~ ZHPDiag v2016.8.10.130 Par Nicolas Coolman (2016/08/10) ~ Démarré par Steven (Administrator) (2016/08/10 17:07:16) ~ Site: https://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: D:\STEVEN\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Steven\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 48.0 (x86 fr) MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (3) - 4s Avira Antivirus v15.0.18.354 Avira Launcher v1.1.67.18988 Malwarebytes Anti-Malware version 2.2.1.1043 ---\\ Logiciels d'optimisation (1) - 5s CCleaner v5.19 ---\\ Surveillance de Logiciels (2) - 6s Adobe Flash Player 22 NPAPI Adobe Reader X ---\\ Logiciels de partage P2P (1) - 7s µTorrent v3.3.2.30303 ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2060.74 MB (48% free) System Restore: Activé (Enable) System drive C: has 0 GB () free of 44 GB =>Alerte espace disque inférieur à 20 Go ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-STEVEN ~ User Name: Steven ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 0 GB free of 44 GB (System) ~ Drive D: has 3 GB free of 185 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (24) - 13s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation [MD5.4221EEC8F3F38886B77237BC4F7485E8] - 12/05/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1129984] =>.Microsoft Corporation [MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation [MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation [MD5.95F5FF73B076576C41740F1A842B9B57] - 30/12/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows® [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation [MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation [MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation [MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation [MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation [MD5.BF84E55A9B3AD3CBAB4AAE3BE043E579] - 10/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows® [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248832] =>.Microsoft Corporation [MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation [MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation [MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (8) - 9s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Micro Star SCM (Micro Star SCM) . (...) - C:\Program Files\System Control Manager\MSIService.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (15) - 130s SS - Demand [14/05/2009] [ 759048] ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe =>.ABBYY SOLUTIONS LIMITED® SR - Auto [18/12/2013] [ 65432] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Auto [28/07/2016] [ 970632] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [28/07/2016] [ 472112] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [28/07/2016] [ 472112] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® SS - Auto [28/07/2016] [ 1251840] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [20/01/2015] [ 60744] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [11/07/2016] [ 309384] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® SS - Demand [12/12/2011] [ 122000] Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\Windows\System32\escsvc.exe =>.SEIKO EPSON Corporation® SS - Demand [04/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation SS - Demand [13/02/2015] [ 540968] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SR - Auto [22/02/2008] [ 159744] Micro Star SCM (Micro Star SCM) . (...) - C:\Program Files\System Control Manager\MSIService.exe SS - Demand [09/08/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Disabl [28/05/2007] [ 275968] StarWind AE Service (StarWindServiceAE) . (.Rocket Division Software.) - d:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe ---\\ Processus lancés (14) - 3s [MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [472112] [PID.1680] =>.Avira Operations GmbH & Co. KG® [MD5.8419248D3F16873230A82D55053445E5] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6144000] [PID.760] =>.Realtek Semiconductor [MD5.7B67FB2DBAEB53CFF1C2F2F0684DDD5E] - (.Mirco-Star International CO., LTD. - System Control Manager.) -- C:\Program Files\System Control Manager\MGSysCtrl.exe [704512] [PID.488] [MD5.7444E0F4C9991AE3711F5FAB5DB257E1] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [831064] [PID.1320] =>.Avira Operations GmbH & Co. KG® [MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.1172] =>.Adobe Systems, Incorporated® [MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [472112] [PID.1016] =>.Avira Operations GmbH & Co. KG® [MD5.D2B87FC03BE28CD0B33C2B5C1119FD8E] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [60744] [PID.828] =>.Apple Inc.® [MD5.FEF6D2D708CCEEA9FE7A335A745F8F5C] - (...) -- C:\Program Files\System Control Manager\MSIService.exe [159744] [PID.1088] [MD5.5F0C87F2FA11C991BB93B84BD02151B3] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [309384] [PID.2164] =>.Avira Operations GmbH & Co. KG® [MD5.B9AA850CDA55097EB13E03698C8F5828] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [266776] [PID.2192] =>.Intel Corporation® [MD5.4826189CFE3E777146904CD10CEE52E8] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [462824] [PID.3048] =>.Avira Operations GmbH & Co. KG® [MD5.0E452B882FEEFCEFF3A8225B89393D1D] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.Systray.exe [151776] [PID.3928] =>.Avira Operations GmbH & Co. KG® [MD5.94AE5F7ADA16ABF26CFC0D0B225AA0EB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [392136] [PID.2424] =>.Mozilla Corporation® [MD5.E4EBD7E36C71923B336F118C55150544] - (.Nicolas Coolman - ZHPDiag.) -- D:\STEVEN\Desktop\ZHPDiag3.exe [2285568] [PID.2496] =>.Nicolas Coolman ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (17) - 13s P2 - EXT: (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll =>.Microsoft Corporation® P2 - EXT: (.BitComet - BitCometAgent v1.06 for Firefox.) -- C:\Program Files\Mozilla Firefox\Plugins\npBitCometAgent.dll P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated® P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc. P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\WMP Firefox Plugin License.rtf P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\WMP Firefox Plugin RelNotes.txt P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\Steven\AppData\Roaming\Mozilla\Firefox\Profiles\1zdart8w.default-1445200182096\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus P2 - EXT: (...) -- C:\Users\Steven\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org P2 - EXT: (...) -- C:\Users\Steven\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_22_0_0_209.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc. ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (10795) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Internet Explorer, Barre d'outil (1) - 1s O3 - Toolbar: NCO Toolbar 2.0 - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (8) - 0s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor O4 - HKLM\..\Run: [MGSysCtrl] . (.Mirco-Star International CO., LTD. - System Control Manager.) -- C:\Program Files\System Control Manager\MGSysCtrl.exe O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (21) - 6s O4 - GS\Desktop [Administrateur]: Documents.lnk . (...) D:\STEVEN\Documents O4 - GS\Desktop [Administrateur]: Gare d'arivée.lnk . (...) D:\STEVEN\Downloads O4 - GS\Desktop [Administrateur]: Images.lnk . (...) D:\STEVEN\Pictures O4 - GS\Desktop [Administrateur]: Musique.lnk . (...) D:\STEVEN\Music O4 - GS\Desktop [Administrateur]: Word.lnk . (...) C:\Windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Steven\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrateur]: OpenOffice.org 3.3.lnk . (.OpenOffice.org - OpenOffice.org 3.3.) C:\Program Files\OpenOffice.org 3\program\soffice.exe =>.OpenOffice.org O4 - GS\Desktop [Steven]: Documents.lnk . (...) D:\STEVEN\Documents O4 - GS\Desktop [Steven]: Gare d'arivée.lnk . (...) D:\STEVEN\Downloads O4 - GS\Desktop [Steven]: Images.lnk . (...) D:\STEVEN\Pictures O4 - GS\Desktop [Steven]: Musique.lnk . (...) D:\STEVEN\Music O4 - GS\Desktop [Steven]: Word.lnk . (...) C:\Windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Steven]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Steven\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Steven]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Steven]: OpenOffice.org 3.3.lnk . (.OpenOffice.org - OpenOffice.org 3.3.) C:\Program Files\OpenOffice.org 3\program\soffice.exe =>.OpenOffice.org O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Defraggler.lnk . (.Piriform Ltd - Defraggler.) C:\Program Files\Defraggler\Defraggler.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (3) - 1s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{10E5141F-55AC-4E0D-BA02-B7BFD75E3A4F}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{1AF29F49-8911-4EA1-AB87-BB964B089F34}: DhcpNameServer = 212.27.40.240 212.27.40.241 ---\\ Protocole additionnel (23) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (47) - 48s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 4.64 - (...) [HKLM] -- 7-Zip O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- {F9000000-0018-0000-0000-074957833700} =>.ABBYY O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- ABBYY FineReader 9.0 Sprint =>.ABBYY O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader X (10.1.9) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Agere Systems HDA Modem - (.Agere Systems.) [HKLM] -- Agere Systems Soft Modem =>.Agere Systems O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {447CDCE5-F555-429B-BFA6-642C3C6D684F} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E1DB0812-2D60-43DB-AE09-6C7027D93B28} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc. O42 - Logiciel: Avira Antivirus v15.0.18.354 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.67.18988 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {92a7fd6b-31e5-472f-862e-79214c5032ef} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.67.18988 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {A6634D1D-EA57-45DE-AF8F-0EDD35B912C3} =>.Avira Operations GmbH & Co. KG O42 - Logiciel: BurnRecovery - (.MSI.) [HKLM] -- {2892E1B7-E24D-4CCB-B8A7-B63D4B66F89F} =>.MSI O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler =>.Piriform Ltd® O42 - Logiciel: Download Navigator - (.SEIKO EPSON CORPORATION.) [HKLM] -- {E728441A-7820-4B1C-87C9-DE7BE37B2953} =>.Seiko Epson Corporation O42 - Logiciel: Epson Event Manager - (.Seiko Epson Corporation.) [HKLM] -- {BECE9CCD-83F6-4BAA-9B26-227DF7D2E932} =>.Seiko Epson Corporation O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON XP-205 207 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON XP-205 207 Series =>.SEIKO EPSON Corporation® O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM] -- {3E31400D-274E-4647-916C-2CACC3741799} =>.SEIKO EPSON Corporation® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI =>.Intel Corporation® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {3A9FE6B1-EE7F-40AC-B831-AC7C9ABB58A0} =>.Apple Inc. O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft XML Parser - (.Microsoft Corporation.) [HKLM] -- {C7340571-7773-4A8C-9EBC-4E4243B38C76} =>.Microsoft Corporation O42 - Logiciel: Motorola SM56 Data Fax Modem - (...) [HKLM] -- SMSERIAL O42 - Logiciel: Mozilla Firefox 48.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 48.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSI Software Install - (.MSI.) [HKLM] -- {07690F1C-04B1-4060-9691-6748ED1826B9} =>.MSI O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} =>.SAH O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM] -- {05653DE1-6567-40C6-B930-39D399B64369} =>.OpenOffice.org O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} =>Riskware.QuickTime O42 - Logiciel: Realtek 8169, 8168, 8101E and 8102E Ethernet Network Card Driver for Window - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Macrovision Corporation® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D} =>.Realtek Semiconductor Corp. O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-5464-3428-900000000004} =>.Adobe Systems Incorporated O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: System Control Manager - (...) [HKLM] -- {ED9C5D25-55DF-48D8-9328-2AC0D75DE5D8} =>.Macrovision Corporation® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corp ---\\ HKCU & HKLM Software Keys (151) - 48s HKLM\SOFTWARE\7-Zip HKLM\SOFTWARE\ABBYY HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\Agere HKLM\SOFTWARE\Alcohol Soft HKLM\SOFTWARE\ALWIL Software HKLM\SOFTWARE\America Online HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\Avira HKLM\SOFTWARE\Boonty HKLM\SOFTWARE\Bunndle HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\Cygwin HKLM\SOFTWARE\Digital River HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\DT Soft HKLM\SOFTWARE\Electronic Arts HKLM\SOFTWARE\EPSON HKLM\SOFTWARE\EpsonNet HKLM\SOFTWARE\FRANCE TELECOM HKLM\SOFTWARE\GEAR Software HKLM\SOFTWARE\Ghisler HKLM\SOFTWARE\Google HKLM\SOFTWARE\HitmanPro HKLM\SOFTWARE\Id HKLM\SOFTWARE\Illustrate HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Lola HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Magix HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Motorola HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MSI HKLM\SOFTWARE\NOS HKLM\SOFTWARE\Nullsoft HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OpenOffice.org HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Poikosoft HKLM\SOFTWARE\PoINT HKLM\SOFTWARE\Quicksys HKLM\SOFTWARE\Reallusion HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\Realtek USB 2.0 Card Reader HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\Safer Networking Limited HKLM\SOFTWARE\SEIKO EPSON CORPORATION HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\Space Sciences Laboratory, U.C. Berkeley HKLM\SOFTWARE\Spesoft Software HKLM\SOFTWARE\SpoonInstall HKLM\SOFTWARE\Sports Interactive Ltd HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Sun Microsystems HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\System Control Manager HKLM\SOFTWARE\Toshiba HKLM\SOFTWARE\Trad-FR HKLM\SOFTWARE\Trecision HKLM\SOFTWARE\Valve HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\webtogo HKLM\SOFTWARE\Windows HKLM\SOFTWARE\Wise Solutions HKLM\SOFTWARE\WOW6432Node HKLM\SOFTWARE\X-AVCSD HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\ABBYY HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AhnLab HKCU\SOFTWARE\Alcohol Soft HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\Atola HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\Avira HKCU\SOFTWARE\BitComet HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Bugsplat HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\Cyanide HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\dskMetrics HKCU\SOFTWARE\DT Soft HKCU\SOFTWARE\eFMer HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\Free mp3 Wma Converter HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Ghisler HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\HookNetwork HKCU\SOFTWARE\Illustrate HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\keyhole.com HKCU\SOFTWARE\Ligos HKCU\SOFTWARE\LoadTool HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Magix HKCU\SOFTWARE\Magnet HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Mediachance HKCU\SOFTWARE\MiniTool Solution Ltd. HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MyComGames HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opendisc HKCU\SOFTWARE\OpenOffice.org HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PMW9328 HKCU\SOFTWARE\Reallusion HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\SEIKO EPSON CORPORATION HKCU\SOFTWARE\ShotOnline HKCU\SOFTWARE\Space Sciences Laboratory, U.C. Berkeley HKCU\SOFTWARE\SpoonInstall HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\TheCreativeAssembly HKCU\SOFTWARE\Toshiba HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (205) - 61s O43 - CFD: 03/02/2009 - [] D -- C:\Program Files\7-Zip O43 - CFD: 27/10/2014 - [] D -- C:\Program Files\A-FF Find and Mount O43 - CFD: 14/02/2014 - [] D -- C:\Program Files\ABBYY FineReader 9.0 Sprint =>.ABBYY SOLUTIONS LIMITED® O43 - CFD: 05/05/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 03/02/2009 - [] D -- C:\Program Files\Alwil Software O43 - CFD: 28/07/2010 - [] D -- C:\Program Files\AP Tuner O43 - CFD: 29/05/2012 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc.® O43 - CFD: 01/09/2015 - [] D -- C:\Program Files\Avira =>.Avira Operations GmbH & Co. KG® O43 - CFD: 27/07/2013 - [] D -- C:\Program Files\BOINC O43 - CFD: 18/03/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 25/01/2015 - [] D -- C:\Program Files\Common Files O43 - CFD: 16/08/2015 - [0] D -- C:\Program Files\Convar O43 - CFD: 04/05/2015 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd® O43 - CFD: 14/02/2014 - [] D -- C:\Program Files\epson =>.SEIKO EPSON Corporation® O43 - CFD: 14/02/2014 - [] D -- C:\Program Files\EPSON Software =>.SEIKO EPSON Corporation® O43 - CFD: 14/02/2014 - [] D -- C:\Program Files\EpsonNet =>.SEIKO EPSON Corporation® O43 - CFD: 17/04/2015 - [0] D -- C:\Program Files\Esquisse 2006 O43 - CFD: 03/02/2009 - [] D -- C:\Program Files\Foxit Software O43 - CFD: 12/10/2013 - [] D -- C:\Program Files\FreeTime O43 - CFD: 14/02/2014 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 31/12/2008 - [] D -- C:\Program Files\Intel O43 - CFD: 17/06/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 27/03/2015 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 27/03/2015 - [] D -- C:\Program Files\iTunes =>.Apple Inc.® O43 - CFD: 25/01/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 15/04/2014 - [0] D -- C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 07/06/2011 - [] D -- C:\Program Files\Microsoft Analysis Services O43 - CFD: 11/09/2012 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 07/06/2011 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 25/12/2008 - [] D -- C:\Program Files\Microsoft Office Suite Activation Assistant =>.Digital River, Inc.® O43 - CFD: 25/08/2010 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 07/06/2011 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 25/12/2008 - [] D -- C:\Program Files\Motorola O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 10/08/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 10/08/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild O43 - CFD: 25/12/2008 - [] D -- C:\Program Files\MSI O43 - CFD: 07/02/2009 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 14/03/2011 - [] D -- C:\Program Files\OpenOffice.org 3 O43 - CFD: 30/10/2014 - [] D -- C:\Program Files\PowerDataRecovery O43 - CFD: 27/03/2015 - [] D -- C:\Program Files\QuickTime =>Riskware.QuickTime O43 - CFD: 31/12/2008 - [] D -- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 05/02/2009 - [] D -- C:\Program Files\Securitoo =>.Optenet, S.A.® O43 - CFD: 25/12/2008 - [] D -- C:\Program Files\System Control Manager O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 11/09/2013 - [] D -- C:\Program Files\uTorrent =>.BitTorrent Inc® O43 - CFD: 24/01/2011 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 25/09/2009 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 25/09/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 11/05/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 18/06/2016 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation® O43 - CFD: 09/03/2016 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Windows NT O43 - CFD: 25/09/2009 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 08/11/2009 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 25/09/2009 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 30/08/2012 - [] D -- C:\Program Files\xrecode II O43 - CFD: 13/02/2009 - [] HD -- C:\Program Files\Zero G Registry O43 - CFD: 03/02/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 14/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 9.0 Sprint O43 - CFD: 25/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 25/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 02/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AP Tuner 3.08 O43 - CFD: 28/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 08/02/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation O43 - CFD: 02/03/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BoontyGames O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 14/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 14/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 03/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 27/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 25/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 05/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 07/06/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 25/12/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI O43 - CFD: 14/03/2011 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3 O43 - CFD: 27/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 19/05/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 25/12/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Control Manager O43 - CFD: 02/11/2006 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 27/03/2015 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 O43 - CFD: 14/02/2014 - [] D -- C:\ProgramData\ABBYY O43 - CFD: 05/05/2014 - [] D -- C:\ProgramData\Adobe O43 - CFD: 27/03/2015 - [] D -- C:\ProgramData\Apple O43 - CFD: 15/04/2009 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 01/09/2015 - [] D -- C:\ProgramData\Avira O43 - CFD: 27/03/2015 - [] D -- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB O43 - CFD: 27/07/2013 - [] D -- C:\ProgramData\BOINC O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 23/02/2014 - [] D -- C:\ProgramData\EPSON O43 - CFD: 29/12/2010 - [] D -- C:\ProgramData\F4 O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 15/03/2014 - [] D -- C:\ProgramData\HitmanPro O43 - CFD: 03/02/2009 - [] D -- C:\ProgramData\MAGIX O43 - CFD: 15/04/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 18/06/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 07/07/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 04/05/2012 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 25/01/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 22/07/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 20/07/2013 - [] D -- C:\ProgramData\Pianosoft O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 03/03/2010 - [] D -- C:\ProgramData\Sun O43 - CFD: 03/02/2009 - [] D -- C:\ProgramData\Symantec O43 - CFD: 23/11/2012 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 01/12/2009 - [] D -- C:\ProgramData\Ulead Systems O43 - CFD: 17/11/2013 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 19/05/2012 - [0] D -- C:\ProgramData\WinZip O43 - CFD: 03/02/2009 - [] D -- C:\ProgramData\WLInstaller O43 - CFD: 03/09/2010 - [] D -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} O43 - CFD: 19/09/2009 - [] D -- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD} O43 - CFD: 15/04/2009 - [] D -- C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} O43 - CFD: 14/02/2014 - [] D -- C:\Program Files\Common Files\ABBYY O43 - CFD: 05/05/2014 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 27/03/2015 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 14/05/2014 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 14/02/2014 - [] D -- C:\Program Files\Common Files\EPSON O43 - CFD: 13/02/2009 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 25/01/2015 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 03/02/2009 - [] D -- C:\Program Files\Common Files\MAGIX Shared O43 - CFD: 18/06/2016 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 15/06/2009 - [0] D -- C:\Program Files\Common Files\NSV O43 - CFD: 15/04/2009 - [] D -- C:\Program Files\Common Files\PX Storage Engine O43 - CFD: 03/02/2009 - [] D -- C:\Program Files\Common Files\Reallusion O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 31/03/2014 - [] D -- C:\Program Files\Common Files\Steam O43 - CFD: 03/02/2009 - [] D -- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 09/03/2016 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 26/08/2010 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 03/02/2009 - [] SHDC -- C:\Program Files\Common Files\WindowsLiveInstaller O43 - CFD: 04/02/2014 - [] D -- C:\Users\Steven\AppData\Roaming\AccurateRip O43 - CFD: 05/05/2011 - [] D -- C:\Users\Steven\AppData\Roaming\Adobe O43 - CFD: 27/03/2015 - [] D -- C:\Users\Steven\AppData\Roaming\Apple Computer O43 - CFD: 07/04/2015 - [] D -- C:\Users\Steven\AppData\Roaming\Avira O43 - CFD: 04/02/2014 - [] D -- C:\Users\Steven\AppData\Roaming\dBpoweramp O43 - CFD: 02/01/2011 - [] D -- C:\Users\Steven\AppData\Roaming\dvdcss O43 - CFD: 22/02/2011 - [] D -- C:\Users\Steven\AppData\Roaming\eFMer O43 - CFD: 23/02/2014 - [] D -- C:\Users\Steven\AppData\Roaming\Epson O43 - CFD: 27/08/2012 - [] D -- C:\Users\Steven\AppData\Roaming\FreeAudioExtractor O43 - CFD: 20/07/2013 - [] D -- C:\Users\Steven\AppData\Roaming\FreeAudioPack O43 - CFD: 20/02/2012 - [] D -- C:\Users\Steven\AppData\Roaming\GetRightToGo O43 - CFD: 26/02/2010 - [] D -- C:\Users\Steven\AppData\Roaming\GHISLER O43 - CFD: 28/02/2012 - [] D -- C:\Users\Steven\AppData\Roaming\Google O43 - CFD: 24/07/2009 - [] D -- C:\Users\Steven\AppData\Roaming\gtk-2.0 O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Identities O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Macromedia O43 - CFD: 15/04/2014 - [0] D -- C:\Users\Steven\AppData\Roaming\Malwarebytes O43 - CFD: 02/11/2006 - [0] D -- C:\Users\Steven\AppData\Roaming\Media Center Programs O43 - CFD: 14/02/2014 - [] SD -- C:\Users\Steven\AppData\Roaming\Microsoft O43 - CFD: 03/07/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Mozilla O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Roaming\OpenOffice.org O43 - CFD: 22/05/2009 - [0] D -- C:\Users\Steven\AppData\Roaming\PeerNetworking O43 - CFD: 30/03/2016 - [] D -- C:\Users\Steven\AppData\Roaming\PhotoFiltre 7 O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Reallusion O43 - CFD: 08/07/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Sun O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Symantec O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Roaming\Ulead Systems O43 - CFD: 10/08/2016 - [] D -- C:\Users\Steven\AppData\Roaming\uTorrent O43 - CFD: 01/08/2016 - [] D -- C:\Users\Steven\AppData\Roaming\vlc O43 - CFD: 07/07/2012 - [] D -- C:\Users\Steven\AppData\Roaming\xrecode2 O43 - CFD: 10/08/2016 - [] D -- C:\Users\Steven\AppData\Roaming\ZHP O43 - CFD: 14/02/2014 - [] D -- C:\Users\Steven\AppData\Local\ABBYY O43 - CFD: 10/08/2016 - [] D -- C:\Users\Steven\AppData\Local\Adobe O43 - CFD: 15/04/2009 - [] D -- C:\Users\Steven\AppData\Local\Apple O43 - CFD: 02/04/2010 - [] D -- C:\Users\Steven\AppData\Local\Apple Computer O43 - CFD: 03/02/2009 - [0] SHD -- C:\Users\Steven\AppData\Local\Application Data O43 - CFD: 17/10/2011 - [] D -- C:\Users\Steven\AppData\Local\Chromium O43 - CFD: 13/02/2009 - [] D -- C:\Users\Steven\AppData\Local\Downloaded Installations O43 - CFD: 26/02/2010 - [] D -- C:\Users\Steven\AppData\Local\GHISLER O43 - CFD: 17/08/2015 - [] D -- C:\Users\Steven\AppData\Local\Google O43 - CFD: 03/02/2009 - [0] SHD -- C:\Users\Steven\AppData\Local\Historique O43 - CFD: 22/06/2012 - [] D -- C:\Users\Steven\AppData\Local\Macromedia O43 - CFD: 27/02/2014 - [] D -- C:\Users\Steven\AppData\Local\Microsoft O43 - CFD: 24/01/2010 - [] D -- C:\Users\Steven\AppData\Local\Microsoft Games O43 - CFD: 10/09/2013 - [] D -- C:\Users\Steven\AppData\Local\Microsoft Help O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Local\Mozilla O43 - CFD: 31/03/2014 - [] D -- C:\Users\Steven\AppData\Local\Sports Interactive O43 - CFD: 03/02/2014 - [] D -- C:\Users\Steven\AppData\Local\Sun O43 - CFD: 10/08/2016 - [] D -- C:\Users\Steven\AppData\Local\Temp O43 - CFD: 03/02/2009 - [0] SHD -- C:\Users\Steven\AppData\Local\Temporary Internet Files O43 - CFD: 03/02/2009 - [] D -- C:\Users\Steven\AppData\Local\Toshiba O43 - CFD: 06/02/2009 - [] D -- C:\Users\Steven\AppData\Local\VirtualStore O43 - CFD: 22/02/2014 - [0] D -- C:\Users\Steven\AppData\Local\{8BFB9D66-00E8-44AE-B17D-8435A7CD850D} =>.Superfluous.Empty O43 - CFD: 22/02/2014 - [0] D -- C:\Users\Steven\AppData\Local\{F1C882C5-48C3-4EB9-A3F4-0D8A1731833F} =>.Superfluous.Empty O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 03/02/2009 - [] RD -- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 22/09/2014 - [] D -- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 14/02/2014 - [] D -- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPSON Software O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 20/02/2012 - [] RD -- C:\Users\Steven\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 13/02/2009 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Application Data O43 - CFD: 14/12/2013 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google O43 - CFD: 13/02/2009 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Historique O43 - CFD: 25/12/2010 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft O43 - CFD: 13/02/2009 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Temporary Internet Files ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 1s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (13) - 2s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\EEventManager [Key] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files\Epson Software\Event Manager\EEventManager.exe =>.Seiko Epson Corporation O53 - SMSR:HKLM\...\startupreg\ehTray.exe [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\Malwarebytes Anti-Malware (reboot) [Key] . (...) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\Skytel [Key] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- Skytel.exe (.not file.) =>.Realtek Semiconductor Corp. O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Steven\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc. O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Corporation ---\\ Liste des pilotes du système (83) - 84s O58 - SDL:2008/01/21 04:23:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:25 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:26 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:27 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] =>.Microsoft Windows® O58 - SDL:2006/11/29 00:11:00 A . (.Agere Systems - SoftModem Device Driver.) -- C:\Windows\System32\drivers\AGRSM.sys [1161888] =>.Agere Systems O58 - SDL:2008/01/21 04:23:00 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:24 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] =>.Microsoft Windows® O58 - SDL:2008/09/19 03:38:00 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athr.sys [937984] =>.Atheros Communications, Inc. O58 - SDL:2016/07/28 14:49:47 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [115600] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/07/28 14:49:47 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [140272] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/05/19 14:21:11 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [37896] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2008/01/21 04:23:00 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] =>.Microsoft Windows® O58 - SDL:2010/08/01 06:01:10 A . (...) -- C:\Windows\System32\drivers\cputemperature.sys [19880] O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:24 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation O58 - SDL:2008/01/21 04:23:22 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] =>.Microsoft Windows® O58 - SDL:2004/10/20 14:23:34 A . (.FreeBox SA - Carte réseau virtuelle FreeBox USB.) -- C:\Windows\System32\drivers\fbxusb32.sys [21344] =>.FreeBox SA O58 - SDL:2012/08/21 13:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [26840] =>.GEAR Software Inc.® O58 - SDL:2008/01/21 04:23:26 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] =>.Microsoft Windows® O58 - SDL:2010/08/25 20:31:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [9024512] =>.Intel Corporation O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:25 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:56 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [126336] =>.Malwarebytes Corporation® O58 - SDL:2016/08/03 10:25:39 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:09:00 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [53120] =>.Malwarebytes Corporation® O58 - SDL:2008/04/28 16:29:26 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETw5v32.sys [3658752] =>.Intel Corporation O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows® O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] =>.Microsoft Windows® O58 - SDL:2006/11/28 21:46:22 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\Windows\System32\drivers\PCAMp50.sys [28224] =>.PRINTING COMMUNICATIONS ASSOC., INC.® O58 - SDL:2006/11/28 21:46:20 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\Windows\System32\drivers\PCASp50.sys [27072] =>.PRINTING COMMUNICATIONS ASSOC., INC.® O58 - SDL:2008/08/20 19:58:58 N . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [44944] =>.Sonic Solutions® O58 - SDL:2008/01/21 04:23:24 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows® O58 - SDL:2008/05/20 12:01:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2143136] =>.Realtek Semiconductor Corp® O58 - SDL:2008/04/02 00:59:22 A . (.Realtek Semiconductor Corporation - Realtek RTL8187S PCIE NDIS Driverr.) -- C:\Windows\System32\drivers\RTL8187Se.sys [285184] =>.Realtek Semiconductor Corporation O58 - SDL:2008/01/25 10:46:40 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) -- C:\Windows\System32\drivers\Rtlh86.sys [106496] =>.Realtek Corporation O58 - SDL:2008/02/21 08:01:08 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for Vista.) -- C:\Windows\System32\drivers\RTSTOR.sys [60416] =>.Realtek Semiconductor Corp. O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/01/21 04:23:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] =>.Microsoft Windows® O58 - SDL:2007/01/17 08:38:52 A . (.Motorola Inc. - Motorola SM56 Modem WDM Driver.) -- C:\Windows\System32\drivers\smserial.sys [983936] O58 - SDL:2012/04/22 19:47:48 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [477240] =>.Duplex Secure Ltd® O58 - SDL:2015/06/18 12:31:22 A . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- C:\Windows\System32\drivers\ssmdrv.sys [31848] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:20 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:00 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] =>.Microsoft Windows® O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (3) - 23s O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (31) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [582144] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (4) - 3s O87 - FAEL: "{6F909FC2-710C-4273-8A8A-0C72F953B83F}" [In-None-P6-TRUE] .(...) -- F:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{49351E29-560E-41AF-A293-2A164F34F8C4}" [In-None-P17-TRUE] .(...) -- F:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{E9F56215-BE9F-4022-B2C0-C2DC5993D2D9}" [In-None-P6-TRUE] .(...) -- F:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.) O87 - FAEL: "{FCEDA3B4-0694-4D89-BF11-C766E4C5D0A5}" [In-None-P17-TRUE] .(...) -- F:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.) ---\\ Scan Additionnel (6) - 0s C:\Users\Steven\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} =>Riskware.QuickTime HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} =>Riskware.QuickTime HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\Program Files\QuickTime =>Riskware.QuickTime ---\\ Récapitulatif des éléments trouvés sur votre station (3) - 0s https://www.anti-malware.top/2016/05/07/pup-optional-wajam/ =>PUP.Optional.Wajam https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime https://www.anti-malware.top/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect ~ End of the scan, 36230 items in 00h10mn25s (846)