cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.5.84 Par Nicolas Coolman (2015\07\05)
~ Démarré par Cat (Administrator) (2015/07/07 12:50:35)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Cat\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Cat\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v43.0.2357.130
MSIE: Internet Explorer v11.0.9600.17843

---\\ Informations sur les produits Windows (9) - 11s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 9YQTR
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 2s
Avast Free Antivirus v10.2.2218
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Surveillance de Logiciels (2) - 3s
Adobe Flash Player 10 Plugin
Adobe Reader 9.1 MUI

---\\ Logiciels de partage P2P (1) - 3s
Vuze v5.5.0.0

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 4193556
~ System Restore: Activé (Enable)
~ System drive C: has 36 GB free of 119 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PCDECAT
~ User Name: Cat
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 36 GB free of 119 GB (System)
~ Drive D: has 341 GB free of 342 GB

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024]
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2426880]
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184]
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808]

---\\ Processus lancés (34) - 4s
[MD5.D900EEE33EDF655872CBA55ADAE0201A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 188.3.) -- C:\Windows\system32\nvvsvc.exe [392296] [PID.760]
[MD5.D900EEE33EDF655872CBA55ADAE0201A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 188.3.) -- C:\Windows\system32\nvvsvc.exe [392296] [PID.1148]
[MD5.2D00D3DADC1D3326BA788EB071F2726E] - (.ASUSTeK Computer Inc. - ASUS FastBoot.) -- C:\Windows\system32\FBAgent.exe [379520] [PID.1328]
[MD5.18E5C2F937F9DEB8C282DF66A3761925] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [84536] [PID.1372]
[MD5.7910158929571214A959D5A6D16DD9C0] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1408]
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1440]
[MD5.E605F35F03C881DC46902E0E2F5985B3] - (.SEIKO EPSON CORPORATION - MyEpson Portal Service.) -- C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe [703984] [PID.392]
[MD5.E55F8D27EB014B31073F2F60270B6B3E] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Windows\SysWOW64\nvSCPAPISvr.exe [239208] [PID.2068]
[MD5.A903E5C565A2677F3960E4AAB7B42280] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5495056] [PID.2216]
[MD5.D19C99CF2938AEAE39805895D160E670] - (.SEIKO EPSON CORPORATION - MyEpson Portal.) -- C:\Program Files (x86)\epson\MyEpson Portal\mep.exe [2387440] [PID.2820]
[MD5.852EE4F61139A1B3F44EDAA0D5B3FC14] - (...) -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe [53888] [PID.2660]
[MD5.868E3486E7EC522330344152A5535783] - (.ASUS - SmartLogon Application.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [PID.2648]
[MD5.3DA69F11F6EF4F41C60C9BB56615046F] - (.ATK - Power4Gear Hybrid.) -- C:\Program Files\P4G\BatteryLife.exe [317568] [PID.2924]
[MD5.F4DCD4912B185C3AAEB92A7040832AD1] - (.Copyright (C) 2002 ASUSTek. Corporation - ALU.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [51768] [PID.2944]
[MD5.A6C20CBD1B10FEF25DAA4F1CF9FBC4FF] - (.ATK - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [684544] [PID.3300]
[MD5.BDD790326FABC31FB635130810245062] - (.Copyright (C) 2005 - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440] [PID.3360]
[MD5.41A5048E49372F091B2AE5A5B705B72D] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [183296] [PID.3520]
[MD5.9E897C2438BF9A48EE8F01076C403DA8] - (.ASUS - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [182912] [PID.3640]
[MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe [2488888] [PID.3704]
[MD5.AA11E1368EEB237DD100BAC6AFFE1C57] - (.ASUS - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113208] [PID.3724]
[MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe [174648] [PID.3732]
[MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.3960]
[MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.3432]
[MD5.A787947E214239C6957435180151F0D8] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9996320] [PID.4464]
[MD5.68161603C58407CBE4099D9CD739E0D1] - (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [621440] [PID.4664]
[MD5.8E060F1B8D91632F248923A3F90F7EF1] - (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [1736704] [PID.4756]
[MD5.DFAC78508DEFE8841DA4CDD1FA472C1A] - (.AlcorMicro Co., Ltd. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323584] [PID.5048]
[MD5.6320CA4A7C486D412D01391E202745F6] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_YATIHTE.EXE [239488] [PID.1696]
[MD5.4D141320B1713EB329E1603190D4B182] - (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7109248] [PID.3100]
[MD5.6FCA49B4085C32D1CC738C16142C0CDD] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624] [PID.4488]
[MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016] [PID.4536]
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.4592]
[MD5.5EE9595568218E6AA0FE0F6065B65EC7] - (.MyHeritage - MyHeritage Family Tree Builder check for up.) -- C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe [2477056] [PID.1092]
[MD5.C281F59DDA1C15EEDEA1C51B48643204] - (.SRS Labs, Inc. - SRS Premium Panel.) -- C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe [1754928] [PID.4416]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (11) - 1s
G2 - GCE: Extension [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [bepbmhgboaologfdajaanbcjmnhjmhfn] Google Voice Search Hotword (Beta)
G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Extension [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (4) - 0s
P2 - FPN: [HKCU] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products (Canada) Ltd..) -- C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products (Canada) Ltd..) -- C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
P2 - FPN: [HKLM] [@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products (Canada) Ltd..) -- C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (23) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:49195;https=127.0.0.1:49195 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 0s
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O2 - BHO: Google Dictionary Compression sdch [64Bits] - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} (Orphean)
O2 - BHO: (no name) [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} (Orphean)

---\\ Applications lancées au démarrage du sytème (O4) (22) - 2s
O4 - HKLM\..\Run: [ETDWare] . (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [ASUS WebStorage] . (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [AmIcoSinglun64] . (.AlcorMicro Co., Ltd. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHTE.EXE
O4 - HKLM\..\Wow6432Node\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Wow6432Node\Run: [Setwallpaper] c:\programdata\SetWallpaper.cmd (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Wow6432Node\Run: [Family Tree Builder Update] . (.MyHeritage - MyHeritage Family Tree Builder check for up.) -- C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-2267293756-2741004066-2468904841-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-2267293756-2741004066-2468904841-1000\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHTE.EXE

---\\ Raccourcis Global Startup (O4G) (2) - 3s
O4 - GS\Programs [Public]: Aide.lnk . (...) C:\Program Files (x86)\Probit Software\Easy Speed PC\EasySpeedPC.chm =>PUP.ProbitSoftware
O4 - GS\Programs [Public]: Uninstall.lnk . (...) C:\Program Files (x86)\Probit Software\Easy Speed PC\uninstall.exe =>PUP.ProbitSoftware

---\\ Modification Domaine/Adresses DNS (O17) (6) - 1s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = lan
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = lan

---\\ Liste des services NT non Microsoft et non désactivés (O23) (10) - 1s
O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe
O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: MyEpson Portal Service (MyEpson Portal Service) . (.SEIKO EPSON CORPORATION - MyEpson Portal Service.) - C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 188.3.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Windows\SysWOW64\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

---\\ Tâches planifiées en automatique (O39) (24) - 1s
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\JLI.job [1324]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\NKEGME.job [1330]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\RRHQCZID.job [1678]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\WWQUQ.job [1328]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ACMON [3068]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Live Update [3002]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS P4G [3040]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS SmartLogon Console Sensor [2986]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUSControlDeck [3110]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\AutoKMS [3490] =>HackTool.AutoKMS
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\AutoPico Daily Restart [3356] =>PUA.KMSpico
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\JLI [4344]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\NKEGME [4350]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\RRHQCZID [4698]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\WC3 [3090]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\WWQUQ [4348]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{1EADCDCC-A96A-4C86-B562-0D237440CEAD} [3138]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{4344B124-793F-4302-99F8-1ABD5E84DF47} [3144]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{655A4990-1DD7-4291-872C-076A63D83DA1} [3176]

---\\ Logiciels installés (O42) (92) - 13s
O42 - Logiciel: Vuze - (.Azureus Software, Inc..) [HKLM][64Bits] -- 8461-7759-5462-8226
O42 - Logiciel: ASUS USB2.0 UVC VGA WebCam - (.Sonix.) [HKLM][64Bits] -- ASUS USB2.0 UVC VGA WebCam
O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage
O42 - Logiciel: ETDWare PS/2-x64 7.0.5.9_WHQL - (...) [HKLM][64Bits] -- Elantech
O42 - Logiciel: EPSON SX535WD Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX535WD Series
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers
O42 - Logiciel: SAMSUNG Mobile Modem Driver Set - (...) [HKLM][64Bits] -- SAMSUNG Mobile Modem
O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (...) [HKLM][64Bits] -- Samsung Mobile phone USB driver Drive
O42 - Logiciel: SAMSUNG Mobile USB Modem Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem
O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem 1.0
O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {91EFE3A1-585E-4F66-B5F6-F118F56C4C47}
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM][64Bits] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1
O42 - Logiciel: SRS Premium Sound Control Panel - (.SRS Labs, Inc..) [HKLM][64Bits] -- {E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: ASUS AP Bank - (.ASUSTEK.) [HKLM][64Bits] -- ASUS AP Bank_is1
O42 - Logiciel: ASUS_Screensaver - (...) [HKLM][64Bits] -- ASUS_Screensaver
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast
O42 - Logiciel: EPSON Scan - (...) [HKLM][64Bits] -- EPSON Scanner
O42 - Logiciel: MyHeritage Family Tree Builder - (.MyHeritage.com.) [HKLM][64Bits] -- Family Tree Builder
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: MON UNIVERS CORAPHOTOS - (.CEWE Stiftung u Co. KGaA.) [HKLM][64Bits] -- MON UNIVERS CORAPHOTOS
O42 - Logiciel: monAlbumPhoto - (.monAlbumPhoto.) [HKLM][64Bits] -- monAlbumPhoto_is1
O42 - Logiciel: MyEpson Portal - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- MyEpson Portal
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer
O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {0BE9E708-5DC0-4963-9CFD-0AA519090E79}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E}
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
O42 - Logiciel: ASUS FancyStart - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {2B81872B-A054-48DA-BE3B-FA5C164C303A}
O42 - Logiciel: MyEpson Portal - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3361D415-BA35-4143-B301-661991BA6219}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: KMS Pico Automatic Activator version 1.0 - (.Activators.) [HKLM][64Bits] -- {41072260-8081-4A2E-9815-0742E557E5FD}_is1
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B}
O42 - Logiciel: ControlDeck - (.ASUS.) [HKLM][64Bits] -- {5B65EF64-1DFA-414A-8C94-7BB726158E21}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7B77622E-DE90-48EA-B2C7-227B1DE58A01}
O42 - Logiciel: Chicken Invaders 2 - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}
O42 - Logiciel: Alice Greenfingers - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}
O42 - Logiciel: Dream Day Wedding Married in Manhattan - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115233673}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054791) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054791) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054791) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}
O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUS_{AE1BB975-11D1-49A0-82E8-1D26DD62AFE7}
O42 - Logiciel: ASUS MultiFrame - (.ASUS.) [HKLM][64Bits] -- {9D48531D-2135-49FC-BC29-ACCDA5396A76}
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
O42 - Logiciel: Adobe Reader 9.1 MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001}
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {B4089055-D468-45A4-A6BA-5A138DD715FC}
O42 - Logiciel: PhotoDentelle - (.UNKNOWN.) [HKLM][64Bits] -- {C2848958-B7A4-7970-5E06-79FFCB1A8E64}
O42 - Logiciel: Samsung PC Studio 3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {C4A4722E-79F9-417C-BD72-8D359A090C97}
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {C9991C9B-0783-452E-8954-AB93E2AB3B80}_is1
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}
O42 - Logiciel: ASUS Virtual Camera - (.asus.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe
O42 - Logiciel: Vistaprint Livres photo - (.Vistaprint.) [HKCU][64Bits] -- {70B0F1A3-D243-4FB9-B2C8-074350115F98}_is1

---\\ HKCU & HKLM Software Keys (95) - 13s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Clara
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\globalUpdate =>PUP.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HPS
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\MAP-DN
HKLM\SOFTWARE\Wow6432Node\MaxPower
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\MON UNIVERS CORAPHOTOS
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MyHeritage.com
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\Oberon Media
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Reg
HKLM\SOFTWARE\Wow6432Node\Samsung
HKLM\SOFTWARE\Wow6432Node\Samsung Electronics Co., Ltd.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Systweak
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\ATK0100
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Azureus
HKCU\SOFTWARE\CeWe Color
HKCU\SOFTWARE\ClkApp
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\JLI
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magnet
HKCU\SOFTWARE\MAP-DN
HKCU\SOFTWARE\monAlbumPhoto
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MyHeritage.com
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NKEGME
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Probit Software =>PUP.ProbitSoftware
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\RRHQCZID
HKCU\SOFTWARE\rttasks =>PUP.RocketTab
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Samsung PC Studio
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Store =>PUP.Optional
HKCU\SOFTWARE\SubSystems
HKCU\SOFTWARE\systweak =>PUP.Systweak
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\The Complete Genealogy Reporter
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WWQUQ
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Google

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (165) - 9s
O43 - CFD: 2014/12/01 19:50:31 - [] D -- C:\Program Files (x86)\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD: 2014/12/01 19:53:32 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2010/03/21 09:26:54 - [] D -- C:\Program Files (x86)\AmIcoSingLun
O43 - CFD: 2010/03/21 09:27:55 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 2014/12/01 14:56:20 - [0] D -- C:\Program Files (x86)\bb77461a-d19a-42c8-b636-6475b3078979 =>Adware.CrossRider
O43 - CFD: 2014/12/06 22:15:00 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2010/03/21 08:52:45 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/01/18 14:52:18 - [] D -- C:\Program Files (x86)\epson
O43 - CFD: 2010/03/21 08:58:06 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2014/12/20 15:31:06 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/06/13 13:12:23 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/12/06 20:46:35 - [] D -- C:\Program Files (x86)\KMS Pico Automatic Activator
O43 - CFD: 2015/07/07 10:07:30 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2014/09/29 09:54:13 - [] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2014/12/06 22:12:19 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2014/12/06 22:14:08 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2014/09/29 09:38:43 - [] D -- C:\Program Files (x86)\Microsoft OneDrive
O43 - CFD: 2015/05/18 09:40:48 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2014/12/06 22:14:42 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2014/09/27 14:13:42 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2014/12/08 11:48:49 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2014/11/26 23:30:00 - [] D -- C:\Program Files (x86)\monAlbumPhoto
O43 - CFD: 2015/04/17 16:26:43 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2010/03/21 08:56:57 - [] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2015/04/22 13:12:31 - [] D -- C:\Program Files (x86)\MyHeritage
O43 - CFD: 2014/10/05 19:13:49 - [] D -- C:\Program Files (x86)\PhotoDentelle
O43 - CFD: 2010/03/21 09:25:46 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2014/12/20 15:31:06 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2015/07/05 22:35:53 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2014/12/01 20:01:50 - [] D -- C:\Program Files (x86)\Software
O43 - CFD: 2015/07/06 12:08:47 - [] D -- C:\Program Files (x86)\TeamViewer
O43 - CFD: 2010/03/21 09:26:30 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2014/10/03 17:00:50 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2014/09/29 09:52:17 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2014/10/01 11:56:54 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/13 13:12:32 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2014/10/01 11:56:53 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2014/10/01 11:56:53 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2014/10/01 11:56:54 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2014/12/06 21:11:13 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2009/07/29 07:08:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2010/03/21 09:10:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 2010/03/21 09:27:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
O43 - CFD: 2014/12/19 16:02:05 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2015/01/18 14:52:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/05/21 10:45:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Park
O43 - CFD: 2009/07/29 07:08:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2010/03/21 08:58:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2014/12/06 20:46:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMS Pico Automatic Activator
O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/07 10:07:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2014/12/06 21:33:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/06/13 11:55:21 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2014/09/29 09:35:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
O43 - CFD: 2015/05/17 23:14:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2014/12/11 15:15:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MON UNIVERS CORAPHOTOS
O43 - CFD: 2014/11/26 23:29:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\monAlbumPhoto
O43 - CFD: 2010/03/21 09:22:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2014/10/13 16:36:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer
O43 - CFD: 2014/12/20 15:33:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung PC Studio 3
O43 - CFD: 2014/11/14 12:33:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2010/03/21 09:26:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs
O43 - CFD: 2010/03/21 09:27:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2009/07/14 09:44:38 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2014/09/29 09:53:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2014/12/06 21:11:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2010/03/21 09:18:39 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/01/18 16:20:15 - [] D -- C:\ProgramData\albumphoto
O43 - CFD: 2010/03/21 09:26:53 - [] D -- C:\ProgramData\AmUStor
O43 - CFD: 2015/07/06 15:35:09 - [] D -- C:\ProgramData\AppData
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/09/28 21:51:06 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2010/03/21 08:52:46 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2014/12/06 22:08:05 - [0] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/01/18 14:52:18 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2010/03/21 08:57:50 - [] D -- C:\ProgramData\Google
O43 - CFD: 2014/12/06 21:03:33 - [0] D -- C:\ProgramData\HealthAlert =>PUP.HealthAlert
O43 - CFD: 2014/12/11 15:15:43 - [] D -- C:\ProgramData\hps
O43 - CFD: 2014/12/02 21:34:29 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2014/12/13 14:17:36 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/06/13 11:54:54 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2014/09/29 09:38:17 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2014/12/06 22:08:39 - [] D -- C:\ProgramData\Microsoft Toolkit
O43 - CFD: 2015/04/22 13:13:22 - [] D -- C:\ProgramData\MyHeritage
O43 - CFD: 2015/07/07 10:52:47 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2010/03/21 09:11:55 - [] D -- C:\ProgramData\OberonGameConsole
O43 - CFD: 2010/03/21 09:27:10 - [] D -- C:\ProgramData\P4G
O43 - CFD: 2014/12/06 22:14:31 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/07/05 22:36:18 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2010/03/21 08:52:15 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2014/12/11 16:35:27 - [] D -- C:\ProgramData\tmp
O43 - CFD: 2014/11/18 12:08:25 - [] D -- C:\ProgramData\VirtualizedApplications
O43 - CFD: 2010/03/21 08:45:20 - [] D -- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
O43 - CFD: 2010/03/21 08:55:50 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/01/20 20:25:27 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2010/03/21 09:27:55 - [] D -- C:\Program Files (x86)\Common Files\ControlDeck
O43 - CFD: 2014/12/06 22:15:00 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2010/03/21 09:27:03 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2014/12/08 11:48:38 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2010/03/21 09:10:29 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2014/11/14 12:33:52 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2014/10/03 17:01:43 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2014/09/27 14:10:01 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2014/10/10 17:38:02 - [] D -- C:\Users\Cat\AppData\Roaming\Adobe
O43 - CFD: 2014/09/27 14:21:18 - [] D -- C:\Users\Cat\AppData\Roaming\Asus WebStorage
O43 - CFD: 2014/09/28 21:55:33 - [] D -- C:\Users\Cat\AppData\Roaming\AVAST Software
O43 - CFD: 2014/12/06 22:21:23 - [] D -- C:\Users\Cat\AppData\Roaming\Azureus
O43 - CFD: 2014/09/27 14:18:46 - [] D -- C:\Users\Cat\AppData\Roaming\Identities
O43 - CFD: 2014/09/28 22:14:57 - [] D -- C:\Users\Cat\AppData\Roaming\Macromedia
O43 - CFD: 2009/07/14 09:44:38 - [0] D -- C:\Users\Cat\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/02/16 00:29:23 - [] SD -- C:\Users\Cat\AppData\Roaming\Microsoft
O43 - CFD: 2015/04/24 15:44:30 - [] D -- C:\Users\Cat\AppData\Roaming\MyHeritage
O43 - CFD: 2014/10/05 19:13:52 - [] D -- C:\Users\Cat\AppData\Roaming\PhotoDentelle.7CA754E80384989F1590458075592A9DCA619756.1
O43 - CFD: 2014/12/20 15:34:26 - [] D -- C:\Users\Cat\AppData\Roaming\Samsung
O43 - CFD: 2015/07/07 12:45:23 - [] D -- C:\Users\Cat\AppData\Roaming\Skype
O43 - CFD: 2014/12/06 21:14:40 - [] D -- C:\Users\Cat\AppData\Roaming\SoftGrid Client
O43 - CFD: 2014/12/06 20:56:18 - [0] D -- C:\Users\Cat\AppData\Roaming\Store
O43 - CFD: 2014/12/06 20:57:20 - [0] D -- C:\Users\Cat\AppData\Roaming\systweak =>PUP.Systweak
O43 - CFD: 2015/07/06 12:07:48 - [] D -- C:\Users\Cat\AppData\Roaming\TeamViewer
O43 - CFD: 2015/04/22 13:12:43 - [0] D -- C:\Users\Cat\AppData\Roaming\The Complete Genealogy Reporter - FTB
O43 - CFD: 2014/10/30 14:38:59 - [0] D -- C:\Users\Cat\AppData\Roaming\TP
O43 - CFD: 2014/12/06 21:11:34 - [] D -- C:\Users\Cat\AppData\Roaming\WinRAR
O43 - CFD: 2015/07/07 12:51:03 - [] D -- C:\Users\Cat\AppData\Roaming\ZHP
O43 - CFD: 2014/10/10 17:38:57 - [] D -- C:\Users\Cat\AppData\Local\Adobe
O43 - CFD: 2014/09/27 14:09:13 - [0] SHD -- C:\Users\Cat\AppData\Local\Application Data
O43 - CFD: 2014/12/11 11:12:30 - [] D -- C:\Users\Cat\AppData\Local\Diagnostics
O43 - CFD: 2015/03/10 20:07:54 - [] SHD -- C:\Users\Cat\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/03/10 20:07:54 - [] SHD -- C:\Users\Cat\AppData\Local\EmieSiteList
O43 - CFD: 2015/03/10 20:07:54 - [] SHD -- C:\Users\Cat\AppData\Local\EmieUserList
O43 - CFD: 2014/10/30 11:53:48 - [] D -- C:\Users\Cat\AppData\Local\Google
O43 - CFD: 2014/09/27 14:09:13 - [0] SHD -- C:\Users\Cat\AppData\Local\Historique
O43 - CFD: 2014/12/11 11:12:11 - [] D -- C:\Users\Cat\AppData\Local\Microsoft
O43 - CFD: 2014/11/18 23:05:15 - [] D -- C:\Users\Cat\AppData\Local\Microsoft Help
O43 - CFD: 2014/09/27 14:09:29 - [] D -- C:\Users\Cat\AppData\Local\Power2Go
O43 - CFD: 2014/10/13 16:35:11 - [] D -- C:\Users\Cat\AppData\Local\Programs
O43 - CFD: 2014/11/14 12:34:23 - [] D -- C:\Users\Cat\AppData\Local\Skype
O43 - CFD: 2014/10/30 14:37:04 - [] D -- C:\Users\Cat\AppData\Local\SoftGrid Client
O43 - CFD: 2014/12/01 14:54:22 - [] D -- C:\Users\Cat\AppData\Local\Software
O43 - CFD: 2014/09/27 14:19:25 - [] D -- C:\Users\Cat\AppData\Local\SRS Labs
O43 - CFD: 2015/07/07 12:51:10 - [] D -- C:\Users\Cat\AppData\Local\Temp
O43 - CFD: 2014/09/27 14:09:13 - [0] SHD -- C:\Users\Cat\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/09/27 14:19:25 - [] D -- C:\Users\Cat\AppData\Local\VirtualStore
O43 - CFD: 2014/12/01 16:38:29 - [] D -- C:\Users\Cat\AppData\Local\Vistaprint Livres photo
O43 - CFD: 2014/12/02 13:43:02 - [] D -- C:\Users\Cat\AppData\Local\Windows Live
O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/12 15:01:34 - [] RD -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2010/03/21 08:52:55 - [] D -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
O43 - CFD: 2014/12/06 22:03:44 - [] D -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/04/22 13:12:45 - [] D -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyHeritage.com
O43 - CFD: 2015/03/12 15:01:34 - [] RD -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2014/12/01 16:36:48 - [] D -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vistaprint Livres photo
O43 - CFD: 2014/12/06 21:11:13 - [] D -- C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (4) - 0s
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
O53 - SMSR:HKLM\...\startupreg\ASUS Screen Saver Protector [Key] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe
O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

---\\ Liste des pilotes du système (SDL) (O58) (82) - 7s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864]
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904]
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008]
O58 - SDL:2009/08/21 08:48:17 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\drivers\AmUStor.sys [44032]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856]
O58 - SDL:2015/04/23 11:06:01 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [29168]
O58 - SDL:2015/04/23 11:06:01 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [89944]
O58 - SDL:2015/04/23 11:06:01 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528]
O58 - SDL:2015/04/23 11:06:01 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65736]
O58 - SDL:2015/04/23 11:05:35 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1047320]
O58 - SDL:2015/06/26 19:44:40 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [442264]
O58 - SDL:2015/04/23 11:06:02 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [137288]
O58 - SDL:2015/04/23 11:06:01 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [272248]
O58 - SDL:2009/10/05 03:33:59 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [1542656]
O58 - SDL:2009/05/13 18:07:20 A . (.ASUS - ATK0100 ACPI Utility.) -- C:\Windows\System32\drivers\ATK64AMD.sys [15928]
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704]
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720]
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480]
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488]
O58 - SDL:2015/07/06 15:36:24 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\E52222AB.sys [457824]
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496]
O58 - SDL:2009/10/15 11:23:19 A . (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Windows\System32\drivers\ETD.sys [117760]
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016]
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232]
O58 - SDL:2010/11/20 15:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720]
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496]
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112]
O58 - SDL:2009/07/20 11:29:39 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [15416]
O58 - SDL:2009/08/23 07:08:07 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E62x64.sys [56320]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/07/07 11:07:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2015/06/18 08:41:56 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704]
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2009/08/21 06:24:03 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [84512]
O58 - SDL:2009/12/11 01:15:11 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11710696]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2009/06/29 09:36:43 A . (.NVIDIA Corporation - NVIDIA nForce(TM) SMU Microcontroller Drive.) -- C:\Windows\System32\drivers\nvsmu.sys [28704]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2009/07/30 01:54:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor64.sys [241696]
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2010/01/19 12:42:21 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2242720]
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/06/10 22:35:57 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSG664.sys [56832]
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2008/12/29 11:14:27 A . (.Copyright 2004-2007 - USBCAMD for Sonix UVC.) -- C:\Windows\System32\drivers\sncduvc.sys [35456]
O58 - SDL:2009/08/12 05:38:01 A . (.Copyright 2004-2008 - UVC Camera Streaming Driver.) -- C:\Windows\System32\drivers\snp2uvc.sys [1799680]
O58 - SDL:2011/05/13 04:21:02 A . (.MCCI Corporation - SAMSUNG Android USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssadbus.sys [157672]
O58 - SDL:2011/05/13 04:21:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [13288]
O58 - SDL:2011/05/13 04:21:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcmnt.sys [13288]
O58 - SDL:2011/05/13 04:21:02 A . (.MCCI Corporation - SAMSUNG Android USB Modem Filter Driver.) -- C:\Windows\System32\drivers\ssadmdfl.sys [16872]
O58 - SDL:2011/05/13 04:21:04 A . (.MCCI Corporation - SAMSUNG Android USB Modem.) -- C:\Windows\System32\drivers\ssadmdm.sys [177640]
O58 - SDL:2011/05/13 04:21:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [13800]
O58 - SDL:2011/05/13 04:21:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwhnt.sys [13800]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI - SAMSUNG USB Mobile Device.) -- C:\Windows\System32\drivers\ss_bbus.sys [127488]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcm.sys [15360]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcmnt.sys [15360]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Modem Filter.) -- C:\Windows\System32\drivers\ss_bmdfl.sys [18944]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Modem.) -- C:\Windows\System32\drivers\ss_bmdm.sys [161280]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwh.sys [15872]
O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwhnt.sys [15872]
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (3) - 59s
O61 - LFC: 2015/07/06 12:07:14 A . (.TeamViewer GmbH.) -- C:\Users\Cat\Documents\TeamViewer_Setup_fr (1).exe [8052872]
O61 - LFC: 2015/07/06 11:31:32 A . (.TeamViewer GmbH.) -- C:\Users\Cat\Documents\TeamViewer_Setup_fr.exe [8052872]
O61 - LFC: 2015/06/29 20:39:16 A . (..) -- C:\Users\Cat\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [308]

---\\ Associations Shell Spawning (O67) (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 1s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (32) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2553856]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (12) - 25s
SR - Auto [// ::] [ 379520] AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\system32\FBAgent.exe
SR - Auto [2009/06/16 02:30:42] [ 84536] ASLDR Service (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
SR - Auto [2009/12/15 19:39:38] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
SR - Auto [2015/04/23 11:05:49] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SS - Auto [2014/10/18 15:15:41] [ 107912] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2014/10/18 15:15:41] [ 107912] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2010/03/21 08:57:46] [ 182768] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - Auto [2014/09/22 12:37:34] [ 703984] MyEpson Portal Service (MyEpson Portal Service) . (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe
SR - Auto [// ::] [ 392296] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - Auto [2009/12/11 16:50:00] [ 239208] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Windows\SysWOW64\nvSCPAPISvr.exe
SR - Auto [2015/06/18 12:55:23] [ 5495056] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

---\\ Recherche de clés de registre Tracing (O100) (2) - 1s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateTechgile_RASAPI32 =>PUP.Techgile
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateTechgile_RASMANCS =>PUP.Techgile

---\\ Scan Additionnel (O88) (13) - 0s
C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS
C:\Windows\System32\Tasks\AutoPico Daily Restart =>PUA.KMSpico
HKLM\SOFTWARE\Wow6432Node\globalUpdate =>PUP.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Systweak
HKCU\SOFTWARE\Probit Software =>PUP.ProbitSoftware
HKCU\SOFTWARE\rttasks =>PUP.RocketTab
HKCU\SOFTWARE\Store =>PUP.Optional
HKCU\SOFTWARE\systweak =>PUP.Systweak
C:\Program Files (x86)\bb77461a-d19a-42c8-b636-6475b3078979 =>Adware.CrossRider
C:\ProgramData\HealthAlert =>PUP.HealthAlert
C:\Users\Cat\AppData\Roaming\systweak =>PUP.Systweak
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateTechgile_RASAPI32 =>PUP.Techgile
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateTechgile_RASMANCS =>PUP.Techgile

---\\ Récapitulatif des détections trouvées sur votre station (10) - 0s
http://www.nicolascoolman.fr/pup-probitsoftware/ =>PUP.ProbitSoftware
http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/pup-kmspico/ =>PUA.KMSpico
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.GlobalUpdate
http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Systweak
http://www.nicolascoolman.fr/blog =>PUP.RocketTab
http://www.nicolascoolman.fr/blog =>PUP.Optional
http://www.nicolascoolman.fr/pup-crossrider/ =>Adware.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.HealthAlert
http://www.nicolascoolman.fr/blog =>PUP.Techgile

~ End of the scan, 71598 items in 158 seconds (763)(0)()

Publicité


Signaler le contenu de ce document

Publicité