cjoint

Publicité


Publicité

Commentaire : le rapport de Zhpdial

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.27.104 Par Nicolas Coolman (2015/07/27)
~ Démarré par Pierre (Administrator) (2015/07/27 17:14:14)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Pierre\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Pierre\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 32-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 27.0 (x86 fr) v27.0
MSIE: Internet Explorer v11.0.9600.17914

---\\ Informations sur les produits Windows (4) - 5s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 1s
Microsoft Security Client v4.8.0204.0
Microsoft Security Essentials v4.8.204.0

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.07

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 18 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 11, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2096.248 MB (15% free)
~ System Restore: Activé (Enable)
~ System drive C: has 5 GB free of 49 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PIERRE-PC
~ User Name: Pierre
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 1s
~ Drive C: has 5 GB free of 49 GB (System)
~ Drive D: has 231 GB free of 426 GB
~ Drive F: has 100 GB free of 117 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 2s
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256]
[MD5.63B01F72FD727D5736DBEF54174D8F93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232]
[MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888]
[MD5.01C5B803F6E1FDF8F16F0763DA9B997D] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [124416]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904]
[MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848]
[MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168]
[MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632]

---\\ Processus lancés (5) - 2s
[MD5.624DB72A4EB988C7D9B49DD890743429] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [733184] [PID.912]
[MD5.624DB72A4EB988C7D9B49DD890743429] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [733184] [PID.1692]
[MD5.875E4E0661F3A5994DF9E5E3A0A4F96B] - (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) -- C:\Windows\System32\IoctlSvc.exe [81920] [PID.2008]
[MD5.E4FAD21646088D79F8889B6531396ACF] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [93072] [PID.572]
[MD5.B3009DCDBCC5EFA49FA52562E9860E3C] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128] [PID.848]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (9) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (26) - 3s
M0 - MFSP: prefs.js [Pierre - xw43w4jo.default] http://www.google.com/
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll
P2 - EXT: (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll
P2 - EXT: (.RealPlayer - RealPlayer Download Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpplugin.dll
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKCU] [@squareclock.com/SQ3DPlayer_Production_HBMV1] - (.SquareClock SAS.) -- C:\Users\Pierre\AppData\Local\SquareClock.Production_HBMV1\NPSQ3D.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.25.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.25.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=15.0.4.53] - (.RealNetworks, Inc..) -- c:\program files\Real\realplayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=15.0.4.53] - (.RealNetworks, Inc..) -- c:\program files\Real\realplayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.4.53] - (.RealNetworks.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.4.53] - (.RealNetworks.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
P2 - FPN: [HKLM] [@real.com/nprpplugin;version=15.0.4.53] - (.RealPlayer.) -- c:\program files\Real\realplayer\Netscape6\nprpplugin.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.4] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (12) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (5) - 0s
O2 - BHO: (no name) - {3049C3E9-B461-4BC5-8870-4C09146192CA} (Orphean)
O2 - BHO: (no name) - {6be13f09-1d4a-d7a2-8578-8c329911a24c} (Orphean)
O2 - BHO: (no name) - {6D9DBF25-00C4-839F-7A19-AF272CB69509} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (10) - 1s
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- c:\program files\Real\realplayer\Update\realsched.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-4001985979-3424738951-2939177888-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240

---\\ Liste des services NT non Microsoft et non désactivés (O23) (10) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) - C:\Windows\System32\IoctlSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: (UMVPFSrv) . (.Logitech Inc. - Logitech User mode UMVPF service.) - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe

---\\ Tâches planifiées en automatique (O39) (62) - 6s
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\A1D42FA9-7899-4AB9-BA10-74EBA5F3B27.job [502]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GPJUGXWBQ1.job [338]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\HGQEJGRKEDLCEPCW.job [344]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0 [3204]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\4796 [3302]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2794]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\cinemaplus-9.0v_helper_service [3482] =>PUP.Optional.CrossRider
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3540]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3802]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4054]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4001985979-3424738951-2939177888-1000 [3200]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4001985979-3424738951-2939177888-1000 [3332]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\SidebarExecute [3230]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{0087C6B6-FA18-4B71-9107-EED253A44544} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{027AC4B9-1A4B-4866-8D48-602221CC7445} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{06370557-A2D6-449F-8AED-3053C318EBDF} [2938]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{0B0A4E0E-7B3D-4C35-B572-D0B5452E6DC3} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{0FA7BE51-6FCC-4B51-9831-E1643C0061EC} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{165C923C-7B9A-48C3-9108-79C8741A4000} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{1BC7588F-71AE-4476-8792-0406D9B41B2F} [3082]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{2345D145-71CF-41D9-A1AC-AC90D5A6A06A} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{25CAFDD5-9A5F-4E4D-BC4D-1DCA166C153C} [3312]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{265A8648-6F47-4A27-84BD-55E6400B145C} [3238]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{2B248F6A-C2E5-4A81-84D5-2AB053A5B45D} [2938]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{3A4D7588-83E9-415E-B2EC-F2C4C1593547} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{403783ED-263B-4917-9777-39B11272CF50} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{421F56D5-35C3-4B23-85F4-64D219031924} [3216]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{432F78BE-DC82-4F3A-82B5-6AF1431323CD} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{43DCEC0A-588C-4A70-800E-86CE04E3547D} [2856]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{44F6610E-ED11-4438-A702-E1D1C9BA11FE} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{4EE80970-84CE-46C5-B3F3-F62BD643FD4D} [2938]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{4FE46066-1424-4EAB-9ECB-34F3FE4CBDE3} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{51BB0D9B-66D5-489C-AA34-6C0D93276FE2} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{56A8534D-31CB-4AA2-83F0-0878C2399DA7} [3242]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{5A359154-1D73-4911-906F-E72DF461B8E2} [3314]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{65AFF8DD-F2AC-4176-B982-7F9E11143ECB} [3370]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{6935D39B-9A29-44F1-8FB4-4C507C70277A} [2994]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{69458EE5-F203-4C5A-8886-71EC20E8B5A7} [2958]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{6CCAE65C-BAEF-413C-A796-C97113D2B458} [3242]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{6F9CBF5F-BE85-46B1-947F-F64BA4AB60C9} [3230]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{7AF56713-DD2C-4CAA-BF3B-29D60B6E78FB} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{7BFF9A3E-B206-4A4F-AB1F-562FCD20A875} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{8EB4367E-A309-49A8-9F91-30C77231311B} [3206]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{95F98861-F67C-4184-8578-49BEF6EAF234} [3230]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{9AD43AFE-FF5B-4A57-9FD5-E8746A50350A} [2958]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{9B94C34D-6582-4E8C-86D9-C147A6EEDCDA} [3150]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{9EB902E0-5ECF-4CB6-8C76-DE59F007F0D4} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{A11D52F8-E830-4F3C-817F-13DF619C0702} [3036]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{AC5F660C-62FC-4569-8AD5-D77B961C1451} [2958]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{B02679F2-E244-452A-B121-C05198069C51} [2994]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{B98F0D74-FF81-4841-AE6C-816CDF26587B} [3512]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{C133F857-5F26-4CFA-ABD8-9F6FFA4DF4E8} [3142]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{CD6EE57F-3A13-491F-A774-F0A7CBD55D5D} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{CD80B57E-17B5-417B-A7A5-F4CCBE45D7D4} [2954]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{D3200806-4F66-4B33-98DF-5081C367BEE2} [2958]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{FA827536-A055-4D9A-9A1E-595079AA9728} [3036]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{FD5121ED-C342-4327-AAB1-A2EFC8FA812A} [3184]

---\\ Logiciels installés (O42) (77) - 13s
O42 - Logiciel: Contextual Tool Lightspeedincome - (...) [HKLM] -- 90066c08
O42 - Logiciel: Adobe Digital Editions 2.0 - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Digital Editions 2.0
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM] -- Audacity_is1
O42 - Logiciel: AVS Screen Capture version 1.1.2 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Screen Capture_is1
O42 - Logiciel: AVS Update Manager 1.0 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Update Manager_is1
O42 - Logiciel: AVS Video Editor 6 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Video Editor_is1
O42 - Logiciel: AVS Video Recorder 2.4 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Video Recorder_is1
O42 - Logiciel: AVS Video ReMaker 3.1.2.102 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Video ReMaker_is1
O42 - Logiciel: AVS4YOU Software Navigator 1.4 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Software Navigator_is1
O42 - Logiciel: AVS Video Converter 7 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Video Converter 7_is1
O42 - Logiciel: Canon ScanGear Toolbox 3.0 - (...) [HKLM] -- Canon ScanGear Toolbox 3.0
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: DVDFab HD Decrypter 4.1.2.0 - (.Fengtao Software Inc..) [HKLM] -- DVDFab HD Decrypter 4_is1
O42 - Logiciel: Free FLV Converter V 7.6.0 - (.Koyote Soft.) [HKLM] -- Free FLV Converter_is1
O42 - Logiciel: Free Mp3 Wma Converter V 1.9 - (.Koyote Soft.) [HKLM] -- Free Mp3 Wma Converter_is1
O42 - Logiciel: Free YouTube Downloader Converter - (.Eusing Software.) [HKLM] -- Free YouTube Downloader Converter
O42 - Logiciel: Free YouTube to MP3 Converter version 3.12.54.128 - (.DVDVideoSoft Ltd..) [HKLM] -- Free YouTube to MP3 Converter_is1
O42 - Logiciel: HomePlayer 1.5.9e - (.HomePlayer.) [HKLM] -- HomePlayer
O42 - Logiciel: MAGIX Vidéo deluxe 17 Plus Version à télécharger - (.MAGIX AG.) [HKLM] -- MAGIX_MSI_Videodeluxe17_plus
O42 - Logiciel: MAGIX Vidéo deluxe MX Plus Version à télécharger - (.MAGIX AG.) [HKLM] -- MAGIX_MSI_Videodeluxe18_plus
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client
O42 - Logiciel: MixVibes PRO 5 uninstall - (...) [HKLM] -- MixVibesPRO4.exe
O42 - Logiciel: Mozilla Firefox 27.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 27.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 15.0
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: WinRAR 4.00 beta 1 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: MAGIX Vidéo deluxe 17 Plus Version à télécharger - (.MAGIX AG.) [HKLM] -- {0062237E-40E6-4EBD-BE13-4EB0438C47A7}
O42 - Logiciel: Wondershare TunesGo Retro ( Version 4.6.8 ) - (.Wondershare.) [HKLM] -- {0B31C808-8274-460D-8846-C711D40544A0}_is1
O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-211328764D10}
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E}
O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 7 Update 67 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F03217067FF}
O42 - Logiciel: Java 8 Update 25 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218025F0}
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}
O42 - Logiciel: SaisieFeuilleHand - (.Fédération Française de Handball.) [HKLM] -- {50037456-53f5-4d55-abf0-f822ea84e81c}_is1
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {538227C6-C74B-4A74-99E1-2C0B4F9DA5E1}
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM] -- {627FFC10-CE0A-497F-BA2B-208CAC638010}
O42 - Logiciel: Audials - (.Audials AG.) [HKLM] -- {64750847-53B1-49F4-BC1C-A1F200B92BF6}
O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM] -- {6C5F8503-55D2-4398-858C-362B7A7AF51C}
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {6E3939AE-9996-4D07-9A30-14C78AE93576}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {7FE25256-B7C1-480D-B736-10A67A833AEA}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1}
O42 - Logiciel: MAGIX Vidéo deluxe MX Plus Version à télécharger - (.MAGIX AG.) [HKLM] -- {822055A6-3C63-4954-9C7F-E401BEBD52D7}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: Gestionnaire pour appareils Windows Mobile - (.Microsoft Corporation.) [HKLM] -- {904CCF62-818D-4675-BC76-D37EB399F917}
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM] -- {99072AB4-D795-44D5-9D65-E3C9F8322C97}
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM] -- {9A07AB4F-6B53-43E9-B7FC-7892E8C26BE3}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {9DBBE7B8-EE7A-4FD9-9C7F-35E69A4C19D8}
O42 - Logiciel: PC Sync - (.France Telecom.) [HKLM] -- {A4DCAA77-151D-4CE9-8D79-E4ADB48031A2}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100}
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
O42 - Logiciel: OGA Notifier 2.0.0048.0 - (.Microsoft Corporation.) [HKLM] -- {B2544A03-10D0-4E5E-BA69-0362FFC20D18}
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM] -- {C5B73CC3-5F22-4FDC-A22E-3DADCC456671}
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM] -- {C779648B-410E-4BBA-B75B-5815BCEFE71D}
O42 - Logiciel: MAGIX Screenshare - (.MAGIX AG.) [HKLM] -- {D1444425-2292-43D0-99E0-1DFD29AB7E88}
O42 - Logiciel: MAGIX Vidéo deluxe 17 Plus Video Plugins - (.MAGIX AG.) [HKLM] -- {DABF5BD1-4D5C-48C6-A9A7-DA1661458347}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: calibre - (.Kovid Goyal.) [HKLM] -- {EAC0A4A7-9599-4C74-9291-4ACF1CC682E0}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: myCANAL - (.player.canalplus.fr.) [HKCU] -- 2206210362.player.canalplus.fr
O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU] -- Amazon Kindle
O42 - Logiciel: HomeByMe - (.SquareClock SAS.) [HKCU] -- SquareClock_Production_HBMV1

---\\ HKCU & HKLM Software Keys (158) - 13s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\ATI
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\Audible
HKLM\SOFTWARE\AVS4YOU
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\calibre
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Caphyon
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\DVDFab
HKLM\SOFTWARE\DVDVideoSoft
HKLM\SOFTWARE\ESTsoft
HKLM\SOFTWARE\France Telecom
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\HPS
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\IncrediMail
HKLM\SOFTWARE\InnoGames_France
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\instinno
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\iTinySoft
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Logishrd
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\MAGIX
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Nero ShowTime
HKLM\SOFTWARE\NeroDigital
HKLM\SOFTWARE\Nokia
HKLM\SOFTWARE\Norton
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Oracle
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\RapidSolution
HKLM\SOFTWARE\RapidSolutionAdmin
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\SecureDigitalServices
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SmartPCFixer
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\Sony Creative Software
HKLM\SOFTWARE\Sony Media Software
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Tific
HKLM\SOFTWARE\TomTom
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Vid_0471
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\Voxmobili
HKLM\SOFTWARE\WafCX
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wise Solutions
HKLM\SOFTWARE\Wondershare
HKLM\SOFTWARE\Xara
HKLM\SOFTWARE\Xing Technology Corp.
HKCU\SOFTWARE\AC3Filter
HKCU\SOFTWARE\addtoustart
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\Amazon
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Applications WinDev
HKCU\SOFTWARE\ATI Technologies Inc.
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\Auslogics
HKCU\SOFTWARE\AVS4YOU
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Canon_Inc_IC
HKCU\SOFTWARE\CDDB
HKCU\SOFTWARE\CeWe Color
HKCU\SOFTWARE\ComNotificationV25.03
HKCU\SOFTWARE\Cygnus Solutions
HKCU\SOFTWARE\DVDFab
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\ESTsoft
HKCU\SOFTWARE\Free FLV Converter
HKCU\SOFTWARE\FreeCDRIP
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\HVFGTX
HKCU\SOFTWARE\IE
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\inVIBES
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magix
HKCU\SOFTWARE\MAGIX AG
HKCU\SOFTWARE\MediaBurner
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nokia
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\Ob3f88f78
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OqsgxwS4UfeIGE16xIvdcNIZb
HKCU\SOFTWARE\PC SOFT
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Pointsoft
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RapidSolution
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\RocketDock
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\SWiSHzone.com
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Tific
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tvp
HKCU\SOFTWARE\UBPACS
HKCU\SOFTWARE\Voxmobili
HKCU\SOFTWARE\Windows Live Writer
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\WsAudio_Device
HKCU\SOFTWARE\WsAudio_DeviceS(3)
HKCU\SOFTWARE\Xara
HKCU\SOFTWARE\Yahoo
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\a2320eab
HKCU\SOFTWARE\AppDataLow\Google
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Avg
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Lbuddy
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (331) - 17s
O43 - CFD: 2015/07/02 15:24:02 - [] D -- C:\Program Files\3M
O43 - CFD: 2015/07/02 16:20:29 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 2015/07/04 17:06:49 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2014/02/01 12:56:09 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 2010/01/25 13:40:43 - [] D -- C:\Program Files\ATI
O43 - CFD: 2010/01/25 13:40:43 - [] D -- C:\Program Files\ATI Technologies
O43 - CFD: 2015/06/28 19:37:55 - [] D -- C:\Program Files\Audacity
O43 - CFD: 2013/10/09 17:54:27 - [] D -- C:\Program Files\Audials
O43 - CFD: 2013/10/09 17:23:12 - [0] D -- C:\Program Files\AVG
O43 - CFD: 2013/09/04 14:15:05 - [] D -- C:\Program Files\AVS4YOU
O43 - CFD: 2014/05/19 11:43:05 - [] D -- C:\Program Files\Bonjour
O43 - CFD: 2013/07/28 12:07:31 - [] D -- C:\Program Files\Calibre2
O43 - CFD: 2015/07/03 09:09:30 - [] D -- C:\Program Files\Canon
O43 - CFD: 2015/07/02 19:45:49 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2015/07/27 11:35:05 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2015/02/26 13:46:45 - [] D -- C:\Program Files\DIFX
O43 - CFD: 2011/06/28 00:10:37 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 2015/06/28 19:05:37 - [] D -- C:\Program Files\DVDFab HD Decrypter 4
O43 - CFD: 2015/02/15 12:44:50 - [] D -- C:\Program Files\DVDVideoSoft
O43 - CFD: 2010/01/25 13:01:57 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2010/04/10 12:01:39 - [] D -- C:\Program Files\Free Audio Pack
O43 - CFD: 2015/02/15 12:44:32 - [] D -- C:\Program Files\Free Codec Pack
O43 - CFD: 2015/01/09 11:13:04 - [] D -- C:\Program Files\Free FLV Converter
O43 - CFD: 2015/05/21 14:33:15 - [] D -- C:\Program Files\Free YouTube Downloader Converter
O43 - CFD: 2015/07/26 19:03:41 - [] D -- C:\Program Files\Google
O43 - CFD: 2014/01/14 17:39:41 - [] D -- C:\Program Files\HomePlayer
O43 - CFD: 2015/07/02 21:16:31 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/07/16 08:40:06 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/07/21 12:04:44 - [] D -- C:\Program Files\iPod
O43 - CFD: 2015/07/21 12:05:40 - [] D -- C:\Program Files\iTunes
O43 - CFD: 2014/11/27 13:09:17 - [] D -- C:\Program Files\Java
O43 - CFD: 2012/06/07 09:34:41 - [] D -- C:\Program Files\MAGIX
O43 - CFD: 2010/10/26 18:46:55 - [0] D -- C:\Program Files\Microsoft
O43 - CFD: 2009/07/14 11:01:21 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 2011/06/30 01:22:16 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2015/05/14 03:22:27 - [] D -- C:\Program Files\Microsoft Security Client
O43 - CFD: 2015/06/02 11:27:22 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2010/01/25 13:45:33 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2010/01/25 16:46:56 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2010/06/26 02:42:42 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2015/07/26 11:31:13 - [] D -- C:\Program Files\MixVibesPro5
O43 - CFD: 2010/10/18 17:52:52 - [] D -- C:\Program Files\Movie Maker 2.6
O43 - CFD: 2015/07/02 10:16:06 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2014/02/12 10:21:00 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2012/06/07 09:33:20 - [] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2010/07/15 16:20:14 - [] D -- C:\Program Files\Nero
O43 - CFD: 2015/02/27 11:21:54 - [0] D -- C:\Program Files\Nokia
O43 - CFD: 2012/07/27 14:58:49 - [] D -- C:\Program Files\Oracle
O43 - CFD: 2011/01/03 12:16:50 - [] D -- C:\Program Files\PC Sync
O43 - CFD: 2013/10/09 17:06:15 - [0] D -- C:\Program Files\Photocite Collection 4.8
O43 - CFD: 2015/07/21 10:53:03 - [] D -- C:\Program Files\QuickTime
O43 - CFD: 2012/09/27 18:39:42 - [] D -- C:\Program Files\RapidSolution
O43 - CFD: 2012/11/21 14:42:58 - [] D -- C:\Program Files\RCAssistant
O43 - CFD: 2012/05/24 15:23:19 - [] D -- C:\Program Files\Real
O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/07/01 18:48:00 - [] D -- C:\Program Files\RegTweaker
O43 - CFD: 2012/07/03 10:09:44 - [] D -- C:\Program Files\RocketDock
O43 - CFD: 2012/05/23 09:31:44 - [] D -- C:\Program Files\Safari
O43 - CFD: 2012/11/21 14:43:55 - [] D -- C:\Program Files\SaisieFeuilleHand
O43 - CFD: 2015/02/11 11:05:18 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2013/12/11 16:28:28 - [] D -- C:\Program Files\SmartPCFixer
O43 - CFD: 2015/07/02 14:50:00 - [] D -- C:\Program Files\Software =>PUP.Optional.Boxore
O43 - CFD: 2010/10/16 08:54:04 - [] D -- C:\Program Files\Sony Setup
O43 - CFD: 2012/07/23 10:27:47 - [0] D -- C:\Program Files\TomTom DesktopSuite
O43 - CFD: 2014/04/13 16:32:36 - [] D -- C:\Program Files\TomTom HOME 2
O43 - CFD: 2014/04/13 16:29:55 - [] D -- C:\Program Files\TomTom International B.V
O43 - CFD: 2013/10/09 17:06:54 - [] D -- C:\Program Files\Total Video Converter
O43 - CFD: 2012/07/29 10:13:02 - [] D -- C:\Program Files\Trend Micro
O43 - CFD: 2015/07/27 09:31:46 - [] D -- C:\Program Files\TrimModule
O43 - CFD: 2010/01/27 16:20:04 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2013/07/12 03:29:02 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/14 19:20:55 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2012/07/24 09:23:34 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 2011/06/28 00:10:37 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/06/16 03:27:27 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2010/01/25 13:01:57 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2011/06/28 00:10:36 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 2011/06/28 00:10:36 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2011/06/28 00:10:37 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2011/02/24 09:14:31 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2015/02/26 16:00:43 - [] D -- C:\Program Files\Wondershare
O43 - CFD: 2010/05/03 20:41:44 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2010/01/25 12:56:48 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/12/15 12:53:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
O43 - CFD: 2013/10/09 17:54:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 10
O43 - CFD: 2012/09/27 18:40:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 9
O43 - CFD: 2013/09/04 14:15:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 2013/07/28 12:07:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management
O43 - CFD: 2015/07/03 09:09:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon ScanGear Toolbox 3.0
O43 - CFD: 2015/05/20 22:45:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2010/10/29 18:23:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab HD Decrypter
O43 - CFD: 2015/02/15 12:44:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
O43 - CFD: 2012/07/15 21:49:40 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eChanblard
O43 - CFD: 2012/11/21 14:43:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FFHB
O43 - CFD: 2010/04/10 12:01:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Audio Pack
O43 - CFD: 2013/10/09 17:32:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free FLV Converter
O43 - CFD: 2015/02/25 11:43:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter
O43 - CFD: 2010/01/25 12:56:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2013/09/01 17:49:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
O43 - CFD: 2010/07/04 20:05:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomePlayer
O43 - CFD: 2015/05/04 11:53:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
O43 - CFD: 2015/07/21 12:05:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2014/11/27 13:10:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2012/06/07 09:37:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX
O43 - CFD: 2009/07/14 06:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2010/02/11 00:09:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/06/02 11:27:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2010/03/01 14:49:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVibesPro5
O43 - CFD: 2011/01/03 12:16:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Sync
O43 - CFD: 2015/07/21 10:52:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 2012/05/24 15:23:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
O43 - CFD: 2015/02/11 11:05:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2012/07/19 09:05:16 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2009/07/14 11:00:32 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2014/04/13 16:32:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 2012/11/21 15:14:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2011/02/23 15:26:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/02/26 16:00:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
O43 - CFD: 2015/07/02 10:45:48 - [] D -- C:\ProgramData\12db864551ae4c578eb17db1a9f5d3cf
O43 - CFD: 2014/10/21 11:49:39 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 2015/07/02 09:12:41 - [] D -- C:\ProgramData\abc
O43 - CFD: 2015/07/04 17:06:25 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/02/01 12:55:27 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2010/01/26 16:39:02 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2010/12/11 01:56:44 - [] D -- C:\ProgramData\avg9
O43 - CFD: 2010/10/18 18:15:11 - [] D -- C:\ProgramData\AVS4YOU
O43 - CFD: 2015/07/21 12:04:29 - [] D -- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
O43 - CFD: 2010/01/25 13:01:57 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2010/01/25 19:54:56 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 2011/09/09 09:30:01 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/07/27 09:32:03 - [0] D -- C:\ProgramData\e6171c100001d80
O43 - CFD: 2015/07/02 20:18:49 - [] D -- C:\ProgramData\Efoisahb
O43 - CFD: 2010/12/24 21:28:03 - [] D -- C:\ProgramData\ESTsoft
O43 - CFD: 2010/01/25 13:01:57 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/03/17 08:52:48 - [] D -- C:\ProgramData\Google
O43 - CFD: 2013/08/03 13:25:04 - [] D -- C:\ProgramData\hps
O43 - CFD: 2012/06/07 09:38:02 - [] D -- C:\ProgramData\MAGIX
O43 - CFD: 2015/07/24 16:55:31 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2010/01/25 13:01:57 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2014/12/12 04:31:45 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/16 05:15:31 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2010/01/25 13:01:57 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/12/08 17:30:41 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2013/07/22 10:34:59 - [] D -- C:\ProgramData\MusicMP3Downloader
O43 - CFD: 2010/07/15 16:20:15 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2015/02/27 11:21:54 - [0] D -- C:\ProgramData\Nokia
O43 - CFD: 2015/02/26 13:44:47 - [] D -- C:\ProgramData\NokiaInstallerCache
O43 - CFD: 2015/07/02 19:26:42 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2012/07/28 08:23:54 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2010/01/25 16:23:33 - [] D -- C:\ProgramData\Office Genuine Advantage
O43 - CFD: 2014/11/28 13:34:08 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/07/01 19:24:27 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/02/26 13:53:29 - [] D -- C:\ProgramData\PC Suite
O43 - CFD: 2013/10/09 17:54:37 - [] D -- C:\ProgramData\RapidSolution
O43 - CFD: 2012/08/08 15:38:56 - [] D -- C:\ProgramData\Real
O43 - CFD: 2015/07/26 11:44:45 - [] D -- C:\ProgramData\SaisieFeuilleGesthand
O43 - CFD: 2012/01/14 12:03:00 - [] D -- C:\ProgramData\SauveFeuillesHand
O43 - CFD: 2015/07/02 10:45:49 - [] D -- C:\ProgramData\Service8119
O43 - CFD: 2015/02/11 11:05:23 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2012/04/16 01:33:11 - [] D -- C:\ProgramData\Skype Extras
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2012/07/27 14:59:15 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2012/07/29 09:43:51 - [0] D -- C:\ProgramData\Symantec
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2013/04/18 16:21:53 - [] D -- C:\ProgramData\tmp
O43 - CFD: 2012/07/23 10:29:49 - [] D -- C:\ProgramData\TomTom
O43 - CFD: 2015/02/26 15:29:26 - [] D -- C:\ProgramData\WindSolutions
O43 - CFD: 2015/02/26 16:01:45 - [] D -- C:\ProgramData\Wondershare
O43 - CFD: 2010/03/31 15:44:09 - [] D -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 2010/01/26 16:39:10 - [] D -- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
O43 - CFD: 2015/07/04 17:06:52 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2015/07/21 12:04:43 - [] D -- C:\Program Files\Common Files\Apple
O43 - CFD: 2010/10/18 20:01:01 - [] D -- C:\Program Files\Common Files\AVSMedia
O43 - CFD: 2012/01/29 17:43:09 - [] D -- C:\Program Files\Common Files\Canon
O43 - CFD: 2014/05/14 19:44:14 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 2015/02/15 12:44:37 - [] D -- C:\Program Files\Common Files\DVDVideoSoft
O43 - CFD: 2011/01/03 12:16:49 - [] D -- C:\Program Files\Common Files\France Telecom
O43 - CFD: 2015/07/03 09:03:16 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 2014/11/28 10:36:14 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 2012/07/17 19:08:14 - [] D -- C:\Program Files\Common Files\logishrd
O43 - CFD: 2012/06/07 09:34:42 - [] D -- C:\Program Files\Common Files\MAGIX Services
O43 - CFD: 2010/10/21 14:30:48 - [] D -- C:\Program Files\Common Files\MAGIX Shared
O43 - CFD: 2015/06/29 11:23:21 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2013/07/23 10:27:40 - [] D -- C:\Program Files\Common Files\Nero
O43 - CFD: 2010/04/03 16:58:50 - [] D -- C:\Program Files\Common Files\Real
O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2015/02/11 11:05:18 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2012/07/28 12:04:23 - [0] D -- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 2011/11/10 09:03:07 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2010/10/19 00:44:31 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 2015/02/26 16:01:07 - [] D -- C:\Program Files\Common Files\Wondershare
O43 - CFD: 2012/05/24 15:23:15 - [] D -- C:\Program Files\Common Files\xing shared
O43 - CFD: 2015/07/24 17:07:57 - [] D -- C:\Users\Pierre\AppData\Roaming\11004D60-1435847097-5901-188E-001D6023652B
O43 - CFD: 2010/01/27 17:04:34 - [] D -- C:\Users\Pierre\AppData\Roaming\3M
O43 - CFD: 2015/07/08 12:29:54 - [] D -- C:\Users\Pierre\AppData\Roaming\Adobe
O43 - CFD: 2015/06/29 09:42:31 - [] D -- C:\Users\Pierre\AppData\Roaming\Apple Computer
O43 - CFD: 2010/12/07 01:52:18 - [] D -- C:\Users\Pierre\AppData\Roaming\AVS4YOU
O43 - CFD: 2015/06/24 10:25:56 - [] D -- C:\Users\Pierre\AppData\Roaming\calibre
O43 - CFD: 2015/06/24 15:17:02 - [0] D -- C:\Users\Pierre\AppData\Roaming\Canon
O43 - CFD: 2014/04/17 17:39:15 - [] D -- C:\Users\Pierre\AppData\Roaming\dvdcss
O43 - CFD: 2015/02/15 12:45:57 - [] D -- C:\Users\Pierre\AppData\Roaming\DVDVideoSoft
O43 - CFD: 2012/07/09 14:30:16 - [] D -- C:\Users\Pierre\AppData\Roaming\ESTsoft
O43 - CFD: 2015/02/25 11:43:19 - [] D -- C:\Users\Pierre\AppData\Roaming\Eusing
O43 - CFD: 2010/04/10 12:01:39 - [] D -- C:\Users\Pierre\AppData\Roaming\FreeAudioPack
O43 - CFD: 2010/10/18 11:36:15 - [] D -- C:\Users\Pierre\AppData\Roaming\FreeCDRipper
O43 - CFD: 2013/10/09 17:32:49 - [] D -- C:\Users\Pierre\AppData\Roaming\FreeFLVConverter
O43 - CFD: 2015/07/24 17:21:20 - [] D -- C:\Users\Pierre\AppData\Roaming\freegames4357 =>PUP.Optional.ScriptHost
O43 - CFD: 2010/11/29 16:34:00 - [] D -- C:\Users\Pierre\AppData\Roaming\Google
O43 - CFD: 2015/02/26 16:01:32 - [0] D -- C:\Users\Pierre\AppData\Roaming\HMYGSetting
O43 - CFD: 2010/01/25 13:02:13 - [] D -- C:\Users\Pierre\AppData\Roaming\Identities
O43 - CFD: 2010/01/25 13:34:27 - [] D -- C:\Users\Pierre\AppData\Roaming\Macromedia
O43 - CFD: 2012/06/07 09:38:02 - [] D -- C:\Users\Pierre\AppData\Roaming\MAGIX
O43 - CFD: 2010/12/02 02:12:47 - [0] D -- C:\Users\Pierre\AppData\Roaming\Mcfunsoft DVD Creator
O43 - CFD: 2009/07/14 11:00:32 - [0] D -- C:\Users\Pierre\AppData\Roaming\Media Center Programs
O43 - CFD: 2012/07/18 16:19:16 - [0] D -- C:\Users\Pierre\AppData\Roaming\Media Player Classic
O43 - CFD: 2015/07/01 18:51:23 - [] SD -- C:\Users\Pierre\AppData\Roaming\Microsoft
O43 - CFD: 2010/12/01 10:23:48 - [] D -- C:\Users\Pierre\AppData\Roaming\Mozilla
O43 - CFD: 2013/07/22 10:31:53 - [] D -- C:\Users\Pierre\AppData\Roaming\MusicMP3Downloader
O43 - CFD: 2010/07/15 20:17:01 - [] D -- C:\Users\Pierre\AppData\Roaming\Nero
O43 - CFD: 2010/07/25 09:53:35 - [0] D -- C:\Users\Pierre\AppData\Roaming\NeroDigital™
O43 - CFD: 2015/02/27 11:21:43 - [] D -- C:\Users\Pierre\AppData\Roaming\Nokia
O43 - CFD: 2015/02/27 11:21:43 - [0] D -- C:\Users\Pierre\AppData\Roaming\Nokia Suite
O43 - CFD: 2014/09/02 08:50:45 - [] D -- C:\Users\Pierre\AppData\Roaming\Oracle
O43 - CFD: 2015/02/26 13:53:41 - [] D -- C:\Users\Pierre\AppData\Roaming\PC Suite
O43 - CFD: 2010/10/16 09:05:04 - [0] D -- C:\Users\Pierre\AppData\Roaming\Publish Providers
O43 - CFD: 2012/08/08 15:38:29 - [] D -- C:\Users\Pierre\AppData\Roaming\Real
O43 - CFD: 2015/05/21 09:16:13 - [] D -- C:\Users\Pierre\AppData\Roaming\Skype
O43 - CFD: 2012/04/23 07:25:03 - [] D -- C:\Users\Pierre\AppData\Roaming\skypePM
O43 - CFD: 2010/10/16 09:04:55 - [] D -- C:\Users\Pierre\AppData\Roaming\Sony
O43 - CFD: 2012/07/23 10:29:34 - [] D -- C:\Users\Pierre\AppData\Roaming\TomTom
O43 - CFD: 2013/12/16 17:13:43 - [] D -- C:\Users\Pierre\AppData\Roaming\uTorrent
O43 - CFD: 2015/07/27 17:05:31 - [] D -- C:\Users\Pierre\AppData\Roaming\vlc
O43 - CFD: 2011/01/03 12:17:10 - [] D -- C:\Users\Pierre\AppData\Roaming\Voxmobili
O43 - CFD: 2013/10/09 17:31:06 - [0] D -- C:\Users\Pierre\AppData\Roaming\Vso
O43 - CFD: 2010/10/19 01:25:14 - [0] D -- C:\Users\Pierre\AppData\Roaming\Windows Live Writer
O43 - CFD: 2015/07/24 17:41:13 - [] D -- C:\Users\Pierre\AppData\Roaming\WindSolutions
O43 - CFD: 2011/02/23 15:26:32 - [] D -- C:\Users\Pierre\AppData\Roaming\WinRAR
O43 - CFD: 2015/02/26 16:00:50 - [] D -- C:\Users\Pierre\AppData\Roaming\Wondershare
O43 - CFD: 2010/11/26 13:23:02 - [] D -- C:\Users\Pierre\AppData\Roaming\Youtube Downloader HD
O43 - CFD: 2015/07/27 17:14:54 - [] D -- C:\Users\Pierre\AppData\Roaming\ZHP
O43 - CFD: 2012/01/29 18:37:26 - [0] D -- C:\Users\Pierre\AppData\Roaming\ZoomBrowser EX
O43 - CFD: 2014/02/01 12:40:00 - [0] D -- C:\Users\Pierre\AppData\Local\addtoustart
O43 - CFD: 2015/07/05 16:29:34 - [] D -- C:\Users\Pierre\AppData\Local\Adobe
O43 - CFD: 2013/07/30 12:14:45 - [] D -- C:\Users\Pierre\AppData\Local\Adobe_Systems_Incorporate
O43 - CFD: 2012/07/26 09:09:07 - [] D -- C:\Users\Pierre\AppData\Local\Ahead
O43 - CFD: 2013/07/31 11:18:54 - [] D -- C:\Users\Pierre\AppData\Local\Amazon
O43 - CFD: 2010/01/26 16:37:59 - [] D -- C:\Users\Pierre\AppData\Local\Apple
O43 - CFD: 2015/05/20 22:24:01 - [] D -- C:\Users\Pierre\AppData\Local\Apple Computer
O43 - CFD: 2010/01/25 13:02:04 - [0] SHD -- C:\Users\Pierre\AppData\Local\Application Data
O43 - CFD: 2010/05/02 13:03:10 - [] D -- C:\Users\Pierre\AppData\Local\Apps
O43 - CFD: 2013/09/01 17:46:08 - [] D -- C:\Users\Pierre\AppData\Local\avgchrome
O43 - CFD: 2015/06/24 10:26:06 - [] D -- C:\Users\Pierre\AppData\Local\calibre-cache
O43 - CFD: 2015/06/02 11:28:28 - [] D -- C:\Users\Pierre\AppData\Local\Canal.MyCanal
O43 - CFD: 2015/07/15 19:52:53 - [] D -- C:\Users\Pierre\AppData\Local\CEF
O43 - CFD: 2015/07/02 15:13:02 - [] D -- C:\Users\Pierre\AppData\Local\Chromium
O43 - CFD: 2015/07/27 10:14:25 - [0] D -- C:\Users\Pierre\AppData\Local\CrashDumps
O43 - CFD: 2012/09/27 18:40:57 - [] D -- C:\Users\Pierre\AppData\Local\CrashRpt =>.Legitimate.CrashReports
O43 - CFD: 2015/07/25 17:17:42 - [0] D -- C:\Users\Pierre\AppData\Local\CRE
O43 - CFD: 2015/07/25 17:37:01 - [] D -- C:\Users\Pierre\AppData\Local\Diagnostics
O43 - CFD: 2014/04/13 16:29:13 - [] D -- C:\Users\Pierre\AppData\Local\Downloaded Installations
O43 - CFD: 2015/06/16 10:34:59 - [0] SHD -- C:\Users\Pierre\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/16 10:34:59 - [0] SHD -- C:\Users\Pierre\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/16 10:34:59 - [0] SHD -- C:\Users\Pierre\AppData\Local\EmieUserList
O43 - CFD: 2012/01/14 12:03:00 - [] D -- C:\Users\Pierre\AppData\Local\FFHB
O43 - CFD: 2015/07/27 11:35:07 - [0] D -- C:\Users\Pierre\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/03/17 08:52:48 - [] D -- C:\Users\Pierre\AppData\Local\Google
O43 - CFD: 2015/06/02 11:46:25 - [] D -- C:\Users\Pierre\AppData\Local\GWX
O43 - CFD: 2010/01/25 13:02:04 - [0] SHD -- C:\Users\Pierre\AppData\Local\Historique
O43 - CFD: 2013/06/21 18:37:21 - [] D -- C:\Users\Pierre\AppData\Local\Macromedia
O43 - CFD: 2015/07/02 19:13:33 - [] D -- C:\Users\Pierre\AppData\Local\Microsoft
O43 - CFD: 2011/12/24 22:47:10 - [] D -- C:\Users\Pierre\AppData\Local\Microsoft Games
O43 - CFD: 2012/09/05 15:27:01 - [] D -- C:\Users\Pierre\AppData\Local\Microsoft Help
O43 - CFD: 2013/12/24 16:01:54 - [] D -- C:\Users\Pierre\AppData\Local\Mozilla
O43 - CFD: 2010/08/02 09:23:44 - [] D -- C:\Users\Pierre\AppData\Local\Nero
O43 - CFD: 2015/02/26 13:49:21 - [] D -- C:\Users\Pierre\AppData\Local\Nokia
O43 - CFD: 2015/02/27 11:21:43 - [] D -- C:\Users\Pierre\AppData\Local\NokiaAccount
O43 - CFD: 2015/07/20 09:11:16 - [] D -- C:\Users\Pierre\AppData\Local\NPE
O43 - CFD: 2013/09/01 17:44:04 - [] D -- C:\Users\Pierre\AppData\Local\Programs
O43 - CFD: 2013/04/27 09:17:59 - [] D -- C:\Users\Pierre\AppData\Local\RapidSolution
O43 - CFD: 2014/08/10 11:48:03 - [] D -- C:\Users\Pierre\AppData\Local\Skype
O43 - CFD: 2015/07/02 10:45:21 - [] D -- C:\Users\Pierre\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 2010/10/16 09:02:59 - [] D -- C:\Users\Pierre\AppData\Local\Sony
O43 - CFD: 2015/07/27 17:14:57 - [] D -- C:\Users\Pierre\AppData\Local\Temp
O43 - CFD: 2010/01/25 13:02:04 - [0] SHD -- C:\Users\Pierre\AppData\Local\Temporary Internet Files
O43 - CFD: 2012/07/23 10:29:34 - [] D -- C:\Users\Pierre\AppData\Local\TomTom
O43 - CFD: 2011/11/11 11:55:34 - [] D -- C:\Users\Pierre\AppData\Local\uTorrent
O43 - CFD: 2010/02/05 16:10:31 - [] D -- C:\Users\Pierre\AppData\Local\VirtualStore
O43 - CFD: 2015/05/20 11:06:36 - [] D -- C:\Users\Pierre\AppData\Local\Windows Live
O43 - CFD: 2010/11/29 18:17:26 - [] D -- C:\Users\Pierre\AppData\Local\Windows Live Writer
O43 - CFD: 2012/07/25 02:07:51 - [] D -- C:\Users\Pierre\AppData\Local\WMTools Downloaded Files
O43 - CFD: 2015/02/26 16:01:09 - [] D -- C:\Users\Pierre\AppData\Local\Wondershare
O43 - CFD: 2010/10/21 14:31:04 - [] D -- C:\Users\Pierre\AppData\Local\Xara
O43 - CFD: 2011/08/08 17:57:35 - [0] D -- C:\Users\Pierre\AppData\Local\{0176600E-5AFA-4891-83B7-C70C0A551B31}
O43 - CFD: 2012/10/29 20:30:55 - [0] D -- C:\Users\Pierre\AppData\Local\{04F0B729-D689-4631-824F-76E9BDAEC6B7}
O43 - CFD: 2015/07/26 17:15:57 - [0] D -- C:\Users\Pierre\AppData\Local\{1A5FCF83-107B-4D25-9FF1-5D076453888F}
O43 - CFD: 2012/08/08 15:36:46 - [0] D -- C:\Users\Pierre\AppData\Local\{1AEC1A86-776D-43CC-9A13-C3F4D676BD61}
O43 - CFD: 2011/10/10 23:32:48 - [0] D -- C:\Users\Pierre\AppData\Local\{233B5D51-7C50-49B5-B6BA-ACB6E1622FDB}
O43 - CFD: 2012/07/24 09:26:42 - [0] D -- C:\Users\Pierre\AppData\Local\{29A28C7F-70F8-49E9-8CAC-437040DCC8BF}
O43 - CFD: 2012/07/24 09:19:55 - [0] D -- C:\Users\Pierre\AppData\Local\{2BFF7213-D7C9-4EDC-8799-C746F4221C32}
O43 - CFD: 2011/09/04 10:32:30 - [0] D -- C:\Users\Pierre\AppData\Local\{3B18A1E1-CF4C-46C4-A993-C96F5C86FA80}
O43 - CFD: 2011/04/11 17:36:39 - [0] D -- C:\Users\Pierre\AppData\Local\{43F913B4-DB3F-4C49-8268-30C378A02D7F}
O43 - CFD: 2015/05/20 11:06:35 - [0] D -- C:\Users\Pierre\AppData\Local\{6CA188CB-AC71-414C-B990-E06A040F2A0A}
O43 - CFD: 2012/04/01 16:59:04 - [0] D -- C:\Users\Pierre\AppData\Local\{7736933E-2873-4C47-8B57-8675E99A01B0}
O43 - CFD: 2012/08/08 15:36:58 - [0] D -- C:\Users\Pierre\AppData\Local\{77755313-D9A1-4F04-912B-3251361B61FD}
O43 - CFD: 2012/01/23 17:48:29 - [0] D -- C:\Users\Pierre\AppData\Local\{8DEAC1B6-97C0-4029-A1F8-9D00445667A1}
O43 - CFD: 2011/10/12 15:53:05 - [0] D -- C:\Users\Pierre\AppData\Local\{932A4BD7-38AA-43B0-A19D-4006A4909F88}
O43 - CFD: 2015/06/25 16:19:01 - [0] D -- C:\Users\Pierre\AppData\Local\{940BC79B-06CD-45B0-B5E5-348DEF185ADB}
O43 - CFD: 2012/07/24 09:19:38 - [0] D -- C:\Users\Pierre\AppData\Local\{A317D221-9EA9-47ED-A58A-D8F25ECBEAE5}
O43 - CFD: 2011/10/12 15:53:16 - [0] D -- C:\Users\Pierre\AppData\Local\{A945FE32-5990-40F7-987E-77F17F115B07}
O43 - CFD: 2012/05/30 16:10:43 - [0] D -- C:\Users\Pierre\AppData\Local\{BF1B0889-BE75-4914-970F-2E23D96E13C8}
O43 - CFD: 2012/07/24 09:26:54 - [0] D -- C:\Users\Pierre\AppData\Local\{D76FD1E6-3119-44B4-92EF-09F6025E7FCF}
O43 - CFD: 2012/03/03 16:09:10 - [0] D -- C:\Users\Pierre\AppData\Local\{EB769F87-1E14-4D36-98FC-688A04C62FA9}
O43 - CFD: 2011/08/08 17:57:48 - [0] D -- C:\Users\Pierre\AppData\Local\{EBFC87AB-E6B6-45B2-ABA2-29EA806ED261}
O43 - CFD: 2009/07/14 06:42:04 - [] RD -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/02 09:53:46 - [] RD -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/07/31 11:18:40 - [] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
O43 - CFD: 2013/09/04 14:15:06 - [] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 2015/05/20 22:45:47 - [] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/02/25 11:43:17 - [0] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader Converter
O43 - CFD: 2011/07/28 10:10:00 - [] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/01/14 17:39:30 - [0] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HomePlayer
O43 - CFD: 2009/07/14 06:37:42 - [] RD -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2010/03/01 14:49:41 - [0] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MixVibesPro5
O43 - CFD: 2015/07/02 15:12:34 - [] RD -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2011/02/23 15:26:22 - [] D -- C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (13) - 2s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\AppleSyncNotifier [Key] . (...) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\iCloudServices [Key] . (.Apple Inc. - iCloud.) -- C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O53 - SMSR:HKLM\...\startupreg\NBKeyScan [Key] . (...) -- C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files\Real\RealPlayer\Update\realsched.exe
O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
O53 - SMSR:HKLM\...\startupreg\TrayServer [Key] . (.Magix - Trayserver.) -- C:\Program Files\MAGIX\Video_deluxe_17_Plus_Version_a_telecharger\TrayServer_fr.exe
O53 - SMSR:HKLM\...\startupreg\Windows Mobile Device Center [Key] . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\Windows\WindowsMobile\wmdc.exe
O53 - SMSR:HKLM\...\startupreg\Wondershare Helper Compact.exe [Key] . (.Wondershare - Wondershare Studio.) -- C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

---\\ Liste des pilotes du système (SDL) (O58) (78) - 9s
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976]
O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512]
O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400]
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256]
O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312]
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608]
O58 - SDL:2004/08/13 10:56:20 A . (. - ATK0110 ACPI Utility.) -- C:\Windows\System32\drivers\ASACPI.sys [5810]
O58 - SDL:2009/09/30 06:19:20 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [4450816]
O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888]
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128]
O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080]
O58 - SDL:2004/05/19 02:38:08 A . (.Philips Components BU Imaging Solutions - Philips ToUcam camera minidriver.) -- C:\Windows\System32\drivers\camdrv21.sys [253909]
O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952]
O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720]
O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712]
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160]
O58 - SDL:2012/08/21 13:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [26840]
O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624]
O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152]
O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160]
O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040]
O58 - SDL:2010/07/29 00:25:02 A . (.Initio Corporation - Initio Default Vendor Specific Device Drive.) -- C:\Windows\System32\drivers\ivusb.sys [25112]
O58 - SDL:2009/07/14 00:02:46 A . (.Atheros Communications, Inc. - Atheros L1 Gigabit Ethernet 10/100/1000Base.) -- C:\Windows\System32\drivers\l160x86.sys [47104]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824]
O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848]
O58 - SDL:2012/01/18 06:44:28 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\Windows\System32\drivers\lvrs.sys [312096]
O58 - SDL:2012/01/18 06:44:52 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\drivers\lvuvc.sys [4332960]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584]
O58 - SDL:2003/10/11 08:39:52 A . (.Matsushita Electric Industrial Co., Ltd. - Panasonic DVC SERIAL Port Driver.) -- C:\Windows\System32\drivers\mtdv2ks2.sys [11648]
O58 - SDL:2003/10/15 17:07:38 A . (.Matsushita Electric Industrial Co., Ltd. - Panasonic DVC SERIAL-USB Driver.) -- C:\Windows\System32\drivers\mtdv2ku2.sys [12288]
O58 - SDL:2013/07/25 16:53:46 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\Windows\System32\drivers\netaapl.sys [18944]
O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624]
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120]
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744]
O58 - SDL:2012/10/17 15:53:46 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfd.sys [19072]
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488]
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064]
O58 - SDL:2012/08/20 11:48:22 A . (.RapidSolution Software AG - Intermediate Filter Driver.) -- C:\Windows\System32\drivers\rrnetcap.sys [31848]
O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2009/07/14 01:45:33 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [83456]
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016]
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888]
O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072]
O58 - SDL:2013/04/24 13:45:08 A . (.RapidSolution Software AG - Audials Sound Capturing.) -- C:\Windows\System32\drivers\tbhsd.sys [39048]
O58 - SDL:2014/07/28 14:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl.sys [45056]
O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976]
O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904]
O58 - SDL:2012/03/07 14:31:08 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\drivers\WsAudio_DeviceS(1).sys [25704]
O58 - SDL:2012/03/07 14:31:08 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\drivers\WsAudio_DeviceS(2).sys [25704]
O58 - SDL:2012/03/07 14:31:08 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\drivers\WsAudio_DeviceS(3).sys [25704]
O58 - SDL:2012/03/07 14:31:08 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\drivers\WsAudio_DeviceS(4).sys [25704]
O58 - SDL:2012/03/07 14:31:08 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\drivers\WsAudio_DeviceS(5).sys [25704]
O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (38) - 40s
O61 - LFC: 2015/07/26 11:19:57 A . (..) -- C:\Users\Pierre\AppData\Roaming\calibre\plugins\DeDRM\libraryfiles\alfcrypto.dll [70144]
O61 - LFC: 2015/07/26 11:19:57 A . (..) -- C:\Users\Pierre\AppData\Roaming\calibre\plugins\DeDRM\libraryfiles\alfcrypto64.dll [52224]
O61 - LFC: 2015/07/26 11:19:57 A . (..) -- C:\Users\Pierre\AppData\Roaming\calibre\alfcrypto\alfcrypto.dll [70144]
O61 - LFC: 2015/07/26 11:19:57 A . (..) -- C:\Users\Pierre\AppData\Roaming\calibre\alfcrypto\alfcrypto64.dll [52224]
O61 - LFC: 2015/07/26 11:06:17 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\Lyrics\LyricsDemon.dll [205824]
O61 - LFC: 2015/07/26 11:06:18 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\Lyrics\LyricsFreak.dll [199680]
O61 - LFC: 2015/07/26 11:06:18 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\Lyrics\LyricsKeeper.dll [209920]
O61 - LFC: 2015/07/26 11:06:18 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\Lyrics\LyricWiki.dll [200704]
O61 - LFC: 2015/07/26 11:06:19 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\Lyrics\MetroLyrics.dll [203776]
O61 - LFC: 2015/07/26 11:06:16 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\General\allmusic.dll [201216]
O61 - LFC: 2015/07/26 11:06:16 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\General\amazon.dll [290304]
O61 - LFC: 2015/07/26 11:06:17 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\General\musicbrainz.dll [273408]
O61 - LFC: 2015/07/26 11:06:20 A . (.Audials AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\ArtistInfo\allmusic_ai.dll [195584]
O61 - LFC: 2015/07/26 11:06:20 A . (.Audials AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\ArtistInfo\google.dll [209920]
O61 - LFC: 2015/07/26 11:06:20 A . (.Audials AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\ArtistInfo\lastfm.dll [205824]
O61 - LFC: 2015/07/26 11:06:37 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\4shared.dll [184320]
O61 - LFC: 2015/07/26 11:06:38 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\Box.dll [175616]
O61 - LFC: 2015/07/26 11:06:38 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\DailyMotion.dll [165376]
O61 - LFC: 2015/07/26 11:06:39 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\Dropbox.dll [326656]
O61 - LFC: 2015/07/26 11:06:40 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\GenericPluginsCommonShared.dll [985600] =>PUP.Optional.CommonShare
O61 - LFC: 2015/07/26 11:06:41 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\GoogleDrive.dll [340992]
O61 - LFC: 2015/07/26 11:06:42 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\GooglePlay.dll [569856]
O61 - LFC: 2015/07/26 11:06:47 A . (.Audials AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\JsEngine.dll [4508672]
O61 - LFC: 2015/07/26 11:06:47 A . (.RapidSolution Software AG.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\OAuth.dll [15360]
O61 - LFC: 2015/07/26 11:06:47 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\One.dll [122368]
O61 - LFC: 2015/07/26 11:06:48 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\OneDrive.dll [308224]
O61 - LFC: 2015/07/26 11:06:48 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\SkyDrive.dll [63488]
O61 - LFC: 2015/07/26 11:06:49 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\SoundCloud.dll [117760]
O61 - LFC: 2015/07/26 11:06:50 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\SoundOwl.dll [110080]
O61 - LFC: 2015/07/26 11:06:50 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\Strato.dll [63488]
O61 - LFC: 2015/07/26 11:06:51 A . (.CompanyName.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\Tangle.dll [150528]
O61 - LFC: 2015/07/26 11:06:51 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\TOnline.dll [69120]
O61 - LFC: 2015/07/26 11:06:52 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\Veoh.dll [163840]
O61 - LFC: 2015/07/26 11:06:52 A . (.CompanyName.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\Vimeo.dll [132608]
O61 - LFC: 2015/07/26 11:06:53 A . (.TODO: .) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\WebDAV.dll [157184]
O61 - LFC: 2015/07/26 11:06:54 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\WebDAVPluginsCommon.dll [732672]
O61 - LFC: 2015/07/26 11:06:55 A . (.RapidSolution Software.) -- C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\YouTube.dll [220160]
O61 - LFC: 2015/07/26 11:04:51 A . (..) -- C:\Users\Pierre\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [78605]

---\\ Associations Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.EXE
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (27) - 8s
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.admin", false); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.aflt", "babsst"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.autoRvrt", "false"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.dfltLng", "fr"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.excTlbr", false); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.ffxUnstlRst", true); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.id", "1e05c0d7000000000000001d6023652b"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.instlDay", "15955"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.instlRef", "sst"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.newTab", false); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.prdct", "delta"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.prtnrId", "delta"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.rvrt", "false"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.smplGrp", "none"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.tlbrId", "base"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.tlbrSrchUrl", ""); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.vrsn", "1.8.24.6"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.vrsnTs", "1.8.24.612:29:19"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta.vrsni", "1.8.24.6"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta_i.babExt", ""); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta_i.babTrack", "affID=119403&tsp=4998"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.delta_i.srcExt", "ss"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("extensions.enabledItems", "{ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.7,moovida@spointer.com:2.4.1379.97,offerboxffx@o[...] =>PUP.Optional.OfferBox
O69 - SBI: prefs.js [Pierre - xw43w4jo.default] user_pref("vidbar.usersearch-url", "http://bing.zugotoolbar.com/s/?site=Bing&pid=87&q="); =>PUP.Optional.Zugo
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2057216]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (12) - 2s
O87 - FAEL: "TCP Query User{89A562A4-2A19-479F-8E43-1913C73B931F}C:\program files\homeplayer\homeplayer.exe" [In-None-P6-TRUE] .(...) -- C:\program files\homeplayer\homeplayer.exe
O87 - FAEL: "UDP Query User{785ACE9B-34B5-420C-A86F-A20F9F90CE3D}C:\program files\homeplayer\homeplayer.exe" [In-None-P17-TRUE] .(...) -- C:\program files\homeplayer\homeplayer.exe
O87 - FAEL: "TCP Query User{6A1F68C3-E8A8-4685-8514-F7FA40747F88}C:\program files\real\realplayer\realplay.exe" [In-None-P6-TRUE] .(.RealNetworks, Inc. - RealPlayer.) -- C:\program files\real\realplayer\realplay.exe
O87 - FAEL: "UDP Query User{6280473D-662D-4827-8C7E-0907DC015643}C:\program files\real\realplayer\realplay.exe" [In-None-P17-TRUE] .(.RealNetworks, Inc. - RealPlayer.) -- C:\program files\real\realplayer\realplay.exe
O87 - FAEL: "TCP Query User{D28485C8-9173-4631-8DFC-F3CCD15AD3B0}C:\program files\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe
O87 - FAEL: "UDP Query User{B5FBD1B1-D3A3-428C-9E6D-09BFCE813F6B}C:\program files\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe
O87 - FAEL: "{4E13FC93-B0A0-4EDB-B934-8923F4DCBEBF}" [In-None-P17-TRUE] .(.Audials AG - Audials.) -- C:\Program Files\RapidSolution\Audials 9\Audials.exe
O87 - FAEL: "{7FA79388-4E8D-498F-B36A-6AB0419295D4}" [In-None-P17-TRUE] .(.Audials AG - Audials.) -- C:\Program Files\Audials\Audials 10\Audials.exe
O87 - FAEL: "{15285965-E3A1-4732-8E4F-D4876B9E2DDA}" [In-None-P6-TRUE] .(...) -- C:\Program Files\HomePlayer\HomePlayer.exe
O87 - FAEL: "{32DF1255-9CCD-4BFD-A037-82AD5CF46921}" [In-None-P17-TRUE] .(...) -- C:\Program Files\HomePlayer\HomePlayer.exe
O87 - FAEL: "{CEF58BB7-CB35-4152-8281-0265710B833A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\HomePlayer\VLC\vlc.exe
O87 - FAEL: "{3FCAC16D-DF2D-408C-A806-52891C9AB809}" [In-None-P17-TRUE] .(...) -- C:\Program Files\HomePlayer\VLC\vlc.exe

---\\ Scan Additionnel (O88) (8) - 0s
C:\Windows\System32\Tasks\cinemaplus-9.0v_helper_service =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar =>PUP.Optional.SmartBar
C:\Program Files\Software =>PUP.Optional.Boxore
C:\Users\Pierre\AppData\Roaming\freegames4357 =>PUP.Optional.ScriptHost
C:\Users\Pierre\AppData\Local\CrashRpt =>.Legitimate.CrashReports
C:\Users\Pierre\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\Pierre\AppData\Local\Software =>PUP.Optional.Boxore
C:\Users\Pierre\AppData\Local\RapidSolution\Audials_2013\PluginsManager\DLLs\GenericPluginsCommonShared.dll =>PUP.Optional.CommonShare

---\\ Récapitulatif des éléments trouvées sur votre station (10) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/adware-scripthost/ =>PUP.Optional.ScriptHost
http://www.nicolascoolman.fr/blog =>.Legitimate.CrashReports
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/pup-commonshare/ =>PUP.Optional.CommonShare
http://www.nicolascoolman.fr/toolbar-deltasearch/ =>Toolbar.DeltaSearch
http://www.nicolascoolman.fr/pup-offerbox/ =>PUP.Optional.OfferBox
http://www.nicolascoolman.fr/adware-zugo/ =>PUP.Optional.Zugo

~ End of the scan, 27484 items in 195 seconds (1043)(0)()

Publicité


Signaler le contenu de ce document

Publicité