Rapport de ZHPDiag v1.3.5.121 par Nicolas Coolman, Update du 23/02/2013 Run by FightVirtu at 24/02/2013 12:20:14 State : Version à jour. High Elevated Privileges : OK UAC : Activate by user ---\\ Web Browser MSIE: Internet Explorer v9.10.9200.16484 MFIE: Mozilla Firefox 19.0 v19.0 (Defaut) ---\\ Windows Product Information ~ Langage: Français Windows 8 Business Edition, 64-bit (Build 9200) Windows Server License Manager Script : OK ~ ion : Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 6JCM3 Windows License : OK ~ Windows Remaining Initializations Number : 1000 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System Information ~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 7156.8 MB (74% free) System Restore: Activé (Enable) System drive C: has 781 GB (60%) free of 1286 GB ---\\ Logged in mode ~ Computer Name: TICUBIUS ~ User Name: FightVirtu ~ All Users Names: UpdatusUser, TiCubius, HomeGroupUser$, FightVirtu, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89 Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\FightVirtu\AppData\Roaming\ ~ %Desktop% : C:\Users\FightVirtu\Desktop\ ~ %Favorites% : C:\Users\FightVirtu\Favorites\ ~ %LocalAppData% : C:\Users\FightVirtu\AppData\Local\ ~ %StartMenu% : C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 781 Go of 1286 Go) E:\ Hard drive, Flash drive, Thumb drive (Free 52 Go of 98 Go) F:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 13 Go) G:\ Floppy drive, Flash card reader, USB Key (Not Inserted) H:\ CD-ROM drive (Free 0 Go of 8 Go) J:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Scan Security Center in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944] [MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608] [MD5.BDE820861D8107C67E182DF66A27074F] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.20/12/2012 - 01:29:16.) -- C:\Windows\System32\wininet.dll [2246656] [MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120] [MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408] [MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640] [MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840] [MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544] [MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080] [MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784] [MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168] [MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640] [MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920] [MD5.877D60D6E4156EC4A2E0B6871D41BED9] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.06/11/2012 - 04:52:49.) -- C:\Windows\system32\Drivers\MRxSmb.sys [366080] [MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776] [MD5.11D7A4A4A1DA60F394F53B413DCDF0DE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.10/01/2013 - 02:29:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1934056] [MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984] [MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928] [MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712] [MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248] [MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016] ~ Scan Generic Processes in 00mn 02s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/9 ~ Mes musiques (My Musics) : 1/8 ~ Mes Videos (My Videos) : 1/5 ~ Mes Favoris (My Favorites) : 1/22 ~ Mes Documents (My Documents) : 1/885 ~ Mon Bureau (My Desktop) : 1/172482 ~ Menu demarrer (Programs) : 1/33 ~ Scan Hidden Files in 02mn 04s ---\\ Processus lancés [MD5.7853D2AB445C10F97610B2B05FA4CF0A] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [512360] [PID.20740] [MD5.4458989C34FA84B5A75DD3ABCFBE786A] - (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624] [PID.4696] [MD5.083649EF692A066880C9326020915AFE] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4297136] [PID.5372] [MD5.63A2D767B9261B4F33F97BF88F2FB197] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [276328] [PID.8860] [MD5.D658AB1B55127D18DCFBCAC8CAAEA522] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.10992] [MD5.2FB757B35C94B1C1C65BA35E4E7EC0F2] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe [174952] [PID.948] [MD5.F01A418BDDFC14D60E463C50CABC7750] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [565096] [PID.6584] [MD5.B2F0B501A7C017F21C4B4417623895BD] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe [367976] [PID.5108] [MD5.497F27E279C0F921E2130BB89C1CB5CA] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [18705664] [PID.19004] [MD5.9F0A78629F451BAAFE21DFCCD887F087] - (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- E:\Steam\Steam.exe [1597864] [PID.12800] [MD5.1B31F071A618F06E152491950E9FA87B] - (.Pas de propriétaire - Removes as many pages as possible from the.) -- C:\Users\FightVirtu\Desktop\SysinternalsSuite\freememory.exe [389077] [PID.10388] [MD5.050D1C454A49D4DF8EB5222D352B6630] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [917400] [PID.10924] [MD5.ED48AD981F026087F485403A3C2B0897] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [5696512] [PID.17808] [MD5.339DFA98DDDA7DDF735CE21C82E6F1DD] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe [824232] [PID.21736] [MD5.57785A015DED82C287761CA1BD02D532] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [17304] [PID.19504] [MD5.476FD5F12C0FF32CDF0A179320FCB726] - (.Adobe Systems, Inc. - Adobe Flash Player 11.5 r502.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_149.exe [1808240] [PID.2936] ~ Scan Processes Running in 00mn 01s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\FightVirtu\AppData\Roaming\Mozilla\Firefox\Profiles\tz7eflj5.default\prefs.js M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\avg-secure-search.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\bing.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [FightVirtu] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-france.xml M2 - MFEP: prefs.js [FightVirtu - tz7eflj5.default\firefox@ghostery.com] [] Ghostery v2.8.4 (.Evidon, Inc..) M2 - MFEP: prefs.js [FightVirtu - tz7eflj5.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20130129 (.WOT Services Oy.) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_149.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.11.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.11.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.11.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@ma-config.com/HardwareDetection] - (.Cybelsoft - Plugin NPAPI Ma-Config.com # win64 # 6.5.1.1.) -- C:\Program Files\ma-config.com\x64\nphardwaredetection.dll P2 - FPN: [HKCU] [pandonetworks.com/PandoWebPlugin] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll P2 - FPN: [HKCU] [ubisoft.com/uplaypc] - (.Ubisoft - Uplay PC Plugin.) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ~ Scan Firefox Browser in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://portail.free.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16384 (win8_rtm.120725-1247)) -- C:\Windows\SysWOW64\ieframe.dll ~ Scan IE Browser in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Scan Proxy management in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Scan Keys in 00mn 00s ---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Scan Hosts File in 00mn 00s ~ Nombre de lignes (Lines number): 23 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: btorbit.com [64Bits] - {000123B4-9B42-4900-B3F7-F4B073EFC214} . (.Orbitdownloader.com - Orbitcth.) -- C:\Program Files (x86)\Orbitdownloader\orbitcth.dll O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Logitech SetPoint [64Bits] - {AF949550-9094-4807-95EC-D1C317803333} . (.Logitech, Inc. - Logitech SetPoint.) -- C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll ~ Scan BHO in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ Scan Toolbar in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe O4 - HKLM\..\Run: [OODefragTray] . (.O&O Software GmbH - O&O Defrag Free Edition TrayIcon (x64).) -- C:\Program Files\OO Software\Defrag\oodtray.exe O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- E:\Steam\steam.exe O4 - HKCU\..\Run: [AdobeBridge] Clé orpheline O4 - HKCU\..\Run: [SandboxieControl] C:\Program Files (x86)\Sandboxie\SbieCtrl.exe (.not file.) O4 - HKCU\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O4 - HKCU\..\Run: [Pando Media Booster] . (.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKUS\S-1-5-21-2051407399-3503958739-1925350863-1004-2051407399-3503958739-1925350863-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- E:\Steam\Steam.exe O4 - HKUS\S-1-5-21-2051407399-3503958739-1925350863-1004-2051407399-3503958739-1925350863-1001\..\Run: [AdobeBridge] Clé orpheline O4 - HKUS\S-1-5-21-2051407399-3503958739-1925350863-1004-2051407399-3503958739-1925350863-1001\..\Run: [SandboxieControl] C:\Program Files (x86)\Sandboxie\SbieCtrl.exe (.not file.) O4 - HKUS\S-1-5-21-2051407399-3503958739-1925350863-1004-2051407399-3503958739-1925350863-1001\..\Run: [FileHippo.com] Clé orpheline O4 - HKUS\S-1-5-21-2051407399-3503958739-1925350863-1004-2051407399-3503958739-1925350863-1001\..\Run: [DAEMON Tools Lite] Clé orpheline O4 - HKUS\S-1-5-21-2051407399-3503958739-1925350863-1004-2051407399-3503958739-1925350863-1001\..\Run: [Pando Media Booster] Clé orpheline ~ Scan Application in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop: Notepad++.lnk . (.Don HO don.h@free.fr.) -- C:\Program Files (x86)\Notepad++\notepad++.exe O4 - GS\Desktop: PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe O4 - GS\Desktop: Customize Fences.lnk . (...) -- C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop (.not file.) O4 - GS\Desktop: vegas120 - Raccourci.lnk . (...) -- C:\Program Files (x86)\Sony\Vegas Pro 12.0\vegas120.exe (.not file.) O4 - GS\Desktop: Easy Thumbnails.lnk . (.Fookes Software.) -- C:\Program Files (x86)\Easy Thumbnails\EzThumbs.exe O4 - GS\Desktop: FreeMemory.lnk . (...) -- C:\Users\FightVirtu\Desktop\SysinternalsSuite\freememory.exe O4 - GS\Desktop: Personnaliser Fences.lnk . (...) -- C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop (.not file.) O4 - GS\Desktop: Slowin' Killer.lnk . (...) -- C:\Program Files (x86)\Slowin Killer\Slowin Killer.exe O4 - GS\Desktop: Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe O4 - GS\Desktop: Uplay.lnk . (...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe ~ Scan Global Startup in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ Scan IE Control Panel in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Scan Winsock in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{6BAFAEDE-9FA4-44BB-A573-2605CDCBE86B}: NameServer = 8.8.8.8,8.8.4.4 O17 - HKLM\System\CCS\Services\Tcpip\..\{6BAFAEDE-9FA4-44BB-A573-2605CDCBE86B}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{6BAFAEDE-9FA4-44BB-A573-2605CDCBE86B}: NameServer = 8.8.8.8,8.8.4.4 O17 - HKLM\System\CS1\Services\Tcpip\..\{6BAFAEDE-9FA4-44BB-A573-2605CDCBE86B}: DhcpNameServer = 192.168.0.254 ~ Scan Domain in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ~ Scan Protocole Additionnel in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: LBTWlgn . (.Logitech, Inc. - Logitech Bluetooth Service.) -- c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll ~ Scan Winlogon in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ Scan SSODL in 00mn 00s ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) [64Bits] - {1984DD45-52CF-49cd-AB77-18F378FEA264} - (.not file.) ~ Scan STS/SSO in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Intel(R) Capability Licensing Service In (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Dynamic Application Loader Host (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 314.0.) - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: O&O Defrag (OODefragAgent) . (.O&O Software GmbH - O&O Defrag Free Edition Agent (x64).) - C:\Program Files\OO Software\Defrag\oodag.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc. - PsiService PsiService.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: Stardock Start8 (Start8) . (.Stardock Software, Inc - Stardock Start8 Service.) - C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe O23 - Service: TeamViewer 8 (TeamViewer8) . (.TeamViewer GmbH - TeamViewer 8.) - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ~ Scan Services in 00mn 22s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Scan Desktop Component in 00mn 00s ---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ Scan Keys in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [MD5.EC807244904FA170C299AB06D87FBDBE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [MD5.7F19838AC317C34FCED020BE529AF71E] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe ~ Scan Scheduled Task in 00mn 03s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll ~ Scan Active Setup in 00mn 00s ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswnet) . (.AVAST Software - AVAST Firewall Core Driver.) - C:\Windows\system32\Drivers\aswnet.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: oem34.inf (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\system32\drivers\dtsoftbus01.sys O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys O41 - Driver: (VBoxDrv) . (.Oracle Corporation - VirtualBox Support Driver.) - C:\Windows\system32\DRIVERS\VBoxDrv.sys O41 - Driver: (VBoxUSBMon) . (.Oracle Corporation - VirtualBox USB Monitor Driver.) - C:\Windows\system32\DRIVERS\VBoxUSBMon.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys ~ Scan Drivers in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} O42 - Logiciel: Action! - (.Mirillis.) [HKLM][64Bits] -- Mirillis Action! O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1798D459-6B8B-474B-868D-1229EADA3B95} O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {C8773FDB-D0DB-BE52-D536-F48F9886B57B} O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} O42 - Logiciel: Adobe Premiere Pro CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7176B973-6011-43C1-AEBC-2D73FE7C6982} O42 - Logiciel: Assassin's Creed(R) III v1.03 - (.Ubisoft.) [HKLM][64Bits] -- {9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF} O42 - Logiciel: AutoIt v3.3.8.1 - (.AutoIt Team.) [HKLM][64Bits] -- AutoItv3 O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF} O42 - Logiciel: Call of Duty: Black Ops II - (.Pas de propriétaire.) [HKLM][64Bits] -- Steam App 202970 O42 - Logiciel: Call of Duty: Black Ops II - Multiplayer - (.Pas de propriétaire.) [HKLM][64Bits] -- Steam App 202990 O42 - Logiciel: Call of Duty: Black Ops II - Zombies - (.Pas de propriétaire.) [HKLM][64Bits] -- Steam App 212910 O42 - Logiciel: Cities XL 2012 - (.Focus Home Interactive.) [HKLM][64Bits] -- Cities XL 2012 O42 - Logiciel: Contents - (.Corel Corporation.) [HKLM][64Bits] -- {CA486743-5F44-40D5-A38B-77911FB27579} O42 - Logiciel: Corel VideoStudio Pro X5 - (.Corel Corporation.) [HKLM][64Bits] -- _{1A1BD41E-9854-4957-8959-F9559A8862A7} O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite O42 - Logiciel: Deluge 1.3.5 - (.Pas de propriétaire.) [HKLM][64Bits] -- Deluge O42 - Logiciel: Easy Thumbnails (Remove only) - (.Fookes Software.) [HKLM][64Bits] -- Easy Thumbnails_is1 O42 - Logiciel: Euro Truck Simulator 2 - (.SCS Software.) [HKLM][64Bits] -- {1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1 O42 - Logiciel: Fences - (.Stardock Corporation.) [HKLM][64Bits] -- Fences O42 - Logiciel: FileHippo.com Update Checker - (.Pas de propriétaire.) [HKLM][64Bits] -- FileHippo.com O42 - Logiciel: Free WebM Encoder 1.2 - (.PolySoft Solutions.) [HKLM][64Bits] -- {A3CE3931-840E-4CAE-BAE6-F1A4F49D03D4}_is1 O42 - Logiciel: GameMaker-Studio 1.1 - (.YoYo Games Ltd..) [HKCU][64Bits] -- GameMaker-Studio11 O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart C4600 All-In-One Driver Software 14.0 Rel. 6 - (.HP.) [HKLM][64Bits] -- {FF5C86D0-09EA-43B8-A11C-7B8F7DA7FC51} O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE} O42 - Logiciel: Half-Life Dedicated Server Update Tool - (.Pas de propriétaire.) [HKLM][64Bits] -- Half-Life Dedicated Server Update Tool O42 - Logiciel: Hollywood FX Volumes 1-3 - (.Avid Technology, Inc..) [HKLM][64Bits] -- {E3D181F8-246B-497F-945E-6DB98CBA6677} O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {1A1BD41E-9854-4957-8959-F9559A8862A7} O42 - Logiciel: IPM_VS_Pro - (.Corel Corporation.) [HKLM][64Bits] -- {66C70B5F-730F-4C5D-9FC5-8E56D0FE7D53} O42 - Logiciel: ISCOM - (.Corel Corporation.) [HKLM][64Bits] -- {DCDC6934-7428-489E-8651-90B53191488B} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {7AB8C73F-03FE-48AE-990C-CCB8D6C4FAB8} O42 - Logiciel: Java 7 Update 11 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417011FF} O42 - Logiciel: Left 4 Dead 2 - (.Valve.) [HKLM][64Bits] -- Steam App 550 O42 - Logiciel: LibreOffice 3.6 - (.The Document Foundation.) [HKLM][64Bits] -- {60B2F25C-22CB-4CD9-9168-8C63708DC1A1} O42 - Logiciel: Logitech SetPoint 6.51 - (.Logitech.) [HKLM][64Bits] -- sp6 O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {AB085680-FE98-11E1-A232-F04DA23A5C58} O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {01D87A70-4D13-4CBE-8944-A5AD37BE8D8E} O42 - Logiciel: Malwarebytes Anti-Malware version 1.70.0.1100 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft Primary Interoperability Assemblies 2005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2C303EE0-A595-3543-A71A-931C7AC40EDE} O42 - Logiciel: Miro Video Converter - (.Participatory Culture Foundation.) [HKLM][64Bits] -- Miro Video Converter O42 - Logiciel: Mises à jour NVIDIA 1.12.12 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: Mozilla Firefox 19.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 19.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: Mozilla Thunderbird 17.0.3 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 17.0.3 (x86 fr) O42 - Logiciel: Mumble 1.2.3 - (.Thorvald Natvig.) [HKLM][64Bits] -- {E1019541-10A2-464F-A23E-A4F23DA65160} O42 - Logiciel: My Game Long Name - (.Epic Games, Inc..) [HKLM][64Bits] -- UDK-11bf7770-84c4-4ab4-84b6-5460df3ed066 O42 - Logiciel: NVIDIA Logiciel système PhysX 9.12.1031 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.23.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 314.07 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB O42 - Logiciel: NVIDIA Pilote graphique 314.07 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: Notepad++ - (.Pas de propriétaire.) [HKLM][64Bits] -- Notepad++ O42 - Logiciel: O&O Defrag Free Edition - (.O&O Software GmbH.) [HKLM][64Bits] -- {C10CAF82-9D36-4D9A-9DC0-C4549F06B519} O42 - Logiciel: Oracle VM VirtualBox 4.2.6 - (.Oracle Corporation.) [HKLM][64Bits] -- {A8A0B1C1-FBC7-4790-8E26-9DA1A6A95452} O42 - Logiciel: Orbit Downloader - (.www.orbitdownloader.com.) [HKLM][64Bits] -- Orbit_is1 O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM][64Bits] -- {980A182F-E0A2-4A40-94C1-AE0C1235902E} O42 - Logiciel: PhotoFiltre - (.Pas de propriétaire.) [HKCU][64Bits] -- PhotoFiltre O42 - Logiciel: Pilote vidéo Pinnacle - (.Pinnacle Systems.) [HKLM][64Bits] -- {6DE721A5-5E89-4D74-994C-652BB3C0672E} O42 - Logiciel: Pinnacle Studio 16 - (.Avid Technology, Inc..) [HKLM][64Bits] -- {284BFDBC-DAC6-43EC-85A8-E1CEC0D3A114} O42 - Logiciel: Pinnacle Studio 16 - Install Manager - (.Avid Technology, Inc..) [HKLM][64Bits] -- {F1886CD7-9F73-417A-92E9-7E0AB0F0E099} O42 - Logiciel: Pinnacle Studio 16 - Standard Content Pack - (.Avid Technology, Inc..) [HKLM][64Bits] -- {7D0F4ACC-698A-41B9-B1E2-17594988FBEF} O42 - Logiciel: Premium Pack Volumes 1-2 - (.Avid Technology, Inc..) [HKLM][64Bits] -- {88C4D8A6-9954-46A0-965D-92E55DAB8734} O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: SciTE4AutoIt3 12/29/2011 - (.Jos van der Zande.) [HKLM][64Bits] -- SciTE4AutoIt3 O42 - Logiciel: Setup - (.Corel Corporation.) [HKLM][64Bits] -- {A8887C7B-0BCC-4FBF-BCEB-9BB4D4B14999} O42 - Logiciel: Share - (.Corel Corporation.) [HKLM][64Bits] -- {EEBEF66A-70FD-4DF6-B173-82D07E61853E} O42 - Logiciel: Share64 - (.Corel Corporation.) [HKLM][64Bits] -- {D000D1C0-6E80-4FC4-BE4E-A88872C0616F} O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies O42 - Logiciel: Skype™ 6.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: Slowin' Killer : Nettoyage & Optimisation - (.Saachaa.) [HKLM][64Bits] -- Slowin Killer O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- {B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F} O42 - Logiciel: Start8 - (.Stardock Corporation.) [HKLM][64Bits] -- Start8_is1 O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: Super Crate Box - (.Pas de propriétaire.) [HKLM][64Bits] -- Steam App 212800 O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440 O42 - Logiciel: TeamViewer 8 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 8 O42 - Logiciel: Title Extreme - (.Avid Technology, Inc..) [HKLM][64Bits] -- {F7214014-27EE-4237-9978-2F9D1551559B} O42 - Logiciel: TweetDeck - (.Twitter, Inc..) [HKLM][64Bits] -- {533B3480-EAB6-44DD-B2E4-715E958210E0} O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay O42 - Logiciel: VLC media player 2.0.5 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: VSClassic - (.Corel Corporation.) [HKLM][64Bits] -- {8AA4F966-EF4B-44D8-99AA-C4EA93B46863} O42 - Logiciel: VSHelp - (.Corel Corporation.) [HKLM][64Bits] -- {6A6F7B28-E178-47AC-8654-A654ADA6C777} O42 - Logiciel: VSPro - (.Corel Corporation.) [HKLM][64Bits] -- {5BB655D4-07D7-45E3-B852-FF869EA628A1} O42 - Logiciel: Vegas Pro 12.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {A782B230-FE98-11E1-9A1E-F04DA23A5C58} O42 - Logiciel: WampServer 2.2 - (.Hervé Leclerc (HeL).) [HKLM][64Bits] -- WampServer 2_is1 O42 - Logiciel: Windows Media Encoder 9 Series - (.Microsoft Corporation.) [HKLM][64Bits] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} O42 - Logiciel: Windows Media Encoder 9 Series - (.Pas de propriétaire.) [HKLM][64Bits] -- Windows Media Encoder 9 O42 - Logiciel: avast! Free Antivirus v7.0.1474.0 - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0} O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} O42 - Logiciel: openElement 1.31 - (.Element Technologie.) [HKLM][64Bits] -- openElement 1.31 1.31 O42 - Logiciel: openElement 1.31 - (.Element Technologie.) [HKLM][64Bits] -- {B0A936D8-EB33-4D1A-8BB7-A06B931D10EF} O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] -- {185F9795-9663-4F13-9EF9-307A282ADB5A} ---\\ HKCU & HKLM Software Keys [HKCU\Software\5tudio] [HKCU\Software\7-Zip] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\AutoIt v3] [HKCU\Software\Avast Software] [HKCU\Software\Avid] [HKCU\Software\Black] [HKCU\Software\Bugsplat] [HKCU\Software\Caphyon] [HKCU\Software\Cheat Engine] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Corel] [HKCU\Software\DT Soft] [HKCU\Software\DirectShow] [HKCU\Software\Drivers] [HKCU\Software\Epic Games] [HKCU\Software\FileHippo.com] [HKCU\Software\Focus Home] [HKCU\Software\GMStudio] [HKCU\Software\Game Maker] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IGearSettings] [HKCU\Software\IM Providers] [HKCU\Software\InterVideo] [HKCU\Software\Leadertech] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\MainConcept] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\Mine] [HKCU\Software\Mirillis] [HKCU\Software\Mozilla Backup] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\Mumble] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\NewBlue] [HKCU\Software\O&O] [HKCU\Software\Oracle] [HKCU\Software\Orbit] [HKCU\Software\PACE Anti-Piracy] [HKCU\Software\Pando Networks] [HKCU\Software\Participatory Culture Foundation] [HKCU\Software\Pinnacle Systems] [HKCU\Software\Pipix] [HKCU\Software\Plate] [HKCU\Software\Policies] [HKCU\Software\PolySoft] [HKCU\Software\ProgSense] [HKCU\Software\RegisteredApplications] [HKCU\Software\Scirra] [HKCU\Software\Skype] [HKCU\Software\Sony Creative Software] [HKCU\Software\Stardock] [HKCU\Software\Sysinternals] [HKCU\Software\System32] [HKCU\Software\TeamViewer] [HKCU\Software\The Document Foundation] [HKCU\Software\Tilda] [HKCU\Software\Trolltech] [HKCU\Software\Twitter] [HKCU\Software\Ubisoft] [HKCU\Software\Ulead Systems] [HKCU\Software\Ulead] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\VOB] [HKCU\Software\Valve] [HKCU\Software\WinRAR SFX] [HKCU\Software\Win] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\cybelsoft] [HKCU\Software\proDAD] [HKLM\Software\7-Zip] [HKLM\Software\AGEIA Technologies] [HKLM\Software\ATI Technologies] [HKLM\Software\Adobe] [HKLM\Software\Alienware] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Hewlett-Packard] [HKLM\Software\ICE] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\Khronos] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\Minnetonka Audio Software] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\O&O] [HKLM\Software\ODBC] [HKLM\Software\Oracle] [HKLM\Software\Policies] [HKLM\Software\RTLSetup] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\Sony Creative Software] [HKLM\Software\Stardock] [HKLM\Software\Wow6432Node\AGEIA Technologies] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\AVG Secure Search] [HKLM\Software\Wow6432Node\AVG Security Toolbar] [HKLM\Software\Wow6432Node\Activision] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\AutoIt v3] [HKLM\Software\Wow6432Node\Avid Technology, Inc.] [HKLM\Software\Wow6432Node\Avid] [HKLM\Software\Wow6432Node\CDDB] [HKLM\Software\Wow6432Node\Caphyon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Corel] [HKLM\Software\Wow6432Node\DT Soft] [HKLM\Software\Wow6432Node\Element Technologie] [HKLM\Software\Wow6432Node\Even Balance] [HKLM\Software\Wow6432Node\Focus Home Interactive] [HKLM\Software\Wow6432Node\GamersFirst] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\ICE] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\InterVideo] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\LibreOffice] [HKLM\Software\Wow6432Node\Logitech] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MimarSinan] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\NVIDIA Corporation] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Orbit] [HKLM\Software\Wow6432Node\Pando Networks] [HKLM\Software\Wow6432Node\Participatory Culture Foundation] [HKLM\Software\Wow6432Node\Peer To Fight] [HKLM\Software\Wow6432Node\Pegasus Imaging] [HKLM\Software\Wow6432Node\Pinnacle Systems] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Protexis] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\SCS Software] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\SmartSound Software] [HKLM\Software\Wow6432Node\Sonic] [HKLM\Software\Wow6432Node\Sony Creative Software] [HKLM\Software\Wow6432Node\Stardock] [HKLM\Software\Wow6432Node\TeamViewer] [HKLM\Software\Wow6432Node\The Document Foundation] [HKLM\Software\Wow6432Node\Ubisoft] [HKLM\Software\Wow6432Node\Ulead Systems] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\cybelsoft] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node\proDAD] [HKLM\Software\Wow6432Node] [HKLM\Software\cybelsoft] ~ Scan Softwares in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 16/01/2013 - 09:16:03 - [34.004] ----D C:\Program Files (x86)\Adobe O43 - CFD: 16/01/2013 - 08:39:24 - [2.984] ----D C:\Program Files (x86)\Adobe Download Assistant O43 - CFD: 15/01/2013 - 13:30:43 - [0] ----D C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 16/01/2013 - 10:58:41 - [34.317] ----D C:\Program Files (x86)\AutoIt3 O43 - CFD: 23/02/2013 - 17:04:54 - [571.040] ----D C:\Program Files (x86)\Common Files O43 - CFD: 23/02/2013 - 17:02:33 - [1683.364] ----D C:\Program Files (x86)\Corel O43 - CFD: 02/02/2013 - 17:56:47 - [26.652] ----D C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 15/01/2013 - 16:25:30 - [39.934] ----D C:\Program Files (x86)\Deluge O43 - CFD: 05/02/2013 - 18:44:02 - [2.486] ----D C:\Program Files (x86)\Easy Thumbnails O43 - CFD: 09/02/2013 - 15:08:34 - [104.742] ----D C:\Program Files (x86)\Element Technologie O43 - CFD: 23/01/2013 - 21:59:54 - [1580.026] ----D C:\Program Files (x86)\Euro Truck Simulator 2 O43 - CFD: 22/01/2013 - 15:42:44 - [0.421] ----D C:\Program Files (x86)\FileHippo.com O43 - CFD: 02/02/2013 - 17:57:53 - [1955.289] ----D C:\Program Files (x86)\Focus Home Interactive O43 - CFD: 19/01/2013 - 07:52:41 - [13.426] ----D C:\Program Files (x86)\Free WebM Encoder O43 - CFD: 16/02/2013 - 09:11:12 - [122.589] ----D C:\Program Files (x86)\HP O43 - CFD: 23/02/2013 - 17:07:48 - [272.614] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 15/01/2013 - 13:43:40 - [36.453] ----D C:\Program Files (x86)\Intel O43 - CFD: 16/02/2013 - 09:32:48 - [4.620] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 22/01/2013 - 15:44:29 - [294.745] ----D C:\Program Files (x86)\LibreOffice 3.6 O43 - CFD: 15/01/2013 - 14:15:23 - [12.242] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 16/02/2013 - 09:11:18 - [37.054] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 13/02/2013 - 14:41:36 - [7.824] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 19/01/2013 - 07:22:38 - [52.502] ----D C:\Program Files (x86)\Mirillis O43 - CFD: 15/01/2013 - 12:53:43 - [0.298] ----D C:\Program Files (x86)\MozBackup O43 - CFD: 19/02/2013 - 17:16:03 - [45.037] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 22/02/2013 - 18:39:56 - [0.212] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 21/02/2013 - 16:40:12 - [43.367] ----D C:\Program Files (x86)\Mozilla Thunderbird O43 - CFD: 17/01/2013 - 12:21:04 - [0.025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 15/01/2013 - 13:05:28 - [31.006] ----D C:\Program Files (x86)\Mumble O43 - CFD: 16/01/2013 - 09:18:34 - [0] ----D C:\Program Files (x86)\My Company Name O43 - CFD: 22/01/2013 - 20:30:25 - [11.863] ----D C:\Program Files (x86)\Notepad++ O43 - CFD: 15/01/2013 - 13:30:43 - [73.055] ----D C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 23/01/2013 - 16:27:40 - [37.767] ----D C:\Program Files (x86)\Orbitdownloader O43 - CFD: 13/02/2013 - 14:16:47 - [7.234] ----D C:\Program Files (x86)\Pando Networks O43 - CFD: 23/01/2013 - 17:12:21 - [42.096] ----D C:\Program Files (x86)\Participatory Culture Foundation O43 - CFD: 26/01/2013 - 20:12:23 - [3.526] ----D C:\Program Files (x86)\PhotoFiltre O43 - CFD: 13/02/2013 - 14:42:25 - [1683.176] ----D C:\Program Files (x86)\Pinnacle O43 - CFD: 17/01/2013 - 09:49:56 - [6.093] ----D C:\Program Files (x86)\Realtek O43 - CFD: 17/01/2013 - 12:21:04 - [36.540] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 15/01/2013 - 18:27:43 - [18.091] R---D C:\Program Files (x86)\Skype O43 - CFD: 22/02/2013 - 20:30:02 - [1.902] ----D C:\Program Files (x86)\Slowin Killer O43 - CFD: 23/02/2013 - 17:07:45 - [21.318] ----D C:\Program Files (x86)\SmartSound Software O43 - CFD: 23/01/2013 - 17:24:16 - [55.423] ----D C:\Program Files (x86)\Sony O43 - CFD: 22/01/2013 - 12:27:04 - [17.411] ----D C:\Program Files (x86)\Stardock O43 - CFD: 14/02/2013 - 19:54:39 - [30.637] ----D C:\Program Files (x86)\TeamViewer O43 - CFD: 17/01/2013 - 09:50:24 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 26/01/2013 - 17:34:23 - [30.374] ----D C:\Program Files (x86)\Twitter O43 - CFD: 19/02/2013 - 20:17:24 - [664.283] ----D C:\Program Files (x86)\Ubisoft O43 - CFD: 16/01/2013 - 10:46:57 - [94.419] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 26/07/2012 - 11:08:59 - [0.870] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 26/07/2012 - 11:08:59 - [5.466] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 23/02/2013 - 17:02:44 - [13.592] ----D C:\Program Files (x86)\Windows Media Components O43 - CFD: 17/01/2013 - 12:20:20 - [3.494] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 26/07/2012 - 09:13:01 - [0.209] ----D C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 26/07/2012 - 09:12:59 - [7.243] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 26/07/2012 - 11:08:59 - [5.226] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 26/07/2012 - 09:13:01 - [0.209] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 26/07/2012 - 09:12:59 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 24/02/2013 - 12:22:32 - [22.912] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 16/01/2013 - 09:19:39 - [472.842] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 16/01/2013 - 08:39:22 - [43.917] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 16/02/2013 - 09:08:23 - [2.453] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 16/02/2013 - 09:08:35 - [1.348] ----D C:\Program Files (x86)\Common Files\HP O43 - CFD: 17/01/2013 - 09:49:49 - [2.009] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 17/01/2013 - 09:59:00 - [0.174] ----D C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 17/01/2013 - 09:52:34 - [0.494] ----D C:\Program Files (x86)\Common Files\LogiShrd O43 - CFD: 15/01/2013 - 13:39:15 - [31.678] ----D C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 13/02/2013 - 14:43:35 - [0.383] ----D C:\Program Files (x86)\Common Files\Pegasus Imaging O43 - CFD: 13/02/2013 - 14:45:03 - [1.394] ----D C:\Program Files (x86)\Common Files\Pinnacle O43 - CFD: 15/01/2013 - 13:39:10 - [0.185] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 23/02/2013 - 17:04:54 - [1.620] ----D C:\Program Files (x86)\Common Files\Protexis O43 - CFD: 16/01/2013 - 09:18:42 - [0.200] ----D C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 26/07/2012 - 09:13:01 - [0.003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 15/01/2013 - 18:27:43 - [2.056] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 16/01/2013 - 09:18:42 - [0.362] ----D C:\Program Files (x86)\Common Files\Sonic Shared O43 - CFD: 16/02/2013 - 09:40:47 - [0.518] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 26/07/2012 - 11:08:59 - [9.406] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 16/01/2013 - 09:26:33 - [259.506] ----D C:\ProgramData\Adobe O43 - CFD: 26/07/2012 - 08:22:08 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 25/01/2013 - 15:12:41 - [16.465] ----D C:\ProgramData\AVAST Software O43 - CFD: 13/02/2013 - 14:41:34 - [0] ----D C:\ProgramData\Avid O43 - CFD: 15/01/2013 - 10:30:06 - [0] --H-D C:\ProgramData\Bureau O43 - CFD: 23/01/2013 - 11:48:39 - [0.000] --H-D C:\ProgramData\Common Files O43 - CFD: 23/02/2013 - 17:04:55 - [26.846] ----D C:\ProgramData\Corel O43 - CFD: 02/02/2013 - 17:57:16 - [0.002] ----D C:\ProgramData\DAEMON Tools Lite O43 - CFD: 26/07/2012 - 08:22:08 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 26/07/2012 - 08:22:08 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 09/02/2013 - 15:08:34 - [0.001] ----D C:\ProgramData\Element Technologie O43 - CFD: 23/02/2013 - 17:07:46 - [0.344] ----D C:\ProgramData\eSellerate O43 - CFD: 16/02/2013 - 09:36:48 - [16.609] ----D C:\ProgramData\HP O43 - CFD: 16/02/2013 - 09:10:50 - [0.009] ----D C:\ProgramData\HP Product Assistant O43 - CFD: 15/01/2013 - 13:39:34 - [0.022] ----D C:\ProgramData\Intel O43 - CFD: 23/02/2013 - 17:05:54 - [0.831] ----D C:\ProgramData\InterVideo O43 - CFD: 17/01/2013 - 09:57:51 - [1.468] ----D C:\ProgramData\Logishrd O43 - CFD: 17/01/2013 - 09:52:04 - [0.011] ----D C:\ProgramData\Logitech O43 - CFD: 16/02/2013 - 11:08:50 - [1.678] ----D C:\ProgramData\ma-config.com O43 - CFD: 15/01/2013 - 14:15:19 - [6.918] ----D C:\ProgramData\Malwarebytes O43 - CFD: 15/01/2013 - 10:30:06 - [0] --H-D C:\ProgramData\Menu Démarrer O43 - CFD: 16/02/2013 - 09:11:32 - [914.316] -S--D C:\ProgramData\Microsoft O43 - CFD: 19/01/2013 - 07:23:11 - [0.000] ----D C:\ProgramData\Mirillis O43 - CFD: 15/01/2013 - 10:30:06 - [0] --H-D C:\ProgramData\Modèles O43 - CFD: 15/01/2013 - 10:38:18 - [0.025] ----D C:\ProgramData\Mozilla O43 - CFD: 20/02/2013 - 18:01:58 - [0.674] ----D C:\ProgramData\NVIDIA O43 - CFD: 15/01/2013 - 11:28:16 - [2.114] ----D C:\ProgramData\NVIDIA Corporation O43 - CFD: 16/01/2013 - 09:29:28 - [0.002] ----D C:\ProgramData\PACE Anti-Piracy O43 - CFD: 17/01/2013 - 12:38:43 - [6.428] ----D C:\ProgramData\Package Cache O43 - CFD: 13/02/2013 - 14:57:22 - [0.005] ----D C:\ProgramData\PCTV Systems O43 - CFD: 13/02/2013 - 14:42:25 - [0.789] ----D C:\ProgramData\Pinnacle O43 - CFD: 13/02/2013 - 14:40:12 - [0.000] ----D C:\ProgramData\PMB Files O43 - CFD: 17/01/2013 - 09:57:13 - [0.039] ----D C:\ProgramData\PRICache O43 - CFD: 23/02/2013 - 17:10:05 - [0.002] ----D C:\ProgramData\Protexis O43 - CFD: 16/01/2013 - 09:26:32 - [0.002] ----D C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 15/01/2013 - 10:18:22 - [0.001] ----D C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 15/01/2013 - 18:27:44 - [20.612] ----D C:\ProgramData\Skype O43 - CFD: 23/02/2013 - 17:07:48 - [130.407] ----D C:\ProgramData\SmartSound Software Inc O43 - CFD: 31/01/2013 - 18:45:50 - [0] ----D C:\ProgramData\Sony O43 - CFD: 15/01/2013 - 16:28:20 - [0.001] ----D C:\ProgramData\Stardock O43 - CFD: 26/07/2012 - 08:22:08 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 26/07/2012 - 08:22:08 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 16/02/2013 - 09:36:59 - [0.000] ----D C:\ProgramData\WEBREG O43 - CFD: 23/02/2013 - 09:49:58 - [6.261] --H-D C:\ProgramData\{A3A26C56-02C3-4F76-A033-12EE2FB52AE6} O43 - CFD: 23/02/2013 - 14:36:53 - [81.450] ----D C:\Users\FightVirtu\AppData\Roaming\.minecraft O43 - CFD: 16/02/2013 - 13:04:31 - [68.089] ----D C:\Users\FightVirtu\AppData\Roaming\.minecraft - Copie O43 - CFD: 16/01/2013 - 09:29:37 - [1042.190] ----D C:\Users\FightVirtu\AppData\Roaming\Adobe O43 - CFD: 16/01/2013 - 08:39:25 - [0.014] ----D C:\Users\FightVirtu\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant O43 - CFD: 23/02/2013 - 17:08:59 - [7.748] ----D C:\Users\FightVirtu\AppData\Roaming\Corel O43 - CFD: 02/02/2013 - 17:57:17 - [1.314] ----D C:\Users\FightVirtu\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 23/02/2013 - 09:49:20 - [0.141] ----D C:\Users\FightVirtu\AppData\Roaming\deluge O43 - CFD: 05/02/2013 - 18:52:17 - [0.002] ----D C:\Users\FightVirtu\AppData\Roaming\Easy Thumbnails O43 - CFD: 09/02/2013 - 15:09:03 - [0.000] ----D C:\Users\FightVirtu\AppData\Roaming\Element Technologie O43 - CFD: 12/02/2013 - 18:45:06 - [0.025] ----D C:\Users\FightVirtu\AppData\Roaming\FileZilla O43 - CFD: 15/01/2013 - 12:07:40 - [0.000] ----D C:\Users\FightVirtu\AppData\Roaming\FreeMemory O43 - CFD: 01/02/2013 - 18:48:04 - [135.869] ----D C:\Users\FightVirtu\AppData\Roaming\GameMaker-Studio O43 - CFD: 17/02/2013 - 19:54:31 - [0.245] ----D C:\Users\FightVirtu\AppData\Roaming\HP O43 - CFD: 23/02/2013 - 09:48:56 - [0.001] ----D C:\Users\FightVirtu\AppData\Roaming\HpUpdate O43 - CFD: 15/01/2013 - 13:34:14 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\InstallShield O43 - CFD: 16/01/2013 - 08:15:42 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Intel Corporation O43 - CFD: 17/01/2013 - 09:52:35 - [0.000] ----D C:\Users\FightVirtu\AppData\Roaming\Leadertech O43 - CFD: 22/01/2013 - 15:49:12 - [2.224] ----D C:\Users\FightVirtu\AppData\Roaming\LibreOffice O43 - CFD: 17/01/2013 - 09:48:25 - [0.094] ----D C:\Users\FightVirtu\AppData\Roaming\Logishrd O43 - CFD: 17/01/2013 - 09:57:46 - [0.004] ----D C:\Users\FightVirtu\AppData\Roaming\Logitech O43 - CFD: 15/01/2013 - 10:46:13 - [0.063] ----D C:\Users\FightVirtu\AppData\Roaming\Macromedia O43 - CFD: 15/01/2013 - 14:15:26 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Malwarebytes O43 - CFD: 15/01/2013 - 10:18:22 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Media Center Programs O43 - CFD: 01/02/2013 - 18:48:03 - [2.159] -S--D C:\Users\FightVirtu\AppData\Roaming\Microsoft O43 - CFD: 19/01/2013 - 07:23:11 - [0.000] ----D C:\Users\FightVirtu\AppData\Roaming\Mirillis O43 - CFD: 15/01/2013 - 10:38:31 - [42.567] ----D C:\Users\FightVirtu\AppData\Roaming\Mozilla O43 - CFD: 24/02/2013 - 12:18:36 - [1.423] ----D C:\Users\FightVirtu\AppData\Roaming\Mumble O43 - CFD: 22/01/2013 - 20:33:56 - [0.425] ----D C:\Users\FightVirtu\AppData\Roaming\Notepad++ O43 - CFD: 17/01/2013 - 12:39:40 - [0.528] ----D C:\Users\FightVirtu\AppData\Roaming\NVIDIA O43 - CFD: 29/01/2013 - 17:00:04 - [0.203] ----D C:\Users\FightVirtu\AppData\Roaming\OBS O43 - CFD: 23/02/2013 - 19:53:29 - [7.142] ----D C:\Users\FightVirtu\AppData\Roaming\Orbit O43 - CFD: 16/01/2013 - 09:29:28 - [0.002] ----D C:\Users\FightVirtu\AppData\Roaming\PACE Anti-Piracy O43 - CFD: 26/01/2013 - 20:20:55 - [0.001] ----D C:\Users\FightVirtu\AppData\Roaming\PhotoFiltre O43 - CFD: 15/01/2013 - 10:47:06 - [0.000] ----D C:\Users\FightVirtu\AppData\Roaming\ProgSense O43 - CFD: 23/01/2013 - 17:26:22 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Publish Providers O43 - CFD: 24/02/2013 - 12:14:22 - [6.924] ----D C:\Users\FightVirtu\AppData\Roaming\Skype O43 - CFD: 23/01/2013 - 17:26:20 - [0.022] ----D C:\Users\FightVirtu\AppData\Roaming\Sony O43 - CFD: 31/01/2013 - 18:38:44 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Sony Creative Software Inc O43 - CFD: 20/01/2013 - 15:11:28 - [0.853] ----D C:\Users\FightVirtu\AppData\Roaming\Spotflux O43 - CFD: 22/01/2013 - 12:27:06 - [2.778] ----D C:\Users\FightVirtu\AppData\Roaming\Stardock O43 - CFD: 14/02/2013 - 19:55:51 - [0.043] ----D C:\Users\FightVirtu\AppData\Roaming\TeamViewer O43 - CFD: 15/01/2013 - 12:38:09 - [152.833] ----D C:\Users\FightVirtu\AppData\Roaming\Thunderbird O43 - CFD: 23/02/2013 - 19:43:41 - [48.100] ----D C:\Users\FightVirtu\AppData\Roaming\Ulead Systems O43 - CFD: 24/02/2013 - 11:25:57 - [16.464] ----D C:\Users\FightVirtu\AppData\Roaming\vlc O43 - CFD: 16/01/2013 - 20:33:15 - [2.309] ----D C:\Users\FightVirtu\AppData\Local\Adobe O43 - CFD: 15/01/2013 - 10:31:18 - [0] ----D C:\Users\FightVirtu\AppData\Local\Application Data O43 - CFD: 13/02/2013 - 14:59:01 - [115.485] ----D C:\Users\FightVirtu\AppData\Local\Avid O43 - CFD: 15/02/2013 - 18:48:50 - [0] ----D C:\Users\FightVirtu\AppData\Local\Diagnostics O43 - CFD: 17/02/2013 - 09:42:05 - [0] ----D C:\Users\FightVirtu\AppData\Local\Downloaded Installations O43 - CFD: 09/02/2013 - 15:08:34 - [2.350] ----D C:\Users\FightVirtu\AppData\Local\Element Technologie O43 - CFD: 17/02/2013 - 18:56:39 - [0.059] ----D C:\Users\FightVirtu\AppData\Local\ElevatedDiagnostics O43 - CFD: 02/02/2013 - 17:57:58 - [70.383] ----D C:\Users\FightVirtu\AppData\Local\Focus Home Interactive O43 - CFD: 01/02/2013 - 18:48:33 - [0.008] ----D C:\Users\FightVirtu\AppData\Local\GameMaker-Studio O43 - CFD: 15/01/2013 - 10:31:18 - [0] ----D C:\Users\FightVirtu\AppData\Local\Historique O43 - CFD: 17/02/2013 - 19:54:30 - [0.046] ----D C:\Users\FightVirtu\AppData\Local\HP O43 - CFD: 16/01/2013 - 09:29:28 - [0.001] --H-D C:\Users\FightVirtu\AppData\Local\HZ2l97M0dnELV O43 - CFD: 15/01/2013 - 10:46:13 - [0] ----D C:\Users\FightVirtu\AppData\Local\Macromedia O43 - CFD: 16/02/2013 - 20:22:10 - [431.330] ----D C:\Users\FightVirtu\AppData\Local\Microsoft O43 - CFD: 19/01/2013 - 07:23:11 - [0.000] ----D C:\Users\FightVirtu\AppData\Local\Mirillis O43 - CFD: 15/01/2013 - 10:38:26 - [42.528] ----D C:\Users\FightVirtu\AppData\Local\Mozilla O43 - CFD: 12/02/2013 - 16:45:06 - [0.743] ----D C:\Users\FightVirtu\AppData\Local\O&O O43 - CFD: 16/01/2013 - 09:29:28 - [0] ----D C:\Users\FightVirtu\AppData\Local\PACE Anti-Piracy O43 - CFD: 22/01/2013 - 12:26:53 - [0] ----D C:\Users\FightVirtu\AppData\Local\PackageAware O43 - CFD: 15/01/2013 - 10:35:26 - [75.130] ----D C:\Users\FightVirtu\AppData\Local\Packages O43 - CFD: 13/02/2013 - 14:16:42 - [5.370] ----D C:\Users\FightVirtu\AppData\Local\Pando_Temp O43 - CFD: 13/02/2013 - 14:20:11 - [1901.422] ----D C:\Users\FightVirtu\AppData\Local\Pinnacle O43 - CFD: 24/02/2013 - 12:24:37 - [0.226] ----D C:\Users\FightVirtu\AppData\Local\PMB Files O43 - CFD: 15/01/2013 - 14:15:10 - [0] ----D C:\Users\FightVirtu\AppData\Local\Programs O43 - CFD: 20/02/2013 - 11:36:27 - [1.840] ----D C:\Users\FightVirtu\AppData\Local\PunkBuster O43 - CFD: 23/01/2013 - 17:26:20 - [5.699] ----D C:\Users\FightVirtu\AppData\Local\Sony O43 - CFD: 25/01/2013 - 21:03:24 - [0.001] ----D C:\Users\FightVirtu\AppData\Local\Stardock_Corporation O43 - CFD: 24/02/2013 - 12:20:59 - [63.530] ----D C:\Users\FightVirtu\AppData\Local\Temp O43 - CFD: 15/01/2013 - 10:31:18 - [0] ----D C:\Users\FightVirtu\AppData\Local\Temporary Internet Files O43 - CFD: 19/02/2013 - 19:55:21 - [5.667] ----D C:\Users\FightVirtu\AppData\Local\Thunderbird O43 - CFD: 26/01/2013 - 17:34:47 - [0.021] ----D C:\Users\FightVirtu\AppData\Local\twitter O43 - CFD: 20/02/2013 - 11:32:07 - [0.001] ----D C:\Users\FightVirtu\AppData\Local\Ubisoft Game Launcher O43 - CFD: 06/02/2013 - 12:58:07 - [0.047] ----D C:\Users\FightVirtu\AppData\Local\VirtualStore O43 - CFD: 01/02/2013 - 18:48:07 - [0.000] ----D C:\Users\FightVirtu\AppData\Local\YoYo_Games_Ltd O43 - CFD: 26/07/2012 - 09:13:00 - [0.004] R---D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 26/07/2012 - 09:13:00 - [0.001] R---D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 19/02/2013 - 14:44:20 - [0.000] R---D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 01/02/2013 - 18:47:21 - [0.006] ----D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameMaker-Studio 1.1 O43 - CFD: 26/07/2012 - 09:13:00 - [0.000] ----D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 22/01/2013 - 20:30:24 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 26/01/2013 - 20:12:23 - [0] ----D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 23/02/2013 - 09:47:53 - [0.001] R---D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/07/2012 - 09:13:00 - [0.005] R---D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 26/01/2013 - 17:34:24 - [0.003] ----D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TweetDeck O43 - CFD: 19/02/2013 - 20:14:49 - [0.002] ----D C:\Users\FightVirtu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft ~ Scan Program Folder in 01mn 43s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.D33059D0BA888CD2B8B1C3E5045FD629] - 24/02/2013 - 09:30:58 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1912255] O44 - LFC:[MD5.4B56E2BB31EE41152398746A69BDCEC6] - 24/02/2013 - 09:20:17 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.ABAD5904075534C5B0C821AEA2FE6220] - 23/02/2013 - 17:07:30 ---A- . (...) -- C:\Windows\wmsetup.log [565] O44 - LFC:[MD5.F7DE9002BE1ED5D9F6B45F0057DE2A8C] - 23/02/2013 - 17:07:10 ---A- . (...) -- C:\Windows\wininit.ini [110] O44 - LFC:[MD5.A94BE2FA4ED6A1E24B8456AB9DDF753A] - 23/02/2013 - 17:02:31 ---A- . (...) -- C:\Windows\DirectX.log [310357] O44 - LFC:[MD5.2724A50125C490AECB4FC53D70A7AC18] - 23/02/2013 - 15:27:14 ---A- . (...) -- C:\Windows\capsys184523.log [20] O44 - LFC:[MD5.E7EA7546F149099EC08344C93452841F] - 23/02/2013 - 15:27:14 ---A- . (...) -- C:\Windows\windefendam.log [2720] O44 - LFC:[MD5.7C1BF76328E84472EFFC54B416EDC309] - 23/02/2013 - 14:05:48 ---A- . (...) -- C:\AdwCleaner[R1].txt [1569] O44 - LFC:[MD5.18545454F6A358FB7F5F6AF9E7ECB884] - 23/02/2013 - 09:56:22 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\perfc009.dat [7569184] O44 - LFC:[MD5.A8E61804215613F55397DF8216440308] - 23/02/2013 - 09:56:22 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\perfc00C.dat [7569184] O44 - LFC:[MD5.C431DE7497B363E549C05C07C33B29E0] - 23/02/2013 - 09:56:22 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\perfh009.dat [7569184] O44 - LFC:[MD5.399334218FE9DC9D343422FB51284881] - 23/02/2013 - 09:56:22 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\perfh00C.dat [7569184] O44 - LFC:[MD5.DD40E36193E78C31BF6666E35446BF7F] - 23/02/2013 - 09:56:22 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1796784] O44 - LFC:[MD5.18545454F6A358FB7F5F6AF9E7ECB884] - 23/02/2013 - 09:56:22 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [132952] O44 - LFC:[MD5.A8E61804215613F55397DF8216440308] - 23/02/2013 - 09:56:22 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [155980] O44 - LFC:[MD5.C431DE7497B363E549C05C07C33B29E0] - 23/02/2013 - 09:56:22 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [711084] O44 - LFC:[MD5.399334218FE9DC9D343422FB51284881] - 23/02/2013 - 09:56:22 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [800774] O44 - LFC:[MD5.DD40E36193E78C31BF6666E35446BF7F] - 23/02/2013 - 09:56:22 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1796784] O44 - LFC:[MD5.108EBBB6655F42A6478370B7BB36DC35] - 23/02/2013 - 09:51:27 ---A- . (...) -- C:\Windows\PFRO.log [9758] O44 - LFC:[MD5.71CD160053A8D4A3BAEE1B2F90AFE0DB] - 20/02/2013 - 18:02:04 ---A- . (...) -- C:\Windows\setupact.log [7353] O44 - LFC:[MD5.9FCC07C6A76DF5FDACE85E1033715A2B] - 20/02/2013 - 17:59:52 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvhdap64.dll [2911008] O44 - LFC:[MD5.9FCC07C6A76DF5FDACE85E1033715A2B] - 20/02/2013 - 17:59:52 ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\SysNative\nvhdap64.dll [31672] O44 - LFC:[MD5.AEA1E52571ED86B146E1DFA1F79B875C] - 17/02/2013 - 09:44:53 . (...) -- C:\Windows\System32\FNTCACHE.DAT [] O44 - LFC:[MD5.AEA1E52571ED86B146E1DFA1F79B875C] - 17/02/2013 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [5014952] O44 - LFC:[MD5.1F6AFE28D246781B440A9EF3B0BF6374] - 16/02/2013 - 09:36:43 ---A- . (...) -- C:\Windows\hpoins36.dat [197803] O44 - LFC:[MD5.1B45DDDD3C86EAA4A2953F231A6AF6D8] - 16/02/2013 - 09:35:27 ---A- . (...) -- C:\Windows\win.ini [127] O44 - LFC:[MD5.1830828B9F8B6E800C9CB915B26D7D2D] - 16/02/2013 - 09:07:35 ---A- . (.Hewlett-Packard Company - LanguageMonitor.) -- C:\Windows\SysNative\hpf3l083.dll [134144] O44 - LFC:[MD5.43002008ECCA06A1C2D1B2F70E04C5E3] - 16/02/2013 - 09:05:47 ---A- . (.Hewlett-Packard - HP Installer Coinstaller.) -- C:\Windows\SysNative\HPZIDS40.dll [362328] O44 - LFC:[MD5.AE7F79B2040DDE54DB86B2D4FDCC2E7F] - 16/02/2013 - 09:05:46 ---A- . (.Hewlett-Packard - Hewlett-Packard WIA minidriver..) -- C:\Windows\SysNative\hposwia_p02b.dll [966656] O44 - LFC:[MD5.F51191286BA9E55E42768AA7C989770F] - 16/02/2013 - 09:05:46 ---A- . (.Hewlett-Packard Co. - HP AiO Scan Driver - iop.) -- C:\Windows\SysNative\hpost_p02b.dll [1411584] O44 - LFC:[MD5.B4BC57724A5BD890D0546E68AB36B88A] - 16/02/2013 - 09:05:46 ---A- . (.Hewlett-Packard Co. - HP Scan VendorSetup/Co-Installer.) -- C:\Windows\SysNative\hposc_p02a.dll [512512] O44 - LFC:[MD5.E5F9E23D62F6A37ACE55FF2AEBDADB28] - 10/02/2013 - 09:44:17 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.D57AF5AD9D5983552470667BDCEBFC82] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvumdshimx.dll [7569184] O44 - LFC:[MD5.932948AED68916A8FF313050A85396EC] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvwgf2umx.dll [7569184] O44 - LFC:[MD5.DF870214B9551EED01CB2F5F4D892A97] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvd3dumx.dll [2911008] O44 - LFC:[MD5.4ED76EF4A4B43D01D5411176BC09E602] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvdispco6420294.dll [2911008] O44 - LFC:[MD5.AB42C0D21C1FC23A60CE5D29B2A53EC5] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvdispgenco6420162.dll [2911008] O44 - LFC:[MD5.A3EEBCCF608F94D52F7CBEF520BD90F5] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvinfo.pb [2911008] O44 - LFC:[MD5.0593A090E49B5323DBCF8EF232281910] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvinitx.dll [2911008] O44 - LFC:[MD5.5A1F71CAB0B6116E597C0A656A4E5C37] - 10/02/2013 - 04:25:27 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvoglv64.dll [2911008] O44 - LFC:[MD5.A3EEBCCF608F94D52F7CBEF520BD90F5] - 10/02/2013 - 04:25:27 ---A- . (...) -- C:\Windows\SysNative\nvinfo.pb [17738] O44 - LFC:[MD5.4ED76EF4A4B43D01D5411176BC09E602] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\Windows\SysNative\nvdispco6420294.dll [1807136] O44 - LFC:[MD5.AB42C0D21C1FC23A60CE5D29B2A53EC5] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\SysNative\nvdispgenco6420162.dll [1510176] O44 - LFC:[MD5.25DDDEECDDBB017F4630464F6E217848] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\SysNative\nvcuda.dll [9422672] O44 - LFC:[MD5.16CA336B82E53F77FCF7FC610EA56EC9] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\SysNative\nvopencl.dll [7569184] O44 - LFC:[MD5.25DDDEECDDBB017F4630464F6E217848] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvcuda.dll [9422672] O44 - LFC:[MD5.16CA336B82E53F77FCF7FC610EA56EC9] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvopencl.dll [7569184] O44 - LFC:[MD5.20A7BAA5A76C0359582DD4E185C3ABDB] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\SysNative\nvcuvid.dll [2911008] O44 - LFC:[MD5.20A7BAA5A76C0359582DD4E185C3ABDB] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvcuvid.dll [2911008] O44 - LFC:[MD5.02F39AFF6D05B042772930FF889996D8] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 314.07.) -- C:\Windows\SysNative\nvcuvenc.dll [2350368] O44 - LFC:[MD5.02F39AFF6D05B042772930FF889996D8] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 314.07.) -- C:\Windows\System32\nvcuvenc.dll [2350368] O44 - LFC:[MD5.5A1F71CAB0B6116E597C0A656A4E5C37] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\SysNative\nvoglv64.dll [26947360] O44 - LFC:[MD5.86B32CD237A49AB47F5EC1C4A4824A23] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 314.07.) -- C:\Windows\SysNative\nvcompiler.dll [25256736] O44 - LFC:[MD5.86B32CD237A49AB47F5EC1C4A4824A23] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 314.07.) -- C:\Windows\System32\nvcompiler.dll [25256736] O44 - LFC:[MD5.D57AF5AD9D5983552470667BDCEBFC82] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA D3D Shim Driver, Version 314.07.) -- C:\Windows\SysNative\nvumdshimx.dll [1114144] O44 - LFC:[MD5.932948AED68916A8FF313050A85396EC] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA D3D10 Driver, Version 314.07.) -- C:\Windows\SysNative\nvwgf2umx.dll [15275744] O44 - LFC:[MD5.E1A338F5FFCCF448321F311134CE29BD] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA NVAPI Library, Version 314.07.) -- C:\Windows\SysNative\nvapi64.dll [2854344] O44 - LFC:[MD5.DF870214B9551EED01CB2F5F4D892A97] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 314.07.) -- C:\Windows\SysNative\nvd3dumx.dll [17987192] O44 - LFC:[MD5.0593A090E49B5323DBCF8EF232281910] - 10/02/2013 - 04:25:27 ---A- . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 314.) -- C:\Windows\SysNative\nvinitx.dll [250504] O44 - LFC:[MD5.63AA7097E18EB8086C35748DD39D4DF2] - 10/02/2013 - 02:04:31 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvsvc64.dll [7569184] O44 - LFC:[MD5.C0D3EE2E78D6927ECCDDFE2493E4C053] - 10/02/2013 - 02:04:31 . (.NVIDIA Corporation - NVIDIA Compiler, Version 314.07.) -- C:\Windows\System32\nvcpl.dll [25256736] O44 - LFC:[MD5.C0D3EE2E78D6927ECCDDFE2493E4C053] - 10/02/2013 - 02:04:31 ---A- . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\Windows\SysNative\nvcpl.dll [6393120] O44 - LFC:[MD5.63AA7097E18EB8086C35748DD39D4DF2] - 10/02/2013 - 02:04:31 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 314.0.) -- C:\Windows\SysNative\nvsvc64.dll [3472672] O44 - LFC:[MD5.BDD4F43AA50046957D6F6DBDD4508602] - 10/02/2013 - 02:04:29 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvshext.dll [7569184] O44 - LFC:[MD5.1ACDF222FD53B1DB13E6272676660482] - 10/02/2013 - 02:04:29 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvsvcr.dll [7569184] O44 - LFC:[MD5.574087EA9105F23FB522A4FDDD5292D9] - 10/02/2013 - 02:04:29 . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.07.) -- C:\Windows\System32\nvvsvc.exe [7569184] O44 - LFC:[MD5.D379287B52D7ABF063F621120921BE37] - 10/02/2013 - 02:04:29 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.0.) -- C:\Windows\System32\nvmctray.dll [2911008] O44 - LFC:[MD5.BDD4F43AA50046957D6F6DBDD4508602] - 10/02/2013 - 02:04:29 ---A- . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\Windows\SysNative\nvshext.dll [63776] O44 - LFC:[MD5.1ACDF222FD53B1DB13E6272676660482] - 10/02/2013 - 02:04:29 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 314.0.) -- C:\Windows\SysNative\nvsvcr.dll [2555680] O44 - LFC:[MD5.574087EA9105F23FB522A4FDDD5292D9] - 10/02/2013 - 02:04:29 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 314.0.) -- C:\Windows\SysNative\nvvsvc.exe [877856] O44 - LFC:[MD5.D379287B52D7ABF063F621120921BE37] - 10/02/2013 - 02:04:29 ---A- . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\Windows\SysNative\nvmctray.dll [237856] O44 - LFC:[MD5.E823FF35FB1BD34A3842FFB7DD7BE163] - 09/02/2013 - 14:25:36 . (.NVIDIA Corporation - NVIDIA Compiler, Version 314.07.) -- C:\Windows\System32\nvcoproc.bin [25256736] O44 - LFC:[MD5.E823FF35FB1BD34A3842FFB7DD7BE163] - 09/02/2013 - 14:25:36 ---A- . (...) -- C:\Windows\SysNative\nvcoproc.bin [3035306] O44 - LFC:[MD5.79FE8418CD57C9E2BDDC2FB0CC2BFB05] - 10/01/2013 - 00:23:05 . (...) -- C:\Windows\System32\samsrv.dll [1796784] O44 - LFC:[MD5.4CA4361F9C6FA21B65821AD74D0CD081] - 05/01/2013 - 01:08:04 . (...) -- C:\Windows\System32\ApnDatabase.xml [] O44 - LFC:[MD5.4CA4361F9C6FA21B65821AD74D0CD081] - 05/01/2013 - 01:08:04 ---A- . (...) -- C:\Windows\SysNative\ApnDatabase.xml [386577] O44 - LFC:[MD5.D87775F050DD29AADDF479F5C17E4200] - 02/11/2012 - 06:18:06 . (...) -- C:\Windows\System32\adhapi.dll [] O44 - LFC:[MD5.0E2BB2E43DCCE4ED986BF3B8641DFC08] - 02/11/2012 - 06:18:06 . (...) -- C:\Windows\System32\adhsvc.dll [] O44 - LFC:[MD5.416BA52463D7AC71E6216A400D8CAD6E] - 27/09/2012 - 12:41:29 ----- . (...) -- C:\Windows\hpomdl36.dat [462] ~ Scan Files in 01mn 43s ---\\ Export de clé d'application autorisée (O47) O47 - AAKE:Key Export SP - "C:\Program Files (x86)\Orbitdownloader\orbitdm.exe" [Enabled] .(.Orbitdownloader.com - Orbit Downloader.) -- C:\Program Files (x86)\Orbitdownloader\orbitdm.exe O47 - AAKE:Key Export SP - "C:\Program Files (x86)\Orbitdownloader\orbitnet.exe" [Enabled] .(.Orbitdownloader.com - P2P service of Orbit Downloader.) -- C:\Program Files (x86)\Orbitdownloader\orbitnet.exe ~ Scan Keys in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll ~ Scan Keys in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ Scan CSB in 00mn 00s ---\\ MountPoints2 Shell Key (O51) O51 - MPSK:{0bdbd731-30cc-11e2-be6a-005056c00008}\AutoRun\command. (...) -- J:\autorun.exe (.not file.) ~ Scan Keys in 00mn 00s ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"VIDC.FICV"="ficvdec_x64.dll" . (...) -- C:\Windows\System32\ficvdec_x64.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ Scan Keys in 00mn 00s ---\\ ShareTools MSconfig StartupReg (O53) (None) ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 ~ Scan Keys in 00mn 00s ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736] ~ Scan Drivers in 00mn 00s ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.3.5 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ Scan ADS in 00mn 00s ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ Scan Keys in 00mn 00s ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Scan Keys in 00mn 00s ---\\ Search Browser Infection (O69) O69 - SBI: prefs.js [FightVirtu - tz7eflj5.default] user_pref("weboftrust.search.ask.display", "Ask.com Web Search"); O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} - (AVG Secure Search) - http://isearch.avg.com ~ Scan Keys in 00mn 00s ---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [190976] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [309248] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1366016] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1071104] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99840] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [358400] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [62976] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [438784] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [305664] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [3345920] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [826368] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [894464] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [69632] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151552] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [105472] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1282560] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [219648] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [80896] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [291328] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [97792] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [190976] O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1964544] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [47104] O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207872] O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [161792] O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [178176] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [187392] ~ Scan Services in 00mn 01s ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.AAA7D53D228E76B4291AC61E987BB058] [SPRF][23/02/2013] (.AVG Technologies CZ, s.r.o. - AVG UID module.) -- C:\Users\FightVirtu\AppData\Local\Temp\avguidx.dll [247808] [MD5.B486427F30F3CA75465651F455786C90] [SPRF][23/02/2013] (.Pas de propriétaire - MachineIdCreator Application.) -- C:\Users\FightVirtu\AppData\Local\Temp\MachineIdCreator.exe [162176] [MD5.F8B752B674B40F588EF061EB3EF55777] [SPRF][23/02/2013] (.Pas de propriétaire - AVG Installer.) -- C:\Users\FightVirtu\AppData\Local\Temp\oi_{52139028-3C31-4551-95DC-3D879AC031C6}.exe [3085904] [MD5.B63CCB43F2779CBEA5D8D3CE2E3D90FB] [SPRF][17/01/2013] (...) -- C:\Users\FightVirtu\Desktop\Minecraft.exe [263186] ~ Scan Files in 00mn 01s ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "Collab-P2PHost-In-TCP" |In - None - P6 - TRUE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.) O87 - FAEL: "Collab-P2PHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.) O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.) O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.) O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "TCP Query User{2CDC7DC1-AB82-469E-A50E-530637E346A5}C:\program files (x86)\orbitdownloader\orbitnet.exe" | In - Public - P6 - TRUE | .(.Orbitdownloader.com.) -- C:\program files (x86)\orbitdownloader\orbitnet.exe O87 - FAEL: "UDP Query User{220A9C21-3DE5-461F-B64A-3CD9817A9135}C:\program files (x86)\orbitdownloader\orbitnet.exe" | In - Public - P17 - TRUE | .(.Orbitdownloader.com.) -- C:\program files (x86)\orbitdownloader\orbitnet.exe O87 - FAEL: "TCP Query User{747AC669-688D-4C7D-8741-5BC1A0A1FAB7}C:\program files (x86)\orbitdownloader\orbitnet.exe" | In - Private - P6 - TRUE | .(.Orbitdownloader.com.) -- C:\program files (x86)\orbitdownloader\orbitnet.exe O87 - FAEL: "UDP Query User{029A356F-9F77-4B55-A3D9-7C25E27EE9C6}C:\program files (x86)\orbitdownloader\orbitnet.exe" | In - Private - P17 - TRUE | .(.Orbitdownloader.com.) -- C:\program files (x86)\orbitdownloader\orbitnet.exe O87 - FAEL: "{F9F1AD08-3E9F-4FE7-B4C4-34FEBD5C35A4}" | In - Private - P6 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win.) -- E:\Steam\Steam.exe O87 - FAEL: "{E9C3E114-72C1-4C3D-A5B2-05955525CB33}" | In - Private - P17 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win.) -- E:\Steam\Steam.exe O87 - FAEL: "{E488F61B-F44F-48B2-ADB9-DE191D1499CE}" | In - Private - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe O87 - FAEL: "{9DEA8002-1877-44A1-92F4-94D08AA4D5AE}" | In - Private - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe O87 - FAEL: "{B15DDED7-1D28-480E-B890-9A028FE77F9F}" | In - Private - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "{C0BB9DD1-1339-42B0-8E78-D8492F961817}" | In - Private - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "TCP Query User{19DA945D-0160-464F-93CF-C005D27560CF}E:\steam\steamapps\virtualobx\team fortress 2\hl2.exe" | In - Private - P6 - TRUE | .(...) -- E:\steam\steamapps\virtualobx\team fortress 2\hl2.exe O87 - FAEL: "UDP Query User{561A422B-A50D-4A85-9CF4-EED2724400F5}E:\steam\steamapps\virtualobx\team fortress 2\hl2.exe" | In - Private - P17 - TRUE | .(...) -- E:\steam\steamapps\virtualobx\team fortress 2\hl2.exe O87 - FAEL: "TCP Query User{F8A59A82-B440-4E0D-91FF-E9EADC2075E3}C:\users\fightvirtu\desktop\serveur_tf2\server\orangebox\srcds.exe" |In - Private - P6 - TRUE | .(...) -- C:\users\fightvirtu\desktop\serveur_tf2\server\orangebox\srcds.exe (.not file.) O87 - FAEL: "UDP Query User{09B410C0-3F34-485D-9D40-76028958DD7E}C:\users\fightvirtu\desktop\serveur_tf2\server\orangebox\srcds.exe" |In - Private - P17 - TRUE | .(...) -- C:\users\fightvirtu\desktop\serveur_tf2\server\orangebox\srcds.exe (.not file.) O87 - FAEL: "TCP Query User{8D33499A-4EB1-4BA1-B3F4-3595D16C804D}C:\program files (x86)\deluge\deluge.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\deluge\deluge.exe O87 - FAEL: "UDP Query User{A804C320-5207-4F1B-A087-9E07F4BBE33F}C:\program files (x86)\deluge\deluge.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\deluge\deluge.exe O87 - FAEL: "{7E36E5F5-B1B0-4FA4-8F2F-A9757803A82A}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O87 - FAEL: "TCP Query User{C006F15A-A814-49DA-86F5-47C6A115978E}C:\program files (x86)\orbitdownloader\orbitdm.exe" | In - Private - P6 - TRUE | .(.Orbitdownloader.com - Orbit Downloader.) -- C:\program files (x86)\orbitdownloader\orbitdm.exe O87 - FAEL: "UDP Query User{8432624D-6DDE-4B99-9123-CC4456DBA003}C:\program files (x86)\orbitdownloader\orbitdm.exe" | In - Private - P17 - TRUE | .(.Orbitdownloader.com - Orbit Downloader.) -- C:\program files (x86)\orbitdownloader\orbitdm.exe O87 - FAEL: "{27E6ED6F-E9E2-4918-A5BC-88A2B42D82D2}" |In - Public - P6 - TRUE | .(...) -- E:\Steam\SteamApps\common\APB Reloaded\Binaries\APB.exe (.not file.) O87 - FAEL: "{D751AAC9-95A5-4760-9543-80899FC2CFA6}" |In - Public - P17 - TRUE | .(...) -- E:\Steam\SteamApps\common\APB Reloaded\Binaries\APB.exe (.not file.) O87 - FAEL: "{FAC63C57-56E0-4DF9-9012-D9A98A3CCF3E}" |In - Public - P6 - TRUE | .(...) -- E:\Steam\SteamApps\common\APB Reloaded\Binaries\VivoxVoiceService.exe (.not file.) O87 - FAEL: "{83B54E07-410E-43F2-A673-097C8D22A5B4}" |In - Public - P17 - TRUE | .(...) -- E:\Steam\SteamApps\common\APB Reloaded\Binaries\VivoxVoiceService.exe (.not file.) O87 - FAEL: "TCP Query User{A1D7BE70-BF8F-4830-B693-EFA6C100BA2D}C:\program files\java\jre7\bin\javaw.exe" | In - Private - P6 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre7\bin\javaw.exe O87 - FAEL: "UDP Query User{163185FD-78A8-4EBF-BCB6-6BF92693DD8C}C:\program files\java\jre7\bin\javaw.exe" | In - Private - P17 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre7\bin\javaw.exe O87 - FAEL: "{0B564AF6-191A-4B68-ACFB-9E4A7A84EFA3}" | In - Public - P17 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre7\bin\javaw.exe O87 - FAEL: "{8A751CB1-5A60-4ABF-B350-5100AD6ABD5A}" | In - Public - P6 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre7\bin\javaw.exe O87 - FAEL: "{56B02CB3-C452-439A-BED3-AC5C299A2BD6}" | In - Public - P6 - TRUE | .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II.) -- E:\Steam\SteamApps\common\Call of Duty Black Ops II\t6sp.exe O87 - FAEL: "{3E452A35-CC70-499B-93B6-776991D02EEA}" | In - Public - P17 - TRUE | .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II.) -- E:\Steam\SteamApps\common\Call of Duty Black Ops II\t6sp.exe O87 - FAEL: "TCP Query User{AAECCC09-B5FE-49CF-850F-123BD90419A0}C:\program files (x86)\deluge\deluge.exe" | In - Public - P6 - TRUE | .(...) -- C:\program files (x86)\deluge\deluge.exe O87 - FAEL: "UDP Query User{FC650E63-020F-4F5B-94C7-58780336E84E}C:\program files (x86)\deluge\deluge.exe" | In - Public - P17 - TRUE | .(...) -- C:\program files (x86)\deluge\deluge.exe O87 - FAEL: "TCP Query User{AFAD4F01-2BE2-4A9C-926B-AE58B8A3CB5C}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P6 - TRUE | .(.VideoLAN - VLC media player 2.0.5.) -- C:\program files (x86)\videolan\vlc\vlc.exe O87 - FAEL: "UDP Query User{8AF237C6-8E44-4DDB-9F6E-197C1DFE38F0}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P17 - TRUE | .(.VideoLAN - VLC media player 2.0.5.) -- C:\program files (x86)\videolan\vlc\vlc.exe O87 - FAEL: "{478B3180-CFF4-4F6F-9D4C-B14D8998FAB0}" | In - Public - P17 - TRUE | .(.VideoLAN - VLC media player 2.0.5.) -- C:\program files (x86)\videolan\vlc\vlc.exe O87 - FAEL: "{6B45EB55-585A-486E-83DE-F6166DA677FF}" | In - Public - P6 - TRUE | .(.VideoLAN - VLC media player 2.0.5.) -- C:\program files (x86)\videolan\vlc\vlc.exe O87 - FAEL: "TCP Query User{180B5E6E-BB47-45F3-A5AB-E019F3D51D80}C:\windows\system32\java.exe" | In - Private - P6 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\windows\system32\java.exe O87 - FAEL: "UDP Query User{EB605128-A93A-4E29-B7C0-6EBF5B12BF3E}C:\windows\system32\java.exe" | In - Private - P17 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\windows\system32\java.exe O87 - FAEL: "{AFEF9BF2-B9B1-4ED5-A0B9-536AA2D0FEA6}" | In - Public - P17 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\windows\system32\java.exe O87 - FAEL: "{114F6985-1481-4D7E-8ABD-8582023D7CF7}" | In - Public - P6 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\windows\system32\java.exe O87 - FAEL: "TCP Query User{8BD98DB3-0DE3-4D5D-B734-E0E17B4B4630}C:\wamp\bin\apache\apache2.2.22\bin\httpd.exe" | In - Private - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\wamp\bin\apache\apache2.2.22\bin\httpd.exe O87 - FAEL: "UDP Query User{ADF362FD-71DB-496A-ADDB-09C4E70B2F4C}C:\wamp\bin\apache\apache2.2.22\bin\httpd.exe" | In - Private - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\wamp\bin\apache\apache2.2.22\bin\httpd.exe O87 - FAEL: "{BFE55F58-C142-4A9D-955A-966818CCCA00}" | In - Public - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\wamp\bin\apache\apache2.2.22\bin\httpd.exe O87 - FAEL: "{FB5EAD8E-C96A-45FC-A413-28731313FD77}" | In - Public - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\wamp\bin\apache\apache2.2.22\bin\httpd.exe O87 - FAEL: "{B674D644-7255-4C17-A33D-CC00DB3035AC}" | In - Private - P6 - TRUE | .(.Element Technologie - openElement.) -- C:\Program Files (x86)\Element Technologie\openElement 1.31\openElement.exe O87 - FAEL: "TCP Query User{C04CE1D9-C108-4295-8D49-5C81B0D27562}C:\program files (x86)\element technologie\openelement 1.31\syncftp.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\element technologie\openelement 1.31\syncftp.exe O87 - FAEL: "UDP Query User{22CFB1D3-0141-4744-BFC4-1ADCE7BB9DD8}C:\program files (x86)\element technologie\openelement 1.31\syncftp.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\element technologie\openelement 1.31\syncftp.exe O87 - FAEL: "{4A584D4B-E1E4-43ED-89A9-F5D0C9BB2019}" | In - Public - P17 - TRUE | .(.Pas de propriétaire - SyncFTP.) -- C:\program files (x86)\element technologie\openelement 1.31\syncftp.exe O87 - FAEL: "{18D1B96A-676B-4D27-8B91-0D1E4B18179A}" | In - Public - P6 - TRUE | .(.Pas de propriétaire - SyncFTP.) -- C:\program files (x86)\element technologie\openelement 1.31\syncftp.exe O87 - FAEL: "{61E1779F-D0BA-4B02-A261-273D09E3618F}" | In - Domain - P6 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{35D8C2F8-89A0-4766-BFBF-6D7BDC037869}" | In - Domain - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{6667D1ED-1AE3-45AD-8599-31C1E36B0E9E}" | In - Private - P6 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{DD9AB74A-EAD4-4598-92E9-E9020226BE62}" | In - Private - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{D5DE5FF2-9978-4E37-92A5-242DBFB24647}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{AFCDFEE7-CA8A-4821-B7F0-EF413B8693F4}" | In - Public - P6 - TRUE | .(.Avid - Render Manager.) -- C:\Program Files (x86)\Pinnacle\Studio 16\programs\RM.exe O87 - FAEL: "{419A23B9-651E-4E6E-B595-2282BAE09974}" | In - Public - P17 - TRUE | .(.Avid - Render Manager.) -- C:\Program Files (x86)\Pinnacle\Studio 16\programs\RM.exe O87 - FAEL: "{610F7899-F61D-47DF-B6FC-6F9A53BA5C02}" | In - Public - P6 - TRUE | .(.Avid - NGStudio.) -- C:\Program Files (x86)\Pinnacle\Studio 16\programs\NGStudio.exe O87 - FAEL: "{B14BBDA1-7FC1-4592-9531-6ED381DA64E1}" | In - Public - P17 - TRUE | .(.Avid - NGStudio.) -- C:\Program Files (x86)\Pinnacle\Studio 16\programs\NGStudio.exe O87 - FAEL: "{20CF7A66-F679-4464-8785-7573780A305B}" | In - Public - P6 - TRUE | .(.Avid - Usermode Interupt.) -- C:\Program Files (x86)\Pinnacle\Studio 16\programs\UMI.exe O87 - FAEL: "{E5216E32-19F1-4A9D-8316-734C15A7BDFD}" | In - Public - P17 - TRUE | .(.Avid - Usermode Interupt.) -- C:\Program Files (x86)\Pinnacle\Studio 16\programs\UMI.exe O87 - FAEL: "{C0FD424E-1F47-469D-BEF6-567C530AE994}" | In - Public - P6 - TRUE | .(.TeamViewer GmbH - TeamViewer 8.) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe O87 - FAEL: "{0758D8A7-5200-417A-A497-F0A6BA39FAB4}" | In - Public - P17 - TRUE | .(.TeamViewer GmbH - TeamViewer 8.) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe O87 - FAEL: "{FF099FF0-7994-4EA5-A304-68FC8CC4E5BE}" | In - Public - P6 - TRUE | .(.TeamViewer GmbH - TeamViewer 8.) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O87 - FAEL: "{6F40EBCA-B667-4FE6-89D3-15FDAE3AEEB5}" | In - Public - P17 - TRUE | .(.TeamViewer GmbH - TeamViewer 8.) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe O87 - FAEL: "{8BA5A0AC-0C08-47F7-B0F5-CC4076304EC2}" |In - Public - P6 - TRUE | .(...) -- C:\Users\FightVirtu\AppData\Local\Temp\7zS0D1E\hppiw.exe (.not file.) O87 - FAEL: "{D32BB5E9-6543-4627-85FB-8FC8DF431413}" |In - Public - P17 - TRUE | .(...) -- C:\Users\FightVirtu\AppData\Local\Temp\7zS0D1E\hppiw.exe (.not file.) O87 - FAEL: "{25F05277-E184-4E45-ABA5-A8EF36660A6B}" | In - None - P17 - TRUE | .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files (x86)\HP\hp software update\hpwucli.exe O87 - FAEL: "{B412325C-E443-4612-B383-FE7D7A9DA846}" | In - Public - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe O87 - FAEL: "{89FADCBE-94F8-4DB8-AB5D-94EB481BA59C}" | In - Public - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe O87 - FAEL: "{580E29D0-56E3-40AA-BE09-D95AF106F004}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{3294370A-00BB-4699-B52A-6BA1369F13EC}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{F5A2C3A4-E653-47A9-AB2D-961AC40A8B8E}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{521E7811-9C62-48A2-8120-D76289B3CBA2}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{CD20225C-C332-4CCC-9A0B-8D90486E5E35}" | In - Public - P6 - TRUE | .(...) -- E:\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe O87 - FAEL: "{2C0B7573-264F-482F-ACC8-E979ABD3F5A0}" | In - Public - P17 - TRUE | .(...) -- E:\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe O87 - FAEL: "{19F6B905-DCE4-4872-9CA7-907E4BFFD316}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed III\AC3MP.exe O87 - FAEL: "{3522CCB2-5D25-412C-86A2-20C577090610}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed III\AC3MP.exe O87 - FAEL: "{B6F6A238-685D-4803-9177-CED920C08B9C}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed III\AC3SP.exe O87 - FAEL: "{8B351F16-B7B0-4BCE-A6F9-6806E881182D}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed III\AC3SP.exe O87 - FAEL: "{A78884F3-75D2-4892-8966-9714F4B25BBB}" | In - Public - P6 - TRUE | .(.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed III\AssassinsCreed3.exe O87 - FAEL: "{AA6662AE-2175-4D77-985B-EACB002D8B60}" | In - Public - P17 - TRUE | .(.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed III\AssassinsCreed3.exe O87 - FAEL: "{48C0F603-D051-406D-9087-D058319130E3}" | In - Public - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "{933FF299-A9D2-43F1-9D9E-3F21BA4D1B29}" | In - Public - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "{6ECA7750-F0AF-4A40-AECD-AFAC2E26716D}" | In - Public - P6 - TRUE | .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II - Zombies.) -- E:\Steam\SteamApps\common\Call of Duty Black Ops II\t6zm.exe O87 - FAEL: "{4679B5C8-1C4F-44BC-B39C-9BC8D87E9E85}" | In - Public - P17 - TRUE | .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II - Zombies.) -- E:\Steam\SteamApps\common\Call of Duty Black Ops II\t6zm.exe O87 - FAEL: "{6994C5E0-2144-46AD-9389-5C1CCD3D4F76}" | In - Public - P6 - TRUE | .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II - Multiplayer.) -- E:\Steam\SteamApps\common\Call of Duty Black Ops II\t6mp.exe O87 - FAEL: "{FF6E3D0B-65A9-4298-8602-46A9CFF43129}" | In - Public - P17 - TRUE | .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II - Multiplayer.) -- E:\Steam\SteamApps\common\Call of Duty Black Ops II\t6mp.exe O87 - FAEL: "{DD8E5CD7-D5AD-4BBF-BDF5-93D9B777AC2C}" | In - Public - P6 - TRUE | .(...) -- E:\Steam\SteamApps\common\supercratebox\supercratebox.exe O87 - FAEL: "{8D676F3A-4FEF-44C3-81BF-0F9AFCA974E2}" | In - Public - P17 - TRUE | .(...) -- E:\Steam\SteamApps\common\supercratebox\supercratebox.exe ~ Scan Firewall in 00mn 07s ---\\ Scan Additionnel (O88) Database Version : v2.10854 - (23/02/2013) Clés trouvées (Keys found) : 9 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 0 [HKLM\Software\Classes\Installer\Features\90C64EA18BA25EE488BF80DCF07F2FFD] =>Toolbar.Agent [HKLM\Software\Classes\Installer\Products\90C64EA18BA25EE488BF80DCF07F2FFD] =>Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\90C64EA18BA25EE488BF80DCF07F2FFD] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Classes\Installer\Features\90C64EA18BA25EE488BF80DCF07F2FFD] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Classes\Installer\Products\90C64EA18BA25EE488BF80DCF07F2FFD] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}] =>Toolbar.Agent [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] =>Toolbar.Bing [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] =>Toolbar.Bing [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] =>Toolbar.Bing ~ Scan Additionnel in 00mn 26s ---\\ Product Upgrade Codes (O90) O90 - PUC: "032B287A89EF1E11A9E10FD42AA3C585" . (.Vegas Pro 12.0 (64-bit).) -- C:\Windows\Installer\{A782B230-FE98-11E1-9A1E-F04DA23A5C58}\vegas.ico O90 - PUC: "07A78D1031D4EBC498445ADA73EBD8E8" . (.Ma-Config.com (64 bits).) -- C:\Windows\Installer\{01D87A70-4D13-4CBE-8944-A5AD37BE8D8E}\maconfico O90 - PUC: "0C1D000D08E64CF4EBE48A88270C16F6" . (.Share64.) -- c:\Windows\Installer\{D000D1C0-6E80-4FC4-BE4E-A88872C0616F}\ARPPRODUCTICON.exe O90 - PUC: "0D00C83EB86A81348A6A7F4D5B1BFDE0" . (.Windows Media Encoder 9 Series.) -- C:\Windows\Installer\{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}\ARPIcon O90 - PUC: "0EE303C2595A34537AA139C1A74CE0ED" . (.Microsoft Primary Interoperability Assemblies 2005.) -- c:\Windows\Installer\{2C303EE0-A595-3543-A71A-931C7AC40EDE}\[SystemFolder]msiexec.exe O90 - PUC: "121E2D80A6F7BE3479DF26B944094330" . (.Microsoft_VC90_CRT_x86.) -- C:\Windows\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe O90 - PUC: "1459101E2A01F4642AE34A2FD36A1506" . (.Mumble 1.2.3.) -- C:\Windows\Installer\{E1019541-10A2-464F-A23E-A4F23DA65160}\mumble.ico O90 - PUC: "1C1B0A8A7CBF0974E862D91A6A9A4525" . (.Oracle VM VirtualBox 4.2.6.) -- C:\Windows\Installer\{A8A0B1C1-FBC7-4790-8E26-9DA1A6A95452}\IconVirtualBox O90 - PUC: "28FAC01C63D9A9D4D90C4C45F9605B91" . (.O&O Defrag Free Edition.) -- C:\Windows\Installer\{C10CAF82-9D36-4D9A-9DC0-C4549F06B519}\ARPPRODUCTICON.exe O90 - PUC: "347684AC44F55D043AB87719F12B5797" . (.Contents.) -- c:\Windows\Installer\{CA486743-5F44-40D5-A38B-77911FB27579}\ARPPRODUCTICON.exe O90 - PUC: "4104127FEE7273249987F2D9511555B9" . (.Title Extreme.) -- C:\Windows\Installer\{F7214014-27EE-4237-9978-2F9D1551559B}\ARPPRODUCTICON.exe O90 - PUC: "4396CDCD8247E9846815095B131984B8" . (.ISCOM.) -- c:\Windows\Installer\{DCDC6934-7428-489E-8651-90B53191488B}\ARPPRODUCTICON.exe O90 - PUC: "4BB570A2679E8724FBF35E6C49D5480C" . (.bl.) -- C:\Windows\Installer\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}\ARPPRODUCTICON.exe O90 - PUC: "4D556BB57D703E548B25FF68E96A821A" . (.VSPro.) -- c:\Windows\Installer\{5BB655D4-07D7-45E3-B852-FF869EA628A1}\ARPPRODUCTICON.exe O90 - PUC: "5979F581366931F4E99F03A782A2BDA5" . (.ph.) -- C:\Windows\Installer\{185F9795-9663-4F13-9EF9-307A282ADB5A}\ARPPRODUCTICON.exe O90 - PUC: "669F4AA8B4FE8D4499AA4CAE394B8636" . (.VSClassic.) -- c:\Windows\Installer\{8AA4F966-EF4B-44D8-99AA-C4EA93B46863}\ARPPRODUCTICON.exe O90 - PUC: "6A8D4C8845990A6469D5295ED5BA7843" . (.Premium Pack Volumes 1-2.) -- C:\Windows\Installer\{88C4D8A6-9954-46A0-965D-92E55DAB8734}\ARPPRODUCTICON.exe O90 - PUC: "7DC6881F37F9A714299EE7A00B0F0E99" . (.Pinnacle Studio 16 - Install Manager.) -- C:\Windows\Installer\{F1886CD7-9F73-417A-92E9-7E0AB0F0E099}\ARPPRODUCTICON.exe O90 - PUC: "82B7F6A6871ECA7468456A45DA6A7C77" . (.VSHelp.) -- c:\Windows\Installer\{6A6F7B28-E178-47AC-8654-A654ADA6C777}\ARPPRODUCTICON.exe O90 - PUC: "8D639A0B33BEA1D4B87B0AB639D101FE" . (.openElement 1.31.) -- C:\Windows\Installer\{B0A936D8-EB33-4D1A-8BB7-A06B931D10EF}\OpenElement.exe O90 - PUC: "8F181D3EB642F79449E5D69BC8AB6677" . (.Hollywood FX Volumes 1-3.) -- C:\Windows\Installer\{E3D181F8-246B-497F-945E-6DB98CBA6677}\ARPPRODUCTICON.exe O90 - PUC: "8FC229B8C6A8EC148A851F57D5F7D592" . (.NVIDIA PhysX.) -- C:\Windows\Installer\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}\icon.ico O90 - PUC: "90C64EA18BA25EE488BF80DCF07F2FFD" . (.Bing Bar.) -- C:\Windows\Installer\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}\icon_installer_ico O90 - PUC: "91785D291CBB3CC40AB8659C8E48CCC2" . (.Microsoft_VC80_CRT_x86.) -- C:\Windows\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe O90 - PUC: "A66FEBEEDF076FD41B37280DE71658E3" . (.Share.) -- c:\Windows\Installer\{EEBEF66A-70FD-4DF6-B173-82D07E61853E}\ARPPRODUCTICON.exe O90 - PUC: "B7C7888ACCB0FBF4CBBEB94B4D1B9499" . (.Setup.) -- c:\Windows\Installer\{A8887C7B-0BCC-4FBF-BCEB-9BB4D4B14999}\ARPPRODUCTICON.exe O90 - PUC: "C52F2B06BC229DC41986C83607D81C1A" . (.LibreOffice 3.6.) -- C:\Windows\Installer\{60B2F25C-22CB-4CD9-9168-8C63708DC1A1}\soffice.ico O90 - PUC: "CBDFB4826CADCE34588A1EEC0C3D1A41" . (.Pinnacle Studio 16.) -- C:\Windows\Installer\{284BFDBC-DAC6-43EC-85A8-E1CEC0D3A114}\ARPPRODUCTICON.exe1 O90 - PUC: "DF3AB8F29AF197246B6917A2BB210FF9" . (.SmartSound Quicktracks 5.) -- c:\Windows\Installer\{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}\ARPPRODUCTICON.exe O90 - PUC: "E14DB1A14589759498959F55A988267A" . (.ICA.) -- c:\Windows\Installer\{1A1BD41E-9854-4957-8959-F9559A8862A7}\ARPPRODUCTICON.exe O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.1.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O90 - PUC: "E9682A8BAC035C04C98FDB37455EE78F" . (.SmartSound Common Data.) -- c:\Windows\Installer\{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}\ARPPRODUCTICON.exe O90 - PUC: "F5B07C66F037D5C4F95CE8650DEFD735" . (.IPM_VS_Pro.) -- c:\Windows\Installer\{66C70B5F-730F-4C5D-9FC5-8E56D0FE7D53}\ARPPRODUCTICON.exe ~ Scan Files in 00mn 00s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 08/02/2013 251248 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 30/10/2012 44808 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SS - | Auto 11/06/2012 193616 | (BBSvc) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.exe SR - | Demand 11/06/2012 240208 | (BBUpdate) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.exe SR - | Demand 20/09/2012 29696 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll (hpqcxs08) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SR - | Auto 20/09/2012 29696 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll (hpqddsvc) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SR - | Auto 20/09/2012 29696 | C:\Users\FightVirtu\AppData\Local\Temp\7zS0D1E\HPSLPSVC64.dll (HPSLPSVC) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe SR - | Auto 19/11/2012 14904 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe SR - | Auto 27/07/2012 636952 | (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe SR - | Auto 10/08/2012 166720 | (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe SS - | Demand 01/10/2012 359224 | (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe SR - | Auto 10/08/2012 277824 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SS - | Demand 05/02/2013 428928 | (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-config.com\x64\maconfservice.exe SR - | Auto 14/12/2012 398184 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe SR - | Auto 14/12/2012 682344 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe SS - | Demand 19/02/2013 115608 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SS - | Auto 20/09/2012 29696 | C:\Windows\System32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SR - | Auto 10/02/2013 877856 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 10/02/2013 1266464 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe SR - | Auto 25/01/2011 3051848 | (OODefragAgent) . (.O&O Software GmbH.) - C:\Program Files\OO Software\Defrag\oodag.exe SR - | Auto 20/09/2012 29696 | C:\Windows\System32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SR - | Auto 0 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SR - | Auto 10/03/2010 189728 | (PSI_SVC_2) . (.Protexis Inc..) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe SS - | Auto 08/01/2013 161536 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SR - | Auto 10/10/2012 143024 | (Start8) . (.Stardock Software, Inc.) - C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe SR - | Demand 15/02/2013 543144 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe SR - | Auto 14/12/2012 3467768 | (TeamViewer8) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe SR - | Auto 10/08/2012 365376 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SS - | Demand 13/05/2012 22016 | (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.2.22\bin\httpd.exe SS - | Demand 9693696 | (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.5.24\bin\mysqld.exe SS - | Demand 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Scan Services in 00mn 03s ---\\ Liste des émulateurs de CD/DVD (Hook du MBR) O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ~ Scan Emulateurs in 00mn 03s End of the scan (1381 lines in 06mn 56s)(0)