 12/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vertus Fluid Mask 3 O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 23/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware O43 - CFD: 24/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Voxengo O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webcam O43 - CFD: 14/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 Manager O43 - CFD: 11/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Virtual PC O43 - CFD: 18/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap O43 - CFD: 23/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wireless WEP Key Password Spy O43 - CFD: 08/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 2008 O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\360Quarant O43 - CFD: 18/07/2015 - [] D -- C:\ProgramData\3788 O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Ad Muncher O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Adobe O43 - CFD: 09/09/2014 - [] D -- C:\ProgramData\Adobe Systems O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\ALG Updater O43 - CFD: 15/12/2015 - [0] D -- C:\ProgramData\ALLPlayerRemote O43 - CFD: 15/03/2015 - [] D -- C:\ProgramData\Anvisoft O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Apple O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Ashampoo O43 - CFD: 06/01/2016 - [0] D -- C:\ProgramData\Atheros O43 - CFD: 16/06/2015 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 01/04/2015 - [0] D -- C:\ProgramData\BCloudScan_exe O43 - CFD: 19/01/2016 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 26/03/2014 - [] D -- C:\ProgramData\BlueSprig O43 - CFD: 11/03/2014 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\cFos O43 - CFD: 23/11/2014 - [] D -- C:\ProgramData\cmcm O43 - CFD: 23/09/2014 - [] D -- C:\ProgramData\Common Files O43 - CFD: 19/03/2014 - [] D -- C:\ProgramData\DatacardService O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Essentware =>.Superfluous.Essentware O43 - CFD: 11/03/2014 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Filter Forge Data O43 - CFD: 26/06/2014 - [] D -- C:\ProgramData\Folder Guard O43 - CFD: 12/07/2015 - [0] D -- C:\ProgramData\Freemake O43 - CFD: 27/05/2015 - [] D -- C:\ProgramData\GridinSoft O43 - CFD: 30/03/2014 - [] D -- C:\ProgramData\GroupPolicy O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\hzd3LK31QZCmtZ07Rj O43 - CFD: 11/03/2014 - [0] D -- C:\ProgramData\IDM O43 - CFD: 23/11/2014 - [] D -- C:\ProgramData\install_clap O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\IObit O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\IsolatedStorage O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 23/11/2014 - [] D -- C:\ProgramData\Kingsoft O43 - CFD: 16/02/2015 - [] D -- C:\ProgramData\Leawo O43 - CFD: 03/12/2015 - [] D -- C:\ProgramData\Licenses O43 - CFD: 27/01/2016 - [] D -- C:\ProgramData\Logs O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 27/01/2016 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit O43 - CFD: 11/03/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 20/01/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 14/05/2014 - [] D -- C:\ProgramData\Mirillis O43 - CFD: 19/03/2014 - [] D -- C:\ProgramData\MobiConnect O43 - CFD: 11/03/2014 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 03/11/2014 - [] D -- C:\ProgramData\NCH Software O43 - CFD: 27/05/2014 - [] D -- C:\ProgramData\Nokia O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 17/12/2015 - [] D -- C:\ProgramData\PassMark O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\ProductData O43 - CFD: 03/05/2014 - [] D -- C:\ProgramData\Ralink O43 - CFD: 02/05/2014 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 30/12/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 04/01/2016 - [] AD -- C:\ProgramData\Reprise O43 - CFD: 28/01/2016 - [] D -- C:\ProgramData\RFA_Backups O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 01/08/2014 - [] D -- C:\ProgramData\SmartSound Software Inc O43 - CFD: 22/12/2015 - [] D -- C:\ProgramData\Soda PDF 8 O43 - CFD: 28/01/2016 - [0] D -- C:\ProgramData\SpeedyPC Software =>PUP.Optional.SpeedyPC O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\SRS Labs O43 - CFD: 25/04/2014 - [] D -- C:\ProgramData\Stardock O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\StartMenuX O43 - CFD: 04/02/2015 - [] D -- C:\ProgramData\SystemSpeedBooster O43 - CFD: 02/02/2016 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 19/08/2015 - [] D -- C:\ProgramData\Thunder Network O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\VertusTech O43 - CFD: 12/07/2015 - [] D -- C:\ProgramData\VMware O43 - CFD: 18/12/2014 - [] D -- C:\ProgramData\Yahoo! O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\Common Files\Anvisoft O43 - CFD: 31/01/2016 - [0] D -- C:\Program Files\Common Files\AV O43 - CFD: 19/01/2016 - [] D -- C:\Program Files\Common Files\Bitdefender O43 - CFD: 05/04/2014 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 13/06/2014 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 11/03/2014 - [] D -- C:\Program Files\Common Files\Intel O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\Common Files\IObit O43 - CFD: 30/01/2016 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 13/04/2015 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 01/08/2014 - [] D -- C:\Program Files\Common Files\Nikon O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Common Files\PC Tools O43 - CFD: 22/12/2015 - [] D -- C:\Program Files\Common Files\PDF Software O43 - CFD: 14/09/2014 - [] D -- C:\Program Files\Common Files\PX Storage Engine O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 06/01/2016 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 28/01/2016 - [] D -- C:\Program Files\Common Files\SpeedyPC Software =>PUP.Optional.SpeedyPC O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Common Files\Steinberg O43 - CFD: 28/03/2014 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 29/01/2016 - [] D -- C:\Program Files\Common Files\VMware O43 - CFD: 22/03/2015 - [0] D -- C:\Program Files\Common Files\VST3 O43 - CFD: 16/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Adobe O43 - CFD: 27/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Any Video Converter O43 - CFD: 26/07/2015 - [] D -- C:\Users\team\AppData\Roaming\Apowersoft O43 - CFD: 11/09/2015 - [] D -- C:\Users\team\AppData\Roaming\Apple Computer O43 - CFD: 23/05/2015 - [] D -- C:\Users\team\AppData\Roaming\Ashampoo O43 - CFD: 22/03/2015 - [] D -- C:\Users\team\AppData\Roaming\Balabolka O43 - CFD: 06/01/2016 - [] D -- C:\Users\team\AppData\Roaming\BANDISOFT O43 - CFD: 26/03/2014 - [] D -- C:\Users\team\AppData\Roaming\BlueSprig O43 - CFD: 19/12/2015 - [] D -- C:\Users\team\AppData\Roaming\BSplayer O43 - CFD: 03/12/2015 - [] D -- C:\Users\team\AppData\Roaming\BSplayer Pro O43 - CFD: 17/06/2015 - [] D -- C:\Users\team\AppData\Roaming\concept design O43 - CFD: 26/03/2014 - [] D -- C:\Users\team\AppData\Roaming\CrystalIdea Software O43 - CFD: 01/08/2014 - [] D -- C:\Users\team\AppData\Roaming\CyberLink O43 - CFD: 02/02/2016 - [0] D -- C:\Users\team\AppData\Roaming\Desktopicon =>PUP.Optional.ADON O43 - CFD: 19/03/2015 - [] D -- C:\Users\team\AppData\Roaming\DivX O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Roaming\DMCache O43 - CFD: 31/01/2016 - [] D -- C:\Users\team\AppData\Roaming\DownloadNinja O43 - CFD: 27/01/2016 - [] D -- C:\Users\team\AppData\Roaming\DriverCure =>.Superfluous.Paretologic O43 - CFD: 04/01/2015 - [] D -- C:\Users\team\AppData\Roaming\dvdcss O43 - CFD: 20/11/2014 - [] D -- C:\Users\team\AppData\Roaming\EagleGet O43 - CFD: 12/03/2014 - [] D -- C:\Users\team\AppData\Roaming\ExtremeCopy O43 - CFD: 01/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Filter Forge 5 O43 - CFD: 01/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Filter Forge Data O43 - CFD: 14/03/2015 - [] D -- C:\Users\team\AppData\Roaming\FreeFixer O43 - CFD: 31/01/2016 - [] D -- C:\Users\team\AppData\Roaming\FreeFLVConverter O43 - CFD: 10/02/2015 - [] D -- C:\Users\team\AppData\Roaming\Google O43 - CFD: 10/09/2015 - [] D -- C:\Users\team\AppData\Roaming\gtk-2.0 O43 - CFD: 19/08/2015 - [] D -- C:\Users\team\AppData\Roaming\HaiYuInst O43 - CFD: 22/03/2015 - [0] D -- C:\Users\team\AppData\Roaming\Hardcore O43 - CFD: 31/01/2016 - [0] D -- C:\Users\team\AppData\Roaming\Hear O43 - CFD: 06/01/2016 - [] D -- C:\Users\team\AppData\Roaming\How Inc O43 - CFD: 01/02/2016 - [] D -- C:\Users\team\AppData\Roaming\IDM O43 - CFD: 27/12/2015 - [] D -- C:\Users\team\AppData\Roaming\Imagenomic O43 - CFD: 15/06/2015 - [] D -- C:\Users\team\AppData\Roaming\InfoServ O43 - CFD: 18/12/2015 - [] D -- C:\Users\team\AppData\Roaming\InstallShield O43 - CFD: 21/08/2015 - [] D -- C:\Users\team\AppData\Roaming\Internet Download Accelerator O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Roaming\IObit O43 - CFD: 22/08/2015 - [] D -- C:\Users\team\AppData\Roaming\IsolatedStorage O43 - CFD: 05/04/2015 - [0] D -- C:\Users\team\AppData\Roaming\JLC's Software O43 - CFD: 22/03/2015 - [0] D -- C:\Users\team\AppData\Roaming\Juce VST Host O43 - CFD: 31/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Kodi O43 - CFD: 16/02/2015 - [] D -- C:\Users\team\AppData\Roaming\Leawo O43 - CFD: 26/03/2014 - [] D -- C:\Users\team\AppData\Roaming\Macromedia O43 - CFD: 09/09/2014 - [] D -- C:\Users\team\AppData\Roaming\MAGIX O43 - CFD: 26/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Maxthon3 O43 - CFD: 30/07/2015 - [] SD -- C:\Users\team\AppData\Roaming\Microsoft O43 - CFD: 16/03/2014 - [] D -- C:\Users\team\AppData\Roaming\Million O43 - CFD: 25/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Mipony O43 - CFD: 14/05/2014 - [] D -- C:\Users\team\AppData\Roaming\Mirillis O43 - CFD: 27/04/2015 - [] D -- C:\Users\team\AppData\Roaming\MoMo - Web Browser Optimize O43 - CFD: 16/12/2015 - [] D -- C:\Users\team\AppData\Roaming\Moonchild Productions O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Roaming\Mozilla O43 - CFD: 27/01/2016 - [0] D -- C:\Users\team\AppData\Roaming\MusicNet O43 - CFD: 16/06/2015 - [] D -- C:\Users\team\AppData\Roaming\MyTotalTV O43 - CFD: 03/11/2014 - [] D -- C:\Users\team\AppData\Roaming\NaviFirmPlus O43 - CFD: 03/11/2014 - [] D -- C:\Users\team\AppData\Roaming\NCH Software O43 - CFD: 27/05/2014 - [] D -- C:\Users\team\AppData\Roaming\Nokia O43 - CFD: 23/09/2014 - [] D -- C:\Users\team\AppData\Roaming\Opera Software O43 - CFD: 20/03/2015 - [] D -- C:\Users\team\AppData\Roaming\PanoramaStudio2Pro O43 - CFD: 19/12/2014 - [] D -- C:\Users\team\AppData\Roaming\PC App Store O43 - CFD: 27/05/2014 - [] D -- C:\Users\team\AppData\Roaming\PC Suite O43 - CFD: 06/12/2014 - [0] D -- C:\Users\team\AppData\Roaming\PeaZip O43 - CFD: 16/09/2015 - [] D -- C:\Users\team\AppData\Roaming\PerfectPlayer O43 - CFD: 08/02/2015 - [] D -- C:\Users\team\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 19/05/2015 - [0] D -- C:\Users\team\AppData\Roaming\PhotoGenius O43 - CFD: 21/01/2016 - [0] D -- C:\Users\team\AppData\Roaming\Pointstone O43 - CFD: 16/01/2015 - [] D -- C:\Users\team\AppData\Roaming\PotPlayerMini O43 - CFD: 31/01/2016 - [] D -- C:\Users\team\AppData\Roaming\ProductData O43 - CFD: 12/05/2015 - [] D -- C:\Users\team\AppData\Roaming\QSocial O43 - CFD: 26/03/2014 - [] D -- C:\Users\team\AppData\Roaming\QuickScan O43 - CFD: 17/09/2015 - [] D -- C:\Users\team\AppData\Roaming\RadioMaximus O43 - CFD: 04/02/2015 - [] D -- C:\Users\team\AppData\Roaming\Recover Files Platinum O43 - CFD: 22/03/2015 - [0] D -- C:\Users\team\AppData\Roaming\Sawer O43 - CFD: 07/11/2015 - [] D -- C:\Users\team\AppData\Roaming\SimpleTV V03 O43 - CFD: 18/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Skype O43 - CFD: 27/12/2015 - [] D -- C:\Users\team\AppData\Roaming\SLGlobal O43 - CFD: 21/08/2015 - [] D -- C:\Users\team\AppData\Roaming\SlipStream O43 - CFD: 22/12/2015 - [] D -- C:\Users\team\AppData\Roaming\Soda PDF 8 O43 - CFD: 31/12/2015 - [] D -- C:\Users\team\AppData\Roaming\Sony O43 - CFD: 27/12/2015 - [] D -- C:\Users\team\AppData\Roaming\Spectrum TV O43 - CFD: 14/12/2015 - [0] D -- C:\Users\team\AppData\Roaming\speedometer-57d590a0714e79e678ba3b48dbf5e08a O43 - CFD: 28/01/2016 - [0] D -- C:\Users\team\AppData\Roaming\SpeedyPC Software =>PUP.Optional.SpeedyPC O43 - CFD: 30/12/2015 - [] D -- C:\Users\team\AppData\Roaming\SPlayer O43 - CFD: 28/01/2016 - [] D -- C:\Users\team\AppData\Roaming\StartMenuX O43 - CFD: 18/09/2014 - [] D -- C:\Users\team\AppData\Roaming\Stereoscopic Player O43 - CFD: 03/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Sun O43 - CFD: 04/02/2015 - [] D -- C:\Users\team\AppData\Roaming\SystemSpeedBooster O43 - CFD: 16/06/2015 - [] D -- C:\Users\team\AppData\Roaming\Temp O43 - CFD: 23/09/2014 - [] D -- C:\Users\team\AppData\Roaming\TuneUp Software O43 - CFD: 06/01/2015 - [] D -- C:\Users\team\AppData\Roaming\URSoft O43 - CFD: 19/12/2015 - [] D -- C:\Users\team\AppData\Roaming\Vitzo O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Roaming\vlc O43 - CFD: 18/12/2015 - [] D -- C:\Users\team\AppData\Roaming\VMware O43 - CFD: 29/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Winamp O43 - CFD: 07/08/2014 - [] D -- C:\Users\team\AppData\Roaming\WinRAR O43 - CFD: 06/11/2014 - [] D -- C:\Users\team\AppData\Roaming\YCanPDF O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Roaming\ZHP O43 - CFD: 31/01/2016 - [] D -- C:\Users\team\AppData\Roaming\ZiggyTV O43 - CFD: 21/01/2016 - [] D -- C:\Users\team\AppData\Local\Adobe O43 - CFD: 24/11/2015 - [] D -- C:\Users\team\AppData\Local\Apple O43 - CFD: 04/01/2016 - [] D -- C:\Users\team\AppData\Local\Apple Computer O43 - CFD: 11/03/2014 - [0] SHD -- C:\Users\team\AppData\Local\Application Data O43 - CFD: 31/01/2015 - [] D -- C:\Users\team\AppData\Local\Apps O43 - CFD: 16/07/2015 - [] D -- C:\Users\team\AppData\Local\Ares O43 - CFD: 23/05/2015 - [] D -- C:\Users\team\AppData\Local\ashampoo O43 - CFD: 09/08/2014 - [] D -- C:\Users\team\AppData\Local\Avanquest O43 - CFD: 01/05/2015 - [] D -- C:\Users\team\AppData\Local\Bluestacks O43 - CFD: 03/11/2014 - [] D -- C:\Users\team\AppData\Local\cache O43 - CFD: 19/01/2016 - [] D -- C:\Users\team\AppData\Local\CEF O43 - CFD: 18/08/2015 - [] D -- C:\Users\team\AppData\Local\cFos O43 - CFD: 01/02/2016 - [0] D -- C:\Users\team\AppData\Local\CrashDumps O43 - CFD: 23/05/2015 - [] D -- C:\Users\team\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 02/08/2014 - [] D -- C:\Users\team\AppData\Local\Cyberlink O43 - CFD: 23/05/2015 - [] D -- C:\Users\team\AppData\Local\DeskShare Data O43 - CFD: 03/02/2015 - [] D -- C:\Users\team\AppData\Local\Diagnostics O43 - CFD: 18/06/2014 - [] D -- C:\Users\team\AppData\Local\Downloaded Installations O43 - CFD: 23/03/2015 - [0] D -- C:\Users\team\AppData\Local\ExtractNow O43 - CFD: 04/11/2014 - [] D -- C:\Users\team\AppData\Local\Facebook O43 - CFD: 22/03/2015 - [] D -- C:\Users\team\AppData\Local\FacebookDiscovery O43 - CFD: 04/04/2015 - [] D -- C:\Users\team\AppData\Local\FluxSoftware O43 - CFD: 26/06/2014 - [] D -- C:\Users\team\AppData\Local\Folder Guard O43 - CFD: 07/01/2016 - [] D -- C:\Users\team\AppData\Local\FreeFixer O43 - CFD: 17/09/2015 - [] D -- C:\Users\team\AppData\Local\freeuser O43 - CFD: 15/06/2015 - [] D -- C:\Users\team\AppData\Local\Geckofx O43 - CFD: 23/09/2015 - [] D -- C:\Users\team\AppData\Local\Google O43 - CFD: 11/03/2014 - [0] SHD -- C:\Users\team\AppData\Local\Historique O43 - CFD: 24/01/2016 - [0] D -- C:\Users\team\AppData\Local\History O43 - CFD: 09/12/2015 - [] D -- C:\Users\team\AppData\Local\Isoplex O43 - CFD: 05/08/2015 - [0] D -- C:\Users\team\AppData\Local\Kolor O43 - CFD: 04/11/2014 - [] D -- C:\Users\team\AppData\Local\Macromedia O43 - CFD: 12/05/2015 - [] D -- C:\Users\team\AppData\Local\MapleStudio O43 - CFD: 24/01/2016 - [] D -- C:\Users\team\AppData\Local\Messenger O43 - CFD: 01/02/2016 - [] D -- C:\Users\team\AppData\Local\Microsoft O43 - CFD: 12/04/2015 - [] D -- C:\Users\team\AppData\Local\Microsoft Help O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Local\Mirillis O43 - CFD: 29/01/2016 - [] D -- C:\Users\team\AppData\Local\Moonchild Productions O43 - CFD: 24/01/2016 - [] D -- C:\Users\team\AppData\Local\Mozilla O43 - CFD: 08/04/2015 - [] D -- C:\Users\team\AppData\Local\node-webkit O43 - CFD: 27/05/2014 - [] D -- C:\Users\team\AppData\Local\Nokia O43 - CFD: 08/02/2015 - [] D -- C:\Users\team\AppData\Local\Paint.NET O43 - CFD: 21/05/2015 - [] D -- C:\Users\team\AppData\Local\photoOptimizeHistoryDataBase O43 - CFD: 14/07/2015 - [] D -- C:\Users\team\AppData\Local\Popcorn-Time O43 - CFD: 06/07/2015 - [] D -- C:\Users\team\AppData\Local\PopcornTimeDesktop O43 - CFD: 20/11/2014 - [] D -- C:\Users\team\AppData\Local\Programs O43 - CFD: 03/08/2014 - [] D -- C:\Users\team\AppData\Local\Qwerty Studios O43 - CFD: 27/07/2015 - [] D -- C:\Users\team\AppData\Local\RadioSure O43 - CFD: 25/06/2015 - [] D -- C:\Users\team\AppData\Local\Readon_Technology O43 - CFD: 06/01/2016 - [] D -- C:\Users\team\AppData\Local\Skype O43 - CFD: 12/01/2016 - [] D -- C:\Users\team\AppData\Local\Slimjet O43 - CFD: 20/09/2015 - [] D -- C:\Users\team\AppData\Local\Smart PC Soft O43 - CFD: 05/04/2015 - [] D -- C:\Users\team\AppData\Local\Smart_PC_Soft O43 - CFD: 31/12/2015 - [] D -- C:\Users\team\AppData\Local\Sony O43 - CFD: 11/02/2015 - [] D -- C:\Users\team\AppData\Local\Spark O43 - CFD: 22/01/2016 - [] D -- C:\Users\team\AppData\Local\speedometer-57d590a0714e79e678ba3b48dbf5e08a O43 - CFD: 04/02/2015 - [] D -- C:\Users\team\AppData\Local\Spoon O43 - CFD: 06/01/2015 - [] D -- C:\Users\team\AppData\Local\SRS Labs O43 - CFD: 06/02/2015 - [] D -- C:\Users\team\AppData\Local\Stealth_Software O43 - CFD: 27/05/2014 - [] D -- C:\Users\team\AppData\Local\Symbian-Toys.com O43 - CFD: 02/02/2016 - [] D -- C:\Users\team\AppData\Local\temp O43 - CFD: 24/01/2016 - [0] D -- C:\Users\team\AppData\Local\Temporary Internet Files O43 - CFD: 06/01/2016 - [] D -- C:\Users\team\AppData\Local\VirtualStore O43 - CFD: 06/01/2016 - [0] D -- C:\Users\team\AppData\Local\VMware O43 - CFD: 12/02/2015 - [] D -- C:\Users\team\AppData\Local\Yahoo O43 - CFD: 06/01/2016 - [] D -- C:\Users\team\AppData\Local\Zip Recovery Toolbox O43 - CFD: 17/03/2014 - [] D -- C:\Users\team\AppData\Local\{3248F0A6-6813-11D6-A77B-00B0D0150040} O43 - CFD: 26/01/2016 - [0] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\360 Browser O43 - CFD: 12/01/2016 - [] RD -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 31/08/2015 - [] RD -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 25/06/2014 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Balabolka O43 - CFD: 24/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dachshund Software O43 - CFD: 16/01/2015 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Daum O43 - CFD: 04/04/2015 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux O43 - CFD: 26/07/2015 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 14/05/2015 - [0] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imagic Photo O43 - CFD: 11/03/2014 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 17/09/2015 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi O43 - CFD: 04/02/2015 - [] RD -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 25/01/2016 - [0] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiPony O43 - CFD: 23/11/2014 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mirillis O43 - CFD: 08/02/2015 - [0] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 23/03/2015 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RadioSure O43 - CFD: 12/01/2016 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RandomControl O43 - CFD: 24/01/2016 - [] RD -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 11/03/2014 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer O43 - CFD: 02/02/2016 - [0] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 14/09/2014 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Detector Plug-in O43 - CFD: 28/03/2014 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 Manager O43 - CFD: 23/04/2015 - [] D -- C:\Users\team\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (13) - 2s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: AccExtIco1 Class [ AccExtIco1] - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}. (.Copyright © 2013-2015, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll =>.Adobe Systems Incorporated® O106 - SIOI: AccExtIco2 Class [ AccExtIco2] - {853B7E05-C47D-4985-909A-D0DC5C6D7303}. (.Copyright © 2013-2015, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll =>.Adobe Systems Incorporated® O106 - SIOI: AccExtIco3 Class [ AccExtIco3] - {42D38F2E-98E9-4382-B546-E24E4D6D04BB}. (.Copyright © 2013-2015, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x86.dll =>.Adobe Systems Incorporated® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (15) - 3s O53 - SMSR:HKLM\...\startupreg\Adobe Creative Cloud [Key] . (...) -- C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Advanced SystemCare 9 [Key] . (...) -- C:\Program Files\IObit\Advanced SystemCare\ASCTray.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\BCSSync [Key] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\cmsc [Key] . (.Kingsoft Corporation - Clean Master.) -- c:\program files\cmcm\Clean Master\cmtray.exe O53 - SMSR:HKLM\...\startupreg\download.ninja [Key] . (...) -- C:\Program Files\Ninja Download Manager\download.ninja.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\Snappersoft USB Healer [Key] . (.Snappersoft Inc - Snappersoft USB Healer Free tool..) -- C:\Program Files\Snappersoft Inc\Snappersoft USB Healer\SnappersoftUSBHealer.exe O53 - SMSR:HKLM\...\startupreg\StartMenuX [Key] . (.OrdinarySoft - StartMenuX.) -- C:\Program Files\Start Menu X\StartMenuX.exe =>.OrdinarySoft O53 - SMSR:HKLM\...\startupreg\vmware-tray.exe [Key] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc. O53 - SMSR:HKLM\...\startupreg\WinampAgent [Key] . (.Nullsoft, Inc. - Winamp Agent.) -- C:\Program Files\Winamp\winampa.exe =>.Nullsoft, Inc. O53 - SMSR:HKLM\...\startupreg\Yahoo! Pager [Key] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc. ---\\ Liste des pilotes du système (137) - 15s O58 - SDL:2015/03/26 01:29:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1BFF4621.sys [110296] =>.Malwarebytes Corporation® O58 - SDL:2016/01/30 19:01:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\29DC5E4A.sys [119512] =>.Malwarebytes Corporation® O58 - SDL:2014/08/11 01:55:42 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2F5D6BF4.sys [110296] =>.Malwarebytes Corporation® O58 - SDL:2015/01/09 03:12:27 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\31513860.sys [114904] =>.Malwarebytes Corporation® O58 - SDL:2015/05/19 15:48:24 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3E9C4F5B.sys [110296] =>.Malwarebytes Corporation® O58 - SDL:2014/08/13 12:03:21 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3F5C136C.sys [110296] =>.Malwarebytes Corporation® O58 - SDL:2015/06/24 03:03:11 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\48230029.sys [110296] =>.Malwarebytes Corporation® O58 - SDL:2015/03/28 12:38:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\590861D6.sys [110296] =>.Malwarebytes Corporation® O58 - SDL:2015/01/06 23:27:41 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5C507015.sys [114904] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79952] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [23616] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2014/03/12 13:47:28 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athur.sys [1570816] =>.Atheros Communications, Inc. O58 - SDL:2008/09/24 05:10:46 A . (.Windows (R) Codename Longhorn DDK provider - Microsoft Virtual Audio Device.) -- C:\Windows\System32\drivers\Audio.sys [25600] =>.Windows (R) Codename Longhorn DDK provider O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2006/06/26 12:20:10 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\bcmwl5.sys [564224] =>.Broadcom Corporation O58 - SDL:2015/04/09 17:33:04 A . (.Baidu, Inc. - Baidu Antivirus Hook Base.) -- C:\Windows\System32\drivers\Bhbase.sys [46440] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2015/02/11 18:03:50 A . (.cFos Software GmbH - cFosSpeed Driver.) -- C:\Windows\System32\drivers\cfosspeed6.sys [1354176] {112197A57D474DC4BAF80DE77A350780D798} O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x86 (Weak).) -- C:\Windows\System32\drivers\cm_km.sys [201912] =>.Kaspersky Lab® O58 - SDL:2007/05/03 10:27:46 A . (.Copyright (C) 2005 SRS Labs, Inc. - SRS Labs CSII Decoder Kernel DLL.) -- C:\Windows\System32\drivers\csiidecoder_kern_i386.sys [37248] O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:52 A . (.Intel Corporation - Intel(R) Gigabit Network Connection NDIS 6.) -- C:\Windows\System32\drivers\e1y6032.sys [214016] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2015/11/06 11:33:20 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [44608] =>.ESET, spol. s r.o.® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2010/10/08 09:55:06 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [25856] =>.Huawei Tech. Co., Ltd. O58 - SDL:2013/03/04 09:20:27 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [199168] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/21 02:55:42 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [380416] =>.Huawei Technologies Co., Ltd. O58 - SDL:2010/09/26 11:09:22 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [19200] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/01/25 02:16:33 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [95232] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [77824] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [101248] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [70528] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [27776] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/04/10 09:45:19 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [207872] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/12/22 02:46:02 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [11904] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/05/14 16:28:24 A . (.Windows (R) Win 7 DDK provider - GridinSoft Trojan Killer Mini-Filter Driver.) -- C:\Windows\System32\drivers\gtkdrv.sys [16128] {3342F9C793FB9687D0852BFF37D40D9F} =>.Windows (R) Win 7 DDK provider O58 - SDL:2012/08/01 16:10:30 A . (.VMware, Inc. - VMware USB monitor.) -- C:\Windows\System32\drivers\hcmon.sys [41496] =>.VMware, Inc.® O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2014/05/06 00:23:37 A . (.Hola Networks Ltd. - Hola Network Monitor Driver.) -- C:\Windows\System32\drivers\hola_mon_drv.sys [73368] {08D34F3F819F7FB1B4FAB09F4F5B5D39} =>.Hola Networks Ltd. O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2015/04/02 01:57:34 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX® O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332352] =>.Microsoft Windows® O58 - SDL:2011/07/06 16:14:42 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [89376] =>.Tonec Inc.® O58 - SDL:2011/06/03 13:28:28 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [9036800] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2008/05/15 03:28:44 A . (.Atheros Communications, Inc. - Atheros Security NDIS 6.0 Filter Driver.) -- C:\Windows\System32\drivers\jswpslwf.sys [20384] =>.Atheros Communications, Inc. O58 - SDL:2015/06/06 08:50:18 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x86].) -- C:\Windows\System32\drivers\klbackupdisk.sys [46776] =>.Kaspersky Lab® O58 - SDL:2015/06/27 01:30:00 A . (.Kaspersky Lab ZAO - Backup File Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klbackupflt.sys [58224] =>.Kaspersky Lab® O58 - SDL:2015/06/06 08:48:20 A . (.Kaspersky Lab ZAO - Virtual Disk [fre_wnet_x86].) -- C:\Windows\System32\drivers\kldisk.sys [58040] =>.Kaspersky Lab® O58 - SDL:2016/02/01 02:02:50 A . (.AO Kaspersky Lab - Filter Core [fre_wlh_x86].) -- C:\Windows\System32\drivers\klflt.sys [147328] =>.Kaspersky Lab® O58 - SDL:2016/02/01 01:15:41 A . (.AO Kaspersky Lab - klhk [fre_wlh_x86].) -- C:\Windows\System32\drivers\klhk.sys [44728] =>.Kaspersky Lab® O58 - SDL:2015/06/06 08:31:42 A . (.Kaspersky Lab ZAO - Keyboard Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klkbdflt.sys [37048] =>.Kaspersky Lab® O58 - SDL:2016/02/01 02:02:51 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x86].) -- C:\Windows\System32\drivers\klpd.sys [39304] =>.Kaspersky Lab® O58 - SDL:2015/06/11 15:52:38 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- C:\Windows\System32\drivers\kltdi.sys [54328] =>.Kaspersky Lab® O58 - SDL:2015/06/16 21:59:18 A . (.Kaspersky Lab ZAO - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [87736] =>.Kaspersky Lab® O58 - SDL:2015/06/23 18:30:50 A . (.Kaspersky Lab ZAO - Network Processor [fre_wnet_x86].) -- C:\Windows\System32\drivers\kneps.sys [156856] =>.Kaspersky Lab® O58 - SDL:2016/01/24 02:29:06 A . (.Kingsoft Corporation - Kingsoft KSAPI Module.) -- C:\Windows\System32\drivers\ksapi.sys [81768] =>.Beijing Kingsoft Security software Co.,Ltd® O58 - SDL:2016/01/24 02:29:06 A . (.Kingsoft Corporation - Kingsoft KSAPI Module.) -- C:\Windows\System32\drivers\ksapi64.sys [56680] =>.Beijing Kingsoft Security software Co.,Ltd® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 09:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation® O58 - SDL:2016/01/24 02:42:19 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [119512] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2010/08/06 00:42:34 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [861696] O58 - SDL:2015/10/05 09:50:16 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation® O58 - SDL:2014/11/18 00:58:25 A . (.NT Kernel Resources - NDISRD helper driver.) -- C:\Windows\System32\drivers\ndisrd.sys [37408] =>.Mainline Net Holdings Limited® O58 - SDL:2012/04/17 09:31:10 A . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28u.sys [1317952] =>.Ralink Technology Corporation® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2013/03/01 02:48:42 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117312] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [142416] =>.Microsoft Windows® O58 - SDL:2008/08/26 08:26:12 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfd.sys [18816] =>.Nokia O58 - SDL:2011/03/04 20:44:14 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [45648] =>.Sonic Solutions® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2012/01/05 14:08:36 A . (...) -- C:\Windows\System32\drivers\ren2cap.sys [39048] {01000000000129CCE72C36} O58 - SDL:2012/04/12 00:30:00 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [543336] =>.Realtek Semiconductor Corp® O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2009/12/15 14:41:30 A . (.Copyright (C) 2006 SRS Labs, Inc. - SRS WOW HD, TSXT, CSII, Mobile HD Standalon.) -- C:\Windows\System32\drivers\SRS_SSCFilter_i386.sys [268912] =>.SRS Labs, Inc® O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2007/05/03 10:27:42 A . (.Copyright (C) 2005 SRS Labs, Inc. - SRS Labs Surround HP kernel DLL.) -- C:\Windows\System32\drivers\Surroundhp_kern_i386.sys [47360] O58 - SDL:2016/01/23 00:51:42 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [24688] =>.Adlice® O58 - SDL:2007/05/03 10:27:42 A . (.Copyright (C) 2006 SRS Labs, Inc. - SRS Labs TruSurround HD 4 kernel DLL.) -- C:\Windows\System32\drivers\tshd4_kern_i386.sys [46592] O58 - SDL:2010/10/02 03:40:56 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\viahduaa.sys [1149552] =>.VIA Technologies Inc.® O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2012/07/06 11:29:26 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\System32\drivers\vmci.sys [71152] =>.VMware, Inc.® O58 - SDL:2012/08/15 14:18:44 A . (.VMware, Inc. - VMware parallel port driver.) -- C:\Windows\System32\drivers\vmparport.sys [23832] =>.VMware, Inc.® O58 - SDL:2012/08/01 16:10:24 A . (.VMware, Inc. - VMware USB driver.) -- C:\Windows\System32\drivers\vmusb.sys [31280] {72FB3194DF6A92475219F34B6F008993} =>.VMware, Inc. O58 - SDL:2012/08/15 14:18:38 A . (.VMware, Inc. - VMware kernel driver.) -- C:\Windows\System32\drivers\vmx86.sys [61848] =>.VMware, Inc.® O58 - SDL:2008/07/23 22:29:16 A . (...) -- C:\Windows\System32\drivers\vsb.sys [15264] O58 - SDL:2008/07/23 22:29:16 A . (...) -- C:\Windows\System32\drivers\vserial.sys [47744] O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2012/07/06 11:29:26 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\Windows\System32\drivers\vsock.sys [61296] =>.VMware, Inc.® O58 - SDL:2011/07/12 08:36:28 A . (.VMware, Inc. - VMware Virtual Storage Volume Driver.) -- C:\Windows\System32\drivers\vstor2-mntapi10-shared.sys [22768] =>.VMware, Inc.® O58 - SDL:2012/03/30 02:27:34 A . (.Windows (R) Win 7 DDK provider - Wise Audio Driver.) -- C:\Windows\System32\drivers\wadriver.sys [56048] {0A43C5961BCA586109D32824A7F98E18} =>.Windows (R) Win 7 DDK provider O58 - SDL:2012/04/15 22:32:14 A . (.Windows (R) Win 7 DDK provider - WebcamMax Capture.) -- C:\Windows\System32\drivers\wcmvcam.sys [1068216] {6E0A5E2C7C789BDA175F577FFD554961} =>.Windows (R) Win 7 DDK provider O58 - SDL:2008/09/24 05:10:46 A . (.Windows (R) Codename Longhorn DDK provider - WDM Video Capture Driver.) -- C:\Windows\System32\drivers\Webcam.sys [33408] =>.Windows (R) Codename Longhorn DDK provider O58 - SDL:2007/05/03 10:27:44 A . (.SRS Labs, Inc. - WOW HD kernel mode DLL for Windows.) -- C:\Windows\System32\drivers\wowhd_kern_i386.sys [32000] =>.SRS Labs, Inc. O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] O58 - SDL:2013/08/26 10:52:50 A . (...) -- C:\Windows\System32\pwdrvio.sys [15576] =>.MiniTool Solution Ltd® O58 - SDL:2013/08/26 10:52:50 A . (...) -- C:\Windows\System32\pwdspio.sys [10200] =>.MiniTool Solution Ltd® O58 - SDL:2005/12/18 12:14:36 A . (.ZDC., Inc. (ZDC) - ZDC NDIS 5.0 SPR Protocol Driver.) -- C:\Windows\System32\ZDCNDIS5.sys [20736] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 58s O61 - LFC: 2016/02/02 03:42:16 A . (..) -- C:\Users\team\AppData\Roaming\Mirillis\Splash PRO Export\back.bin [20] O61 - LFC: 2016/02/02 01:21:47 A . (..) -- C:\Users\team\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [83984] O61 - LFC: 2016/02/02 03:13:53 A . (..) -- C:\Users\team\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (24) - 2s O68 - StartMenuInternet: <360 Browser> <360 Browser>[HKLM\..\Shell\open\Command] (...) -- C:\Users\team\AppData\Local\360Browser\Browser\Application\360browser.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.FlashPeak Inc. - Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Maxthon International ltd. - Maxthon Cloud Browser.) -- C:\Program Files\Maxthon\Bin\Maxthon.exe =>.Maxthon (Asia) Limited.® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Moonchild Productions - Pale Moon web browser.) -- C:\Program Files\Pale Moon\palemoon.exe =>.Moonchild Productions O68 - StartMenuInternet: <360 Browser> <360 Browser>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\team\AppData\Local\360Browser\Browser\Application\360browser.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.FlashPeak Inc. - Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Maxthon International ltd. - Maxthon Cloud Browser.) -- C:\Program Files\Maxthon\Bin\Maxthon.exe =>.Maxthon International ltd. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Moonchild Productions - Palemoon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions O68 - StartMenuInternet: <360 Browser> <360 Browser>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\team\AppData\Local\360Browser\Browser\Application\360browser.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.FlashPeak Inc. - Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Maxthon International ltd. - Maxthon Cloud Browser.) -- C:\Program Files\Maxthon\Bin\Maxthon.exe =>.Maxthon International ltd. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Moonchild Productions - Palemoon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions O68 - StartMenuInternet: <360 Browser> <360 Browser>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\team\AppData\Local\360Browser\Browser\Application\360browser.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.FlashPeak Inc. - Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Maxthon International ltd. - Maxthon Cloud Browser.) -- C:\Program Files\Maxthon\Bin\Maxthon.exe =>.Maxthon International ltd. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Moonchild Productions - Palemoon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions ---\\ Recherche d'infection sur les navigateurs (2) - 14s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (33) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168448] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [591360] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [667136] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473088] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [285184] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [241664] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [543232] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [589312] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [497152] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [46592] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [162816] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [743424] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (6) - 8s O87 - FAEL: "{519A80AD-4EA0-4316-8952-9890D7F7DB41}" [In-None-P17-TRUE] .(...) -- C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "{FFE77A62-8F91-4ACA-9617-86F7188D6444}" [In-None-P17-TRUE] .(...) -- C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "PotPlayer(PotPlayerMini.exe)" [In-None-P6-TRUE] .(.Daum Communications - PotPlayer.) -- C:\Program Files\Daum\PotPlayer\PotPlayerMini.exe {0A5167251C4CAB51BECDA4B87B48CAE1} O87 - FAEL: "{5E2FB540-0D03-459E-8DBD-B31F9E2C2468}" [In-None-P6-FALSE] .(.Daum Communications - PotPlayer.) -- C:\Program Files\Daum\PotPlayer\PotPlayerMini.exe {0A5167251C4CAB51BECDA4B87B48CAE1} O87 - FAEL: "TCP Query User{0E13D42F-0A95-41FA-AB0C-5BC1B5FEADBA}C:\users\team\appdata\local\radiosure\radiosure.exe" [In-None-P6-TRUE] .(.TheBestWare Studio - RadioSure.) -- C:\users\team\appdata\local\radiosure\radiosure.exe O87 - FAEL: "UDP Query User{0275C0FD-1A90-4260-AEC7-607752A43F10}C:\users\team\appdata\local\radiosure\radiosure.exe" [In-None-P17-TRUE] .(.TheBestWare Studio - RadioSure.) -- C:\users\team\appdata\local\radiosure\radiosure.exe ---\\ Recherche de clés de registre Tracing (2) - 8s HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASAPI32 =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASMANCS =>PUP.Optional.ReImageRepair ---\\ Scan Additionnel (14) - 0s C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo HKLM\SOFTWARE\Essentware =>.Superfluous.Essentware HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair C:\Program Files\SpeedyPC Software =>PUP.Optional.SpeedyPC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair =>PUP.Optional.ReImageRepair C:\ProgramData\Essentware =>.Superfluous.Essentware C:\ProgramData\SpeedyPC Software =>PUP.Optional.SpeedyPC C:\Program Files\Common Files\SpeedyPC Software =>PUP.Optional.SpeedyPC C:\Users\team\AppData\Roaming\Desktopicon =>PUP.Optional.ADON C:\Users\team\AppData\Roaming\DriverCure =>.Superfluous.Paretologic C:\Users\team\AppData\Roaming\SpeedyPC Software =>PUP.Optional.SpeedyPC C:\Users\team\AppData\Local\CrashRpt =>.Superfluous.CrashReports HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASAPI32 =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASMANCS =>PUP.Optional.ReImageRepair ---\\ Récapitulatif des éléments trouvés sur votre station (7) - 0s http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo http://www.nicolascoolman.fr/?p=960 =>PUP.Optional.ADON http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Essentware http://www.nicolascoolman.fr/?p=1075 =>PUP.Optional.ReImageRepair http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SpeedyPC http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Paretologic http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports ~ End of the scan, 24767 items in 00h15mn14s (1560)(0)