~ ZHPDiag v2016.10.13.187 Par Nicolas Coolman (2016/10/13) ~ Démarré par karim (Administrator) (2016/10/14 19:32:07) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\karim\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\karim\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (2) - 2s ~ MFIE: Mozilla Firefox 49.0.1 (x86 fr) ~ MSIE: Internet Explorer v7.0.6002.18005 ---\\ Informations sur les produits Windows (4) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (3) - 41s Microsoft Security Client v4.9.0218.0 => Software.Protection Microsoft Security Essentials v4.9.218.0 => Software.Protection Norton Protection Center v3.1.0.I can not have a major version greater than 255 => Software.Protection ---\\ Surveillance de Logiciels (1) - 52s Adobe Flash Player 23 NPAPI =>.Software.Surveillance ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 6 Stepping 5, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 916.308 MB (32% free) System Restore: Activé (Enable) System drive C: has 30 GB () free of 71 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-KARIM ~ User Name: karim ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 1s ~ Drive C: has 30 GB free of 71 GB (System) ~ Drive D: has 69 GB free of 71 GB ~ Drive E: has GB free of 3 GB ---\\ Etat du Centre de Sécurité Windows (12) - 1s [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 21s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 19/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation [MD5.D4E2D56E76A2D981262CCD68EFCCEF44] - 21/06/2011 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [834048] =>.Microsoft Corporation [MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation [MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation [MD5.95F5FF73B076576C41740F1A842B9B57] - 19/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows® [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 19/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation [MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation [MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 19/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation [MD5.8793643A67B42CEC66490B2A0CF92D68] - 19/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation [MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation [MD5.BF84E55A9B3AD3CBAB4AAE3BE043E579] - 10/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows® [MD5.8A79FDF04A73428597E2CAF9D0D67850] - 19/01/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 19/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [242688] =>.Microsoft Corporation [MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation [MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation [MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (9) - 97s O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006 - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) . (.Copyright 2004 - CLCapSvc Module.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) . (.Copyright 2004 - CLSched Module.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.® O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc. O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company O23 - Service: @C:\Windows\system32\msimsg.dll (msiserver) . (...) - C:\Windows\system32\msiexec (.not file.) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (14) - 415s SR - Auto [29/12/2006] [ 28672] ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe SS - Demand [11/10/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Disabl [24/08/2007] [ 149864] Symantec Event Manager (ccEvtMgr) . (.Symantec Corporation.) - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe =>.Symantec Corporation® SS - Disabl [24/08/2007] [ 149864] Symantec Settings Manager (ccSetMgr) . (.Symantec Corporation.) - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe =>.Symantec Corporation® SR - Auto [12/01/2007] [ 274520] CyberLink Background Capture Service (CBCS) (CLCapSvc) . (.Copyright 2004.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe SR - Auto [12/01/2007] [ 118870] CyberLink Task Scheduler (CTS) (CLSched) . (.Copyright 2004.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe SR - Auto [07/02/2007] [ 457512] eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.® SR - Auto [28/12/2006] [ 49152] eRecovery Service (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc. SR - Auto [14/12/2006] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company SS - Demand [24/09/2016] [ 172488] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [12/01/2007] [ 262247] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe SS - Auto [25/07/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Disabl [09/11/2007] [ 1252232] Symantec Core LC (Symantec Core LC) . (...) - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe =>.Symantec Corporation® ---\\ Tâches planifiées en automatique (31) - 221s O39 - APT: Orphan - (...) -- C:\Windows\Tasks\Ad-Aware Update (Weekly).job [370] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\Tasks\{7ACBF951-DA33-4C7C-DD1C-5DCE7D7F737C}.job [270] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\Ad-Aware Update (Weekly) [3240] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3166] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3625257640-3717126807-28375180-1000 [3200] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3625257640-3717126807-28375180-1000 [3334] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{02E34D24-C958-4CE6-92BC-640B14A15D7A} [3008] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{0AF6CF6D-4177-4ACE-B4D5-684B2A2BEA2D} [2994] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{1160F201-8331-4F8C-A3D3-DA008AF99291} [2996] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{1B6C63A3-E1CD-40D0-9122-D860DED32279} [3006] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{379B0B59-DE5F-48DA-9085-A23AB59A3B78} [3004] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{4C987009-3880-4A2E-B200-DEFBC00FBD2C} [2994] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{58F3FD6D-D557-4C16-82E3-CC5D4BE18F4E} [3002] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{7ACBF951-DA33-4C7C-DD1C-5DCE7D7F737C} [3216] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{9562351A-29B5-45A5-93EC-10B275C409D2} [3002] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{9BC249EC-BCDC-4E23-99CD-D3AAD999C560} [3008] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{B48C6063-1696-4063-BEF5-DA36F440EFEC} [2988] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{B8A666F2-CFDB-4BB3-940F-EADC793C682C} [3038] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{BA7D2DDE-9192-4828-9252-EA6C7BE50BCB} [3002] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{C2159FBA-D09A-4C68-974D-933B2D199805} [2998] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{CA3A45DA-EFDF-46A2-B382-8509C8B9463A} [3126] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D26AF34B-BC10-4629-AAAE-3DE02ED0D293} [2996] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D32DCFCC-5B9D-4AF6-8950-B0D9299F9DFF} [2994] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D5C7CA43-8FD6-4252-B028-E36741BA8929} [2780] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D86FF091-2D9F-43BB-89F5-CC082D4EE47A} [3002] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{DE4CDDB1-5402-468A-9992-851F327A4D1D} [2994] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{E254784D-3DBA-4AFD-B823-F3C1A602485B} [3182] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{F98E9019-AFAE-4081-8984-BE04A49FC7C5} [3002] =>.Superfluous.Orphan O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{FB6343B1-075E-4F60-8FB5-D9BB056C23C8} [3002] =>.Superfluous.Orphan ---\\ Processus lancés (16) - 100s [MD5.509980831739ED65E173EC6CAB056B5B] - (.Copyright © 2006 - MemCheck.Service.) -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe [28672] [PID.12] [MD5.0E235B002F8FE58DA92566AE53DF6681] - (.Copyright 2004 - CLCapSvc Module.) -- C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe [274520] [PID.1452] [MD5.F87DDE13D57062DA8EBA2368667D8130] - (.HiTRSUT - eDataSecurity Service.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe [457512] [PID.1880] =>.HiTRUST Inc.® [MD5.0921A68E8FE9B25DD0EFFAB949376B5F] - (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe [464168] [PID.1916] =>.HiTRUST Inc.® [MD5.559C9B7800FAC92FC515CD0003D7C631] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2044] =>.Hewlett-Packard Company [MD5.D898A66D91BAB6FB579A94D21793073F] - (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files\Athan\Athan.exe [1204224] [PID.452] =>.www.IslamicFinder.org [MD5.FA31E71FFC2CC0CA0EFA2298EEFBBFE3] - (.CyberLink Corp. - CyberLink PowerCinema Resident Program.) -- C:\Acer\Empowering Technology\eMode\PCM\PCMService.exe [151552] [PID.1036] =>.CyberLink Corp. [MD5.C1C132455200AD4704142442C89D0FA4] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\Cyberlink\Shared files\RichVideo.exe [262247] [PID.2068] [MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.2308] =>.Microsoft Corporation® [MD5.448E6DEFA9DFB76207A529FC0FB64069] - (.Acer Inc. - eRecoveryService.) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [49152] [PID.2452] =>.Acer Inc. [MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.2512] =>.Microsoft Corporation® [MD5.CC8E19BF16B69DCF04F5B4C609AA7CD6] - (.Copyright 2004 - CLSched Module.) -- C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe [118870] [PID.2628] [MD5.A67B078709F7C2DEDA542FF7F6F60D31] - (.AO Kaspersky Lab - Kaspersky Software Updater Beta.) -- C:\Program Files\Kaspersky Lab\Kaspersky Software Updater Beta\ksu.exe [3677104] [PID.472] =>.Kaspersky Lab® [MD5.D4946C20D736363DB7E5BB53C78F65A3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\karim\download\ZHPDiag3.exe [2405888] [PID.2960] =>.Nicolas Coolman [MD5.B55A422F81B798459F38D95346E2E6EF] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [509384] [PID.2396] =>.Mozilla Corporation® [MD5.ADCFA34032AA549CDB37D827B55AAE02] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [157128] [PID.3504] =>.Mozilla Corporation® ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 3s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_23_0_0_185.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 21s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://home.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.gdark.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://fr.search.yahoo.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://fr.gdark.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com =>.Google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com =>.Google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com =>.Google.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1 ---\\ Internet Explorer,Proxy Management (5) - 1s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 5s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (4) - 7s O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} (Orphan) O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll =>.Microsoft Corporation® ---\\ Internet Explorer, Barre d'outil (1) - 5s O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA01FE030000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (17) - 88s O4 - HKLM\..\Run: [eDataSecurity Loader] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe =>.HiTRUST Inc.® O4 - HKLM\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe =>.Acer Inc. O4 - HKLM\..\Run: [Athan] . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files\Athan\Athan.exe =>.www.IslamicFinder.org O4 - HKLM\..\Run: [WarReg_PopUp] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe =>.Acer Inc. O4 - HKLM\..\Run: [PCMService] . (.CyberLink Corp. - CyberLink PowerCinema Resident Program.) -- C:\Acer\Empowering Technology\eMode\PCM\PCMService.exe =>.CyberLink Corp. O4 - HKLM\..\RunOnce: [*WerKernelReporting] . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe =>.Microsoft Corporation O4 - HKLM\..\RunOnce: [*Restore] . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\System32\rstrui.exe =>.Microsoft Corporation O4 - HKLM\..\RunOnce: [DeleteOnReboot] C:\Users\karim\AppData\Local\Temp\DeleteOnReboot.bat (.not file.) O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe =>.Malwarebytes Corporation® O4 - HKCU\..\Run: [Acer Tour Reminder] (Orphan) O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3625257640-3717126807-28375180-1000\..\Run: [Acer Tour Reminder] (Orphan) O4 - HKUS\S-1-5-21-3625257640-3717126807-28375180-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® ---\\ Raccourcis Global Startup (39) - 103s O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\karim\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Assistant Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Desktop [karim]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\karim\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [karim]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [karim]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\sendTo [karim]: Assistant Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [karim]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\Programs [karim]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [karim]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: HP Deskjet 2050 J510 series.lnk . (.Hewlett-Packard Co. - HP Printer Software.) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe =>.Hewlett Packard® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\System32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: Kaspersky Software Updater Beta.lnk . (.AO Kaspersky Lab - Kaspersky Software Updater Beta.) C:\Program Files\Kaspersky Lab\Kaspersky Software Updater Beta\ksu.exe -hide =>.Kaspersky Lab® O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\System32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\System32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\System32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Volet Windows.) C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\System32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\control.exe /name Microsoft.WelcomeCenter =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) C:\Windows\System32\sdclt.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\System32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\System32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\System32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Transfert de fichiers et paramètres Windows.) C:\Windows\System32\migwiz\migwiz.exe =>.Microsoft Windows® O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\System32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\System32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc /s ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{2E9DDB7C-92C7-4769-9CF7-FC84C0E22342}: DhcpNameServer = 192.168.30.1 0.0.0.0 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{45F0650F-011A-487D-B6B5-3CADE3EB4462}: DhcpNameServer = 192.168.30.1 0.0.0.0 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{C2B3E62D-717D-445A-B0A9-256B854B4146}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress ---\\ Protocole additionnel (25) - 35s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation ---\\ Enumère les données de BootExecute (1) - 13s O34 - HKLM BootExecute: (sdnclean.exe) ---\\ Logiciels installés (59) - 3371s O42 - Logiciel: 7-Zip 16.04 - (.Igor Pavlov.) [HKLM] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36} =>.HiTRUST Inc.® O42 - Logiciel: Acer eMode Management - (...) [HKLM] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761} O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2} =>.Acer Inc. O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643} =>.Acer Inc. O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} =>.Acer Inc. O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35} =>.Acer Inc. O42 - Logiciel: Adobe Flash Player 23 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d} =>.Nero AG O42 - Logiciel: Athan Basic 4.1 - (...) [HKLM] -- Athan O42 - Logiciel: ccCommon - (.Symantec.) [HKLM] -- {B24E05CC-46FF-4787-BBB8-5CD516AFB118} =>.Symantec O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} =>.Microsoft Corporation O42 - Logiciel: Component Framework - (.Symantec Corporation.) [HKLM] -- {31478BE1-CDE5-4753-A8B2-F6D4BC1FBE09} =>.Symantec Corporation O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler =>.Piriform Ltd® O42 - Logiciel: ffdshow [rev 3058] [2009-08-20] - (...) [HKLM] -- ffdshow_is1 O42 - Logiciel: HP Deskjet 2050 J510 series Aide - (.Hewlett Packard.) [HKLM] -- {7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F} =>.Hewlett Packard O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE} =>.Hewlett-Packard O42 - Logiciel: ImagXpress - (.Nero AG.) [HKLM] -- {A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D} =>.Nero AG O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation O42 - Logiciel: Kaspersky Software Updater Beta - (.Kaspersky Lab.) [HKLM] -- {94C8D443-1D07-4E6D-A9EB-FDBA45A839D8} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Software Updater Beta - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{94C8D443-1D07-4E6D-A9EB-FDBA45A839D8} =>.Kaspersky Lab O42 - Logiciel: LightScribe 1.4.136.1 - (.http://www.lightscribe.com.) [HKLM] -- {A87B11AC-4344-4E5D-8B12-8F471A87DAD9} =>.http://www.lightscribe.com O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2050 J510 series - (.Hewlett-Packard Co..) [HKLM] -- {819AEE33-A489-4CCE-8069-C363483D7138} =>.Hewlett-Packard Co. O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800} =>.Microsoft Corporation O42 - Logiciel: Microsoft LifeCam - (.Microsoft Corporation.) [HKLM] -- {BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {BF455BD4-60BB-4E6E-867A-B4F57BC1164B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client =>.Microsoft Corporation® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft XML Parser - (.Microsoft Corporation.) [HKLM] -- {D642E38E-0D24-486C-9A2D-E316DD696F4B} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 49.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 49.0.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Nero CoverDesigner - (.Nero AG.) [HKLM] -- {62ac81f6-bdd3-4110-9d36-3e9eaab40999} =>.Nero AG O42 - Logiciel: Nero PhotoSnap - (.Nero AG.) [HKLM] -- {9e82b934-9a25-445b-b8df-8012808074ac} =>.Nero AG O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM] -- {359cfc0a-beb1-440d-95ba-cf63a86da34f} =>.Nero AG O42 - Logiciel: Nero ShowTime - (.Nero AG.) [HKLM] -- {d9dcf92e-72eb-412d-ac71-3b01276e5f8b} =>.Nero AG O42 - Logiciel: NeroBurningROM - (.Nero AG.) [HKLM] -- {d025a639-b9c9-417d-8531-208859000af8} =>.Nero AG O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM] -- {595a3116-40bb-4e0f-a2e8-d7951da56270} =>.Nero AG O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG O42 - Logiciel: Norton Protection Center - (.Symantec Corporation.) [HKLM] -- {62120008-8E1E-4807-860D-A8B48F8552DB} =>.Symantec Corporation O42 - Logiciel: Realtek High Definition Audio Driver - (...) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} =>.Microsoft Corporation O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 =>.Microsoft Corporation O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA} =>.Microsoft Corp O42 - Logiciel: Skype™ 7.28 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-5464-3428-900000000004} =>.Adobe Systems Incorporated O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer =>.Unity Technologies ApS O42 - Logiciel: VCRedistSetup - (.Nero AG.) [HKLM] -- {3921A67A-5AB1-4E48-9444-C71814CF3027} =>.Nero AG O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27} =>.Microsoft Corporation O42 - Logiciel: Visual C++ 2008 x86 Runtime - v9.0.30729.01 - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01 =>.Microsoft Corporation O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Windows Driver Package - SiS (SISAGP) System (01/24/2007 7.2.0.1230) - (.SiS.) [HKLM] -- 86789E72D7B273152966B28EC9A77D9ECF43A0F2 =>.Microsoft Windows Component Publisher® ---\\ HKCU & HKLM Software Keys (131) - 3378s HKLM\SOFTWARE\7-Zip HKLM\SOFTWARE\ HKLM\SOFTWARE\Acer =>.Acer HKLM\SOFTWARE\Acer Inc. =>.Acer Inc. HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\Ahead HKLM\SOFTWARE\America Online HKLM\SOFTWARE\ArcSoft =>.ArcSoft HKLM\SOFTWARE\Audible HKLM\SOFTWARE\Auslogics =>.Auslogics HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\CyberLink =>.CyberLink HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Grisoft =>.GRISOFT HKLM\SOFTWARE\HamsterSoft =>.HamsterSoft HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\HP =>.HP HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstallShield =>.InstallShield HKLM\SOFTWARE\instinno HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\KasperskyLab =>.KasperskyLab HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\LightScribe =>.LightScribe HKLM\SOFTWARE\LogiShrd HKLM\SOFTWARE\Logitech =>.Logitech HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\MAGIX =>.Magix HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\Moyea HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\MUSICMATCH HKLM\SOFTWARE\muvee Technologies =>.muvee Technologies HKLM\SOFTWARE\Nero HKLM\SOFTWARE\NewTech Infosystems =>.NewTech Infosystems HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OmniVision HKLM\SOFTWARE\Patchou =>.Patchou HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\RayV =>.RayV HKLM\SOFTWARE\RealNetworks =>.RealNetworks HKLM\SOFTWARE\Realtek =>.Realtek HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Safer Networking Limited HKLM\SOFTWARE\SecureDigitalServices HKLM\SOFTWARE\SiS HKLM\SOFTWARE\Skype =>.Skype HKLM\SOFTWARE\Soda PDF 5 HKLM\SOFTWARE\Symantec =>.Symantec HKLM\SOFTWARE\SymDebug HKLM\SOFTWARE\SymNRT HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\WholeSecurity HKLM\SOFTWARE\Wise Solutions HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\Yahoo =>.Yahoo! HKLM\SOFTWARE\ZSMC HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Acer =>.Acer HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\America Online HKCU\SOFTWARE\Andrei Jefremov HKCU\SOFTWARE\Apowersoft =>.APowerSoft HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArcSoft =>.ArcSoft HKCU\SOFTWARE\Convar HKCU\SOFTWARE\CyberLink =>.CyberLink HKCU\SOFTWARE\EasyBits =>.EasyBits HKCU\SOFTWARE\eChanblard HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\flv2avi HKCU\SOFTWARE\Freeware HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Grisoft =>.GRISOFT HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\HookNetwork HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallShield =>.InstallShield HKCU\SOFTWARE\KasperskyLab =>.KasperskyLab HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\LogiShrd HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKCU\SOFTWARE\MicroVision HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NewTech Infosystems =>.NewTech Infosystems HKCU\SOFTWARE\nuevos-programas.com =>PUP.Optional.Generic HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RayV =>.RayV HKCU\SOFTWARE\RealNetworks =>.RealNetworks HKCU\SOFTWARE\Realtek =>.Realtek HKCU\SOFTWARE\Safer Networking Limited HKCU\SOFTWARE\Samsung =>.Samsung HKCU\SOFTWARE\SAP =>.SAP HKCU\SOFTWARE\ShimDebugRemote HKCU\SOFTWARE\SiS HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\Soda PDF 5 HKCU\SOFTWARE\SONIC =>.Sonic HKCU\SOFTWARE\Streaming Video Recorder HKCU\SOFTWARE\SupportSoft =>.SupportSoft HKCU\SOFTWARE\Symantec =>.Symantec HKCU\SOFTWARE\Terravirtual HKCU\SOFTWARE\TorrentAid HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\TVANTS HKCU\SOFTWARE\Unity HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Visan HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Yahoo =>.Yahoo! HKCU\SOFTWARE\YouTube Downloader Suite HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Monitored HKCU\SOFTWARE\AppDataLow\Software\settings HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (176) - 2497s O43 - CFD: 05/03/2009 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Adobe =>.Microsoft Corporation® O43 - CFD: 01/06/2008 - [] D -- C:\Program Files\Adobe Media Player =>.Adobe Inc. O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Apowersoft =>.Apowersoft O43 - CFD: 26/02/2013 - [] D -- C:\Program Files\Athan O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 15/11/2012 - [] D -- C:\Program Files\Convar =>.Convar O43 - CFD: 18/01/2008 - [] D -- C:\Program Files\Cyberlink =>.Cyberlink O43 - CFD: 08/08/2016 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd® O43 - CFD: 17/04/2007 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows Component Publisher® O43 - CFD: 28/10/2014 - [] D -- C:\Program Files\DivX =>.DivX O43 - CFD: 14/02/2012 - [] D -- C:\Program Files\DMV O43 - CFD: 21/08/2009 - [] D -- C:\Program Files\ffdshow =>.Open Source O43 - CFD: 13/08/2007 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 27/10/2014 - [] D -- C:\Program Files\GPLGS =>.Ghostscript Team O43 - CFD: 31/03/2014 - [] D -- C:\Program Files\GUM125D.tmp =>.Google Inc® O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\Hercules =>.Hercules O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\Hercules(7) O43 - CFD: 07/12/2011 - [] D -- C:\Program Files\HP =>.Hewlett-Packard Company® O43 - CFD: 03/11/2013 - [] D -- C:\Program Files\Inkscape =>.inkscape.org O43 - CFD: 29/03/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.CyberLink® O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Kaspersky Lab =>.Kaspersky Lab® O43 - CFD: 05/04/2010 - [] D -- C:\Program Files\Lavasoft =>.Lavasoft O43 - CFD: 05/03/2010 - [] D -- C:\Program Files\Messenger Plus! Live =>.Patchou® O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation® O43 - CFD: 26/08/2007 - [] D -- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 23/06/2012 - [] D -- C:\Program Files\Microsoft LifeCam =>.Microsoft Corporation® O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation® O43 - CFD: 24/06/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 23/06/2010 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Movie Maker =>.Microsoft Corporation O43 - CFD: 25/09/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 25/09/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 05/06/2008 - [] D -- C:\Program Files\MSECache =>.Microsoft Corporation O43 - CFD: 16/02/2009 - [] D -- C:\Program Files\Nero =>.Nero AG® O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\SAGEM =>.Sagem O43 - CFD: 04/11/2008 - [] D -- C:\Program Files\sina O43 - CFD: 23/06/2012 - [] D -- C:\Program Files\SiS VGA Utilities O43 - CFD: 14/10/2016 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 24/01/2013 - [] D -- C:\Program Files\Skype(2) O43 - CFD: 24/01/2013 - [] RD -- C:\Program Files\Skype(3) O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 02/09/2007 - [] D -- C:\Program Files\VideoLAN =>.VideoLAN O43 - CFD: 04/01/2008 - [] D -- C:\Program Files\Web Media Player O43 - CFD: 27/05/2009 - [] D -- C:\Program Files\Windows Calendar =>.Microsoft Corporation O43 - CFD: 10/02/2016 - [] D -- C:\Program Files\Windows Collaboration =>.Microsoft Corporation O43 - CFD: 27/05/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 13/08/2007 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 27/05/2009 - [] D -- C:\Program Files\Windows Photo Gallery =>.Microsoft Corporation O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 06/03/2011 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 23/12/2015 - [0] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 05/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 26/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 26/08/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Empowering Technology O43 - CFD: 03/02/2006 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem =>.Acer Inc. O43 - CFD: 29/09/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 26/02/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Athan O43 - CFD: 08/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform O43 - CFD: 25/01/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 21/08/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow =>.Open Source O43 - CFD: 25/01/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 12/12/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Software Updater Beta O43 - CFD: 18/11/2007 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 23/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam O43 - CFD: 23/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 14/10/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 22/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLAN O43 - CFD: 23/06/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation O43 - CFD: 27/02/2013 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 05/03/2010 - [0] D -- C:\ProgramData\Bluetooth O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 03/11/2013 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 26/08/2007 - [] D -- C:\ProgramData\CyberLink =>.Cyberlink O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 07/02/2009 - [] D -- C:\ProgramData\Google =>.Google O43 - CFD: 07/12/2011 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 13/08/2007 - [] D -- C:\ProgramData\InstallShield =>.InstallShield O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 05/04/2010 - [] D -- C:\ProgramData\Lavasoft =>.Lavasoft O43 - CFD: 11/10/2010 - [] D -- C:\ProgramData\LogiShrd =>.Logitech O43 - CFD: 11/10/2010 - [] D -- C:\ProgramData\Logitech =>.Logitech O43 - CFD: 13/10/2016 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 12/08/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 16/02/2009 - [] D -- C:\ProgramData\Nero =>.Ahead Software O43 - CFD: 24/08/2007 - [0] D -- C:\ProgramData\NtiDvdCopy O43 - CFD: 18/10/2011 - [] D -- C:\ProgramData\Real O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 04/07/2011 - [] D -- C:\ProgramData\Skype Extras =>.Skype O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 05/04/2010 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 21/08/2009 - [] D -- C:\ProgramData\VistaCodecs O43 - CFD: 27/12/2009 - [] D -- C:\ProgramData\WindowsSearch =>.Microsoft Corporation O43 - CFD: 31/05/2009 - [0] D -- C:\ProgramData\WinZip =>.WinZip O43 - CFD: 15/09/2008 - [] D -- C:\ProgramData\WLInstaller =>.Microsoft Corporation O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\Common Files\ArcSoft =>.ArcSoft O43 - CFD: 28/07/2016 - [] D -- C:\Program Files\Common Files\AV =>.Avast O43 - CFD: 28/03/2008 - [0] D -- C:\Program Files\Common Files\ErreurChasseur O43 - CFD: 13/08/2007 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield O43 - CFD: 08/10/2016 - [] D -- C:\Program Files\Common Files\Java =>.Oracle O43 - CFD: 26/04/2013 - [] D -- C:\Program Files\Common Files\Java(0) O43 - CFD: 03/02/2006 - [] D -- C:\Program Files\Common Files\LightScribe =>.LightScribe O43 - CFD: 11/10/2010 - [] D -- C:\Program Files\Common Files\logishrd =>.Logitech O43 - CFD: 11/10/2010 - [0] D -- C:\Program Files\Common Files\LWS =>.Logitech O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 16/02/2009 - [] D -- C:\Program Files\Common Files\Nero =>.Ahead Software O43 - CFD: 03/12/2008 - [] D -- C:\Program Files\Common Files\Real O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Common Files\Skype =>.Skype O43 - CFD: 03/11/2013 - [] D -- C:\Program Files\Common Files\Soda PDF 5 O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 24/09/2016 - [] D -- C:\Program Files\Common Files\Symantec Shared =>.Symantec O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation O43 - CFD: 31/03/2009 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 16/09/2008 - [] SHDC -- C:\Program Files\Common Files\WindowsLiveInstaller =>.Microsoft Corporation O43 - CFD: 01/06/2008 - [] D -- C:\Users\karim\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 13/11/2015 - [] D -- C:\Users\karim\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 11/03/2016 - [] D -- C:\Users\karim\AppData\Roaming\CyberLink =>.Cyberlink O43 - CFD: 08/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\dvdcss =>.VideoLAN O43 - CFD: 25/12/2014 - [] D -- C:\Users\karim\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 04/05/2015 - [] SD -- C:\Users\karim\AppData\Roaming\Microsoft =>.Microsoft O43 - CFD: 01/01/2016 - [] D -- C:\Users\karim\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 17/09/2016 - [] D -- C:\Users\karim\AppData\Roaming\Skype =>.Skype O43 - CFD: 07/07/2011 - [] D -- C:\Users\karim\AppData\Roaming\skypePM =>.Skype Technologies O43 - CFD: 05/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\Sun =>.Oracle O43 - CFD: 10/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\vlc =>.VideoLAN O43 - CFD: 04/06/2015 - [0] D -- C:\Users\karim\AppData\Roaming\Windows Live Writer =>.Microsoft Corporation O43 - CFD: 20/12/2015 - [] D -- C:\Users\karim\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 27/07/2016 - [0] D -- C:\Users\karim\AppData\Roaming\Yahoo! =>.Yahoo! O43 - CFD: 14/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 14/10/2016 - [] D -- C:\Users\karim\AppData\Local\Adobe =>.Adobe O43 - CFD: 13/08/2007 - [0] SHD -- C:\Users\karim\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 04/12/2015 - [] D -- C:\Users\karim\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 04/12/2015 - [0] D -- C:\Users\karim\AppData\Local\Deployment =>.Microsoft Corporation O43 - CFD: 23/06/2012 - [] D -- C:\Users\karim\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 02/01/2015 - [] D -- C:\Users\karim\AppData\Local\eMule =>.eMule O43 - CFD: 13/08/2007 - [0] SHD -- C:\Users\karim\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 29/12/2014 - [] D -- C:\Users\karim\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 05/09/2015 - [] D -- C:\Users\karim\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 26/04/2016 - [] D -- C:\Users\karim\AppData\Local\Microsoft =>.Microsoft O43 - CFD: 02/02/2015 - [] D -- C:\Users\karim\AppData\Local\Microsoft Games =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Users\karim\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 08/10/2016 - [] D -- C:\Users\karim\AppData\Local\PowerCinema =>.Cyberlink O43 - CFD: 14/12/2015 - [0] D -- C:\Users\karim\AppData\Local\Skype =>.Skype O43 - CFD: 14/10/2016 - [] D -- C:\Users\karim\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 13/08/2007 - [0] SHD -- C:\Users\karim\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/12/2014 - [] D -- C:\Users\karim\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 15/06/2015 - [] D -- C:\Users\karim\AppData\Local\Windows Live =>.Microsoft Corporation O43 - CFD: 15/06/2015 - [] D -- C:\Users\karim\AppData\Local\Windows Live Writer =>.Microsoft Corporation O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 25/04/2011 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 22/06/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft O43 - CFD: 24/03/2008 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\AVG7 O43 - CFD: 13/08/2007 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 22/06/2012 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 1s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (9) - 48s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (...) -- C:\Program Files\CCleaner\CCleaner.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard O53 - SMSR:HKLM\...\startupreg\LifeCam [Key] . (.Microsoft Corporation - LifeExp.exe.) -- C:\Program Files\Microsoft LifeCam\LifeExp.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\SpybotPostWindows10UpgradeReInstall [Key] . (.Safer-Networking Ltd. - Makes sure Spybot 2 is there on Windows 10..) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe =>.Safer-Networking Ltd. O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Registration.) -- C:\Program Files\Common Files\Java\Java Update\jaureg.exe =>.Oracle Corporation O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Corporation ---\\ Liste des pilotes du système (88) - 584s O58 - SDL:2005/05/12 23:56:00 A . (.Analog Devices Inc. - ADI RNDIS Compatible Adapter.) -- C:\Windows\System32\drivers\adipfusb.sys [28182] O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] =>.Microsoft Windows® O58 - SDL:2003/12/22 04:29:34 A . (.Adaptec - ASPI for WIN32 Kernel Driver.) -- C:\Windows\System32\drivers\ASPI32.SYS [25244] =>.Adaptec O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2010/02/05 05:16:10 A . (.CSR, plc - Bluetooth Remote Control Driver.) -- C:\Windows\System32\drivers\BthAvrcp.sys [28048] =>.CSR India Pvt Ltd® O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] =>.Microsoft Windows® O58 - SDL:2014/04/30 20:47:46 A . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\System32\drivers\dgderdrv.sys [20032] =>.SAMSUNG ELECTRONICS CO.,LTD.® O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows® O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] =>.Intel Corporation O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows® O58 - SDL:2006/02/03 16:23:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [6144] =>.NewTech InfoSystems, Inc. O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] =>.Microsoft Windows® O58 - SDL:2004/11/09 00:37:32 A . (.OmniVision Technologies Inc. - Dual Mode USB Camera 530 Universal Serial.) -- C:\Windows\System32\drivers\ov530cmd.sys [25177] O58 - SDL:2005/03/15 17:04:00 A . (.OmniVision Technologies, Inc. - Dual Mode USB Camera 530 Stream Class Mini.) -- C:\Windows\System32\drivers\ov530vid.sys [161792] =>.OmniVision Technologies, Inc. O58 - SDL:2007/02/07 00:04:48 A . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\System32\drivers\psdfilter.sys [20264] =>.HiTRUST Inc.® O58 - SDL:2007/02/07 00:04:54 A . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\PSDNServ.sys [16680] =>.HiTRUST Inc.® O58 - SDL:2007/02/07 00:04:50 A . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\psdvdisk.sys [60712] =>.HiTRUST Inc.® O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows® O58 - SDL:2006/12/01 07:38:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [1655464] =>.Realtek Semiconductor Corp® O58 - SDL:2010/04/05 18:22:57 A . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\Windows\System32\drivers\SBREDrv.sys [95024] =>.SUNBELT SOFTWARE DISTRIBUTION® O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2007/01/24 03:08:06 A . (.Silicon Integrated Systems Corporation - SiS AGPv3.5 Filter.) -- C:\Windows\System32\drivers\SISAGPX.SYS [56184] =>.Silicon Integrated Systems Corporation O58 - SDL:2007/01/22 10:09:08 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSGB6.sys [46592] =>.Silicon Integrated Systems Corp. O58 - SDL:2009/11/20 15:49:30 A . (.Silicon Integrated Systems Corporation - SiS VGA Kernal Mode Vista Driver.) -- C:\Windows\System32\drivers\SISGRKMD.sys [465408] =>.Silicon Integrated Systems Corporation O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows® O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - DNS Filter Driver.) -- C:\Windows\System32\drivers\symdns.sys [13616] =>.Symantec Corporation® O58 - SDL:2008/03/24 22:35:20 A . (.Symantec Corporation - Symantec Event Library.) -- C:\Windows\System32\drivers\SYMEVENT.SYS [123952] =>.Symantec Corporation® O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - Firewall Filter Driver.) -- C:\Windows\System32\drivers\symfw.sys [96432] =>.Symantec Corporation® O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - IDS Filter Driver.) -- C:\Windows\System32\drivers\symids.sys [38576] =>.Symantec Corporation® O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - NDIS Filter Driver.) -- C:\Windows\System32\drivers\symndisv.sys [41008] =>.Symantec Corporation® O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - Redirector Filter Driver.) -- C:\Windows\System32\drivers\symredrv.sys [22320] =>.Symantec Corporation® O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - Network Dispatch Driver.) -- C:\Windows\System32\drivers\symtdi.sys [188464] =>.Symantec Corporation® O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] =>.Microsoft Windows® O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys [105088] =>.ZTE Incorporated O58 - SDL:2009/08/21 17:43:00 A . (.ZTE Corporation - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ZTEusbnet.sys [114688] =>.ZTE Corporation O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmea.sys [105088] =>.ZTE Incorporated O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmeaext.sys [105088] =>.ZTE Incorporated O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmeaext2.sys [105088] =>.ZTE Incorporated O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbser6k.sys [105088] =>.ZTE Incorporated O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbvoice.sys [105088] =>.ZTE Incorporated O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 439s O61 - LFC: 2016/10/13 21:33:19 A . (..) -- C:\Users\karim\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [135531] ---\\ Associations Shell Spawning (10) - 21s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (8) - 13s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (9) - 469s O69 - SBI: SearchScopes [HKCU] {2136E426-40B9-4ED1-8969-F6A81B027B5E} - (Yahoo! Guide) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} [DefaultScope] - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {BB420265-1FFE-48F4-A507-A032FA0675EE} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {1A683DAB-0327-4240-BC3B-C0C8A70F8ECF} - (Yahoo! Guide) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {2C8E925C-3466-4951-BF67-3CC592D42336} - (Yahoo! Search) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKLM] {7E1F3FD8-5A41-48A6-AFAB-D2025E7FD136} - (Yahoo! Images) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {93B09511-C4F0-46F0-A71D-7456F765248E} - (Yahoo! Vidéos) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {F0FBC85B-6E8D-4312-A6B2-E71B5E928E7E} - (Yahoo! Actualités) - http://fr.search.yahoo.com/ =>.Yahoo Search ---\\ Enumère les services démarrés par Svchost (31) - 23s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [582144] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [438784] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (6) - 150s O87 - FAEL: "TCP Query User{AF03F784-DF83-4BF9-806A-E54E05CD1DAC}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe O87 - FAEL: "UDP Query User{54279E3F-4B50-4DDB-A116-9B3A31874A94}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe O87 - FAEL: "{37A5805C-FF99-45B2-87D1-2C7A53CF0B68}" [In-None-P6-FALSE] .(.北京新浪网络技术服务有限公司 - Sina Acceleration Platform.) -- C:\Program Files\sina\SAP\SAPlatform.exe O87 - FAEL: "{B88A307B-AE94-4508-B137-9E7709024106}" [In-None-P17-FALSE] .(.北京新浪网络技术服务有限公司 - Sina Acceleration Platform.) -- C:\Program Files\sina\SAP\SAPlatform.exe O87 - FAEL: "TCP Query User{8EA3A698-4499-4513-A319-46A213133706}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe O87 - FAEL: "UDP Query User{FAB555E3-E637-4978-9CA4-B67C49BF32CA}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe ---\\ Scan Additionnel (1) - 2s HKCU\SOFTWARE\nuevos-programas.com =>PUP.Optional.Generic ---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic ~ End of the scan, 30162 items in 03h03mn44s (869)