cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.17.91 Par Nicolas Coolman (2015/07/17)
~ Démarré par tony93 (Administrator) (2015/07/17 10:49:56)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\tony93\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\tony93\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v43.0.2357.134
MSIE: Internet Explorer v11.0.9600.17905

---\\ Informations sur les produits Windows (3) - 11s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 1s
Avast Free Antivirus v10.2.2218
Norton Internet Security v21.1.0.18

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.07

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 10 Plugin

---\\ Logiciels de partage P2P (1) - 1s
qBittorrent 3.2.0 v3.2.0

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 8339316
~ System Restore: Activé (Enable)
~ System drive C: has 534 GB free of 953 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-GAMER
~ User Name: tony93
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 534 GB free of 953 GB (System)
~ Drive D: has GB free of 29 GB
~ Drive E: has GB free of 3 GB

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.57660FDE55E1C1AB1EBC1FF93D632F7F] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2502928]
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [54784]
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [145920]
[MD5.98C6A46E9E2822BF83196C2EAE43DBD4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427392]
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [572416]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [447488]
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [19456]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [134144]
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [76800]
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [108544]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [142848]
[MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\Windows\System32\drivers\MRxSmb.sys [401408]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [282624]
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [2025792]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [94208]
[MD5.1BD3022FD6E450B00DE560265638FD2A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [112640]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\Windows\System32\drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [107520]
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [310080]

---\\ Processus lancés (37) - 3s
[MD5.039ACFA07F59DB2109BB6A2C0FA2C0D9] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.3.) -- C:\Windows\system32\nvvsvc.exe [937616] [PID.388]
[MD5.D2B4376F9F36C5873A6CF99EF5750724] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [410768] [PID.416]
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1448]
[MD5.171CCFEB86294AFAA3609DB3899A841E] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656] [PID.1984]
[MD5.12C0BEBC4237167D85E80BB962CCF8AA] - (...) -- C:\Program Files (x86)\Mtscheckbondhi\Mtscheckbondhi.exe [281088] [PID.1204]
[MD5.4B1E6975B565883985FB43C3FD6C88C6] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432] [PID.2164]
[MD5.5D989663ECA1558D267C0B8E0EF0F77D] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.2268]
[MD5.A903E5C565A2677F3960E4AAB7B42280] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5495056] [PID.2584]
[MD5.46C430FE178028F7AD151B62EBA3EEC5] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896] [PID.3156]
[MD5.D0117917EB976A484B3A9E3AA7142108] - (.AVAST Software - avast! NG service.) -- C:\Program Files\AVAST Software\Avast\ng\ngservice.exe [171896] [PID.4604]
[MD5.91DF13EC831BDCFA36A7A12CD13D66B9] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568] [PID.5708]
[MD5.95B960980034877821E7FB5BFE25136E] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413304] [PID.5136]
[MD5.97715B4295C74B4D55B3445EEB9BD1F1] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [822904] [PID.5232]
[MD5.910B5BF2353D5D982D2F6B8F6454A00A] - (.BlueStack Systems, Inc. - BlueStacks Service.) -- C:\Program Files (x86)\BlueStacks\HD-Service.exe [433784] [PID.2248]
[MD5.6399FC58C3F7199CC2C48C5DFEDA3E6D] - (.BlueStack Systems - BlueStacks Network Helper Process.) -- C:\Program Files (x86)\BlueStacks\HD-Network.exe [392312] [PID.2520]
[MD5.34F1C513A845DFB6854D3D899820192D] - (.BlueStack Systems - BlueStacks Block Device Helper Process.) -- C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe [290424] [PID.4196]
[MD5.BD190DBA04C4C12094863FD85339E5DD] - (.BlueStack Systems - BlueStacks Shared Folder Helper Process.) -- C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe [396408] [PID.3824]
[MD5.1A650CBAC8C5A90791B45FF7B9F72572] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216] [PID.7852]
[MD5.BC9AD18B635F3EFFF7AB2AED354B1150] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253192] [PID.4496]
[MD5.039ACFA07F59DB2109BB6A2C0FA2C0D9] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.3.) -- C:\Windows\system32\nvvsvc.exe [937616] [PID.3368]
[MD5.E311333B6CFE2E101D89C68E775342E4] - (.Gainward Co. Ltd. - EXPERTool.) -- C:\Program Files (x86)\EXPERTool\TBPanel.exe [2195240] [PID.6212]
[MD5.12C0BEBC4237167D85E80BB962CCF8AA] - (...) -- C:\Program Files (x86)\Mtscheckbondhi\Mtscheckbondhi.exe [281088] [PID.3536]
[MD5.2DC2C370F785AD5B2717A205238B03E2] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704] [PID.6860]
[MD5.ECCABF393C3BFDCAAB2A215817A61AEA] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7902864] [PID.4228]
[MD5.5D989663ECA1558D267C0B8E0EF0F77D] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.5544]
[MD5.0F9B415B6348F5669B860994DC18604A] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448200] [PID.5212]
[MD5.E1026B2975D308D43E896A108C92F1BD] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7637208] [PID.2600]
[MD5.6E305048CB23D542D2D6712DF83DCC4F] - (.NVIDIA Corporation - NVIDIA Capture Server.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe [3936400] [PID.5116]
[MD5.8DACA62F3E15E45EBAF7AE51A609CBC1] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [2892992] [PID.1372]
[MD5.44A9229022A519ED45294A1934C05EEC] - (.Flux Software LLC - f.lux.) -- C:\Users\tony93\AppData\Local\FluxSoftware\Flux\flux.exe [1017224] [PID.5140]
[MD5.D471F27FE3414238839979D4203143B3] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1853632] [PID.5860]
[MD5.0A3544D7E9AF7D8C991C904339157EDC] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [837312] [PID.5208]
[MD5.E47CFE61DFFCD4099642D79F788844D6] - (.Mega Limited - MEGAsync.) -- C:\Users\tony93\AppData\Local\MEGAsync\MEGAsync.exe [4643272] [PID.3336]
[MD5.34084D25BE6F48D072AA54DE630438FD] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.6168]
[MD5.4BA4EE813C494E70FF381DB39CEE3F39] - (.Creative Technology Ltd - Sound Blaster Cinema.) -- C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680] [PID.4432]
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.4264]
[MD5.EF3E22DB024654232D9232CD16D37615] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe [888440] [PID.4332]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (14) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ahonndfjkbgdpmacjpahijipoiocbcoe] T4G Blacklist Add-on
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [fhmnnbcakddemboenjellhhnodkfffgm] __MSG_themeName__
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [mkfokfffehpeedafpekjeddnmnjhmcmk] Norton Security Toolbar
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (7) - 0s
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\tony93\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVision] - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVisionStreaming] - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (19) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://websearch.hotsearches.info/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (R5) (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:9880 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (5) - 0s
O2 - BHO: Norton Identity Protection [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\CoIEPlg.dll
O2 - BHO: Norton Vulnerability Protection [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} (Orphean)
O2 - BHO: (no name) [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: Norton Toolbar - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\CoIEPlg.dll

---\\ Applications lancées au démarrage du sytème (O4) (26) - 1s
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
O4 - HKLM\..\Run: [MBCfg64] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\Run: [ISCT Tray] . (.Intel Corporation - ISCT SysTray.) -- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
O4 - HKCU\..\Run: [TBPanel] . (.Gainward Co. Ltd. - EXPERTool.) -- C:\Program Files (x86)\EXPERTool\TBPanel.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKCU\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\tony93\AppData\Local\FluxSoftware\Flux\flux.exe
O4 - HKCU\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [cacaoweb] C:\Users\tony93\AppData\Roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [Sound Blaster Cinema] . (.Creative Technology Ltd - Sound Blaster Cinema.) -- C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdReg] . (.Creative Technology Ltd. - Creative UpdReg.) -- C:\Windows\Updreg.EXE
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [TBPanel] . (.Gainward Co. Ltd. - EXPERTool.) -- C:\Program Files (x86)\EXPERTool\TBPanel.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\tony93\AppData\Local\FluxSoftware\Flux\flux.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-3467632496-3217922810-1503547192-1001\..\Run: [cacaoweb] C:\Users\tony93\AppData\Roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb

---\\ Modification Domaine/Adresses DNS (O17) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254

---\\ Liste des services NT non Microsoft et non désactivés (O23) (16) - 1s
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) . (.Copyright© 2011-2013 Intel Corporation - ISCT Agent Application.) - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mtscheckbondhi (Mtscheckbondhi) . (...) - C:\Program Files (x86)\Mtscheckbondhi\Mtscheckbondhi.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.3.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

---\\ Tâches planifiées en automatique (O39) (16) - 1s
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ASC8_SkipUac_tony93.job [262]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1090]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1094]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Uninstaller_SkipUac_tony93.job [298]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASC8_PerformanceMonitor [3168]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASC8_SkipUac_tony93 [2364]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\AutoKMS [3758] =>HackTool.AutoKMS
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2792]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\EXPERTool [2998]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3830]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Norton WSC Integration [3234]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ProPCCleaner_Popup [3462] =>PUP.Optional.ProPCCleaner
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ProPCCleaner_Start [3198] =>PUP.Optional.ProPCCleaner
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Uninstaller_SkipUac_tony93 [2400]

---\\ Logiciels installés (O42) (61) - 4s
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
O42 - Logiciel: WinRAR 5.21 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Intel(R) Smart Connect Technology - (.Intel Corporation.) [HKLM][64Bits] -- {33013669-7557-430E-9153-3C025284E623}
O42 - Logiciel: MotioninJoy Gamepad tool 0.7.1001 - (.www.motioninjoy.com.) [HKLM][64Bits] -- {330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {98841A35-1CBE-4EA3-BFF5-F3E3AD894666}
O42 - Logiciel: NVIDIA Pilote 3D Vision 353.30 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
O42 - Logiciel: NVIDIA Pilote graphique 353.30 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 2.4.5.57 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: NVIDIA Son virtuel Miracast 353.30 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio
O42 - Logiciel: Oracle VM VirtualBox 4.3.12_ZZZZ - (.Oracle Corporation.) [HKLM][64Bits] -- {B5121457-0126-4E62-BCBF-6DC7C73D9E4A}
O42 - Logiciel: MegaDownloader 1.0 - (.Andres_age.) [HKLM][64Bits] -- {C12C2297-65A4-4E64-9AE1-29F0D947FDA0}}_is1
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {CE20A68F-BFBC-11E3-AA73-F04DA23A5C58}
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58}
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Advanced SystemCare 8 - (.IObit.) [HKLM][64Bits] -- Advanced SystemCare 8_is1
O42 - Logiciel: Assassins Creed Chronicles China - (...) [HKLM][64Bits] -- Assassins Creed Chronicles China_is1
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks App Player
O42 - Logiciel: Cities Skylines - (.????? ?? R.G. Steamgames.) [HKLM][64Bits] -- Cities Skylines_is1
O42 - Logiciel: Ittle Dew - (.GOG.com.) [HKLM][64Bits] -- GOGPACKITTLEDEW_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync
O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin
O42 - Logiciel: Call of Duty Ghosts - (...) [HKLM][64Bits] -- Q2FsbG9mRHV0eUdob3N0cw==_is1
O42 - Logiciel: qBittorrent 3.2.0 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam
O42 - Logiciel: Batman™: Arkham Knight - (.Rocksteady Studios.) [HKLM][64Bits] -- Steam App 208650
O42 - Logiciel: Depth - (.Digital Confectioners.) [HKLM][64Bits] -- Steam App 274940
O42 - Logiciel: BLOCKADE 3D - (.Shumkov Dmitriy.) [HKLM][64Bits] -- Steam App 302830
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer
O42 - Logiciel: The Sims 4 - (.R.G. Mechanics, ProZorg_tm.) [HKLM][64Bits] -- The Sims 4_R.G. Mechanics_is1
O42 - Logiciel: The Sims 4 Luxury Party Stuff DLC - (...) [HKLM][64Bits] -- VGhlU2ltczQ=_is1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {3792811C-832F-4392-B44A-24092901EDDC}
O42 - Logiciel: Smite - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}
O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}
O42 - Logiciel: EXPERTool v9.9 - (.Gainward Co. Ltd..) [HKLM][64Bits] -- {551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1
O42 - Logiciel: Outil de téléchargement USB/DVD Windows 7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5F8683B5-5056-411C-B808-B289E29E9BBB}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Sound Blaster Cinema - (.Creative Technology Limited.) [HKLM][64Bits] -- {8801CA65-921A-4CCC-9D63-879D1D0BAA97}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Mumble 1.2.10 - (.Thorvald Natvig.) [HKLM][64Bits] -- {93FD7F50-FC1A-4A51-98B5-A6FCC23A53E0}
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}
O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {d370215a-d003-43ae-a3b6-1028af64d5a1}
O42 - Logiciel: Need for Speed™ Rivals - (.Electronic Arts.) [HKLM][64Bits] -- {E0A32336-AA27-4053-99B2-C3380B7B95AC}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: FileZilla Client 3.11.0.2 - (.Tim Kosse.) [HKCU][64Bits] -- FileZilla Client
O42 - Logiciel: f.lux - (...) [HKCU][64Bits] -- Flux
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer

---\\ HKCU & HKLM Software Keys (92) - 4s
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Creative Tech
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\FileZilla 3
HKLM\SOFTWARE\Wow6432Node\GOG.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hi-Rez Studios
HKLM\SOFTWARE\Wow6432Node\HiRez Studios
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\IObit
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lenovo
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Maxis
HKLM\SOFTWARE\Wow6432Node\MaxPower
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MSI
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\qBittorrent
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Colossal Order
HKCU\SOFTWARE\Creative Tech
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\FileZilla Client
HKCU\SOFTWARE\Free Lives
HKCU\SOFTWARE\Gainward
HKCU\SOFTWARE\George Batchelor
HKCU\SOFTWARE\GOG.com
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\iDumpling.com
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\Ludosity
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Michael Herf
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Mumble
HKCU\SOFTWARE\NLDT
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\ProPCCleanerConfig =>PUP.Optional.ProPCCleaner
HKCU\SOFTWARE\ProPCCleanerLanguage =>PUP.Optional.ProPCCleaner
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\SplitmediaLabs
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\tonypai
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (216) - 7s
O43 - CFD: 2015/06/28 14:36:15 - [] D -- C:\Program Files (x86)\Assassins Creed Chronicles China
O43 - CFD: 2015/07/16 17:44:08 - [] D -- C:\Program Files (x86)\BlueStacks
O43 - CFD: 2015/07/01 15:03:23 - [] D -- C:\Program Files (x86)\Call of Duty Black Ops 2
O43 - CFD: 2015/07/09 03:31:52 - [] D -- C:\Program Files (x86)\Call of Duty Ghosts
O43 - CFD: 2015/06/24 18:06:24 - [] D -- C:\Program Files (x86)\Cities Skylines
O43 - CFD: 2015/07/13 21:48:39 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/06/24 17:57:20 - [] D -- C:\Program Files (x86)\Creative
O43 - CFD: 2015/06/28 02:08:16 - [] D -- C:\Program Files (x86)\Disc Soft
O43 - CFD: 2015/06/26 20:10:59 - [] D -- C:\Program Files (x86)\EA Games
O43 - CFD: 2015/06/23 22:35:53 - [] D -- C:\Program Files (x86)\EXPERTool
O43 - CFD: 2015/06/23 22:25:04 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/07/16 22:34:30 - [] D -- C:\Program Files (x86)\Hi-Rez Studios
O43 - CFD: 2015/07/16 22:34:19 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/07/16 03:05:03 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/07/06 20:46:37 - [] D -- C:\Program Files (x86)\IObit
O43 - CFD: 2015/06/23 23:05:06 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/06/28 14:20:37 - [] D -- C:\Program Files (x86)\Lenovo
O43 - CFD: 2015/06/26 15:14:27 - [] D -- C:\Program Files (x86)\Microsoft XNA
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/06/24 01:38:47 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/07/12 17:11:32 - [] SHD -- C:\Program Files (x86)\Mtscheckbondhi
O43 - CFD: 2015/07/14 02:31:46 - [] D -- C:\Program Files (x86)\Mumble
O43 - CFD: 2015/06/24 17:59:55 - [] D -- C:\Program Files (x86)\Norton Internet Security
O43 - CFD: 2015/06/24 17:59:23 - [] D -- C:\Program Files (x86)\NortonInstaller
O43 - CFD: 2015/06/24 00:08:12 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/07/01 14:06:22 - [] D -- C:\Program Files (x86)\OBS
O43 - CFD: 2015/06/28 14:20:57 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/06/30 17:06:17 - [] D -- C:\Program Files (x86)\Origin
O43 - CFD: 2015/06/24 12:04:50 - [] D -- C:\Program Files (x86)\Origin Games
O43 - CFD: 2015/06/24 18:05:05 - [] D -- C:\Program Files (x86)\qBittorrent
O43 - CFD: 2015/06/24 21:53:06 - [] D -- C:\Program Files (x86)\R.G. Mechanics
O43 - CFD: 2015/06/24 17:53:39 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2015/06/24 01:38:47 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/07/13 21:48:39 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/07/05 16:16:03 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 2015/07/17 09:29:01 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2015/07/04 00:57:25 - [] D -- C:\Program Files (x86)\TeamViewer
O43 - CFD: 2015/06/24 17:54:36 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2015/06/24 23:09:21 - [] D -- C:\Program Files (x86)\The Sims 4
O43 - CFD: 2015/07/06 21:37:55 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/06/30 04:14:43 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/08/22 17:36:30 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/06/30 04:14:50 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/06/30 04:14:20 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/06 20:46:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
O43 - CFD: 2015/06/27 23:17:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2015/07/16 17:30:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 2015/07/02 01:55:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/06/24 01:35:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cities Skylines
O43 - CFD: 2015/06/24 17:57:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
O43 - CFD: 2015/06/28 02:08:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2015/06/23 22:35:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EXPERTool
O43 - CFD: 2015/06/23 22:25:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/07/16 22:34:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
O43 - CFD: 2015/06/24 17:58:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/07/06 20:46:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
O43 - CFD: 2015/07/15 01:35:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ittle Dew [GOG.com]
O43 - CFD: 2015/06/23 23:05:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/02 14:46:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MegaDownloader
O43 - CFD: 2015/07/03 00:00:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy
O43 - CFD: 2015/07/14 02:31:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
O43 - CFD: 2015/06/24 17:59:54 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
O43 - CFD: 2015/06/24 00:08:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/06/23 22:50:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
O43 - CFD: 2015/06/24 18:05:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
O43 - CFD: 2015/06/24 22:25:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
O43 - CFD: 2015/07/13 21:48:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/07/05 16:16:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 2013/08/22 17:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/06/23 22:55:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2014/11/21 00:27:29 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/06 21:38:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/06/24 00:16:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/06/24 01:40:46 - [] D -- C:\ProgramData\.mono
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/06/27 23:12:11 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2015/07/16 17:44:08 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2015/07/16 17:42:27 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2015/06/24 00:04:18 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 2015/06/23 21:44:39 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/06/24 17:57:37 - [] D -- C:\ProgramData\Creative
O43 - CFD: 2015/06/28 02:07:47 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/06/24 14:31:53 - [] D -- C:\ProgramData\Electronic Arts
O43 - CFD: 2015/07/16 22:34:27 - [] D -- C:\ProgramData\Hi-Rez Studios
O43 - CFD: 2015/07/12 16:41:29 - [] D -- C:\ProgramData\Ifrotluii
O43 - CFD: 2015/06/24 18:01:55 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/07/06 20:50:07 - [] D -- C:\ProgramData\IObit
O43 - CFD: 2015/06/23 21:44:39 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/07/16 13:06:08 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/06/23 21:44:39 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/06/24 17:59:54 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2015/06/24 17:59:23 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2015/07/16 17:22:06 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/06/27 22:50:39 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/06/23 23:05:07 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/07/15 19:32:33 - [] D -- C:\ProgramData\Origin
O43 - CFD: 2015/06/30 10:34:27 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/07/16 13:08:53 - [] D -- C:\ProgramData\ProductData
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/07/13 21:48:49 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/07/05 16:16:03 - [] D -- C:\ProgramData\Sony
O43 - CFD: 2015/06/26 01:14:06 - [] D -- C:\ProgramData\SplitMediaLabs
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/06/23 23:05:22 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/07/13 17:34:21 - [] D -- C:\ProgramData\Thunder Network
O43 - CFD: 2015/07/06 20:46:27 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
O43 - CFD: 2015/06/24 14:02:58 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 2015/06/24 17:53:35 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/07/06 20:46:24 - [] D -- C:\Program Files (x86)\Common Files\IObit
O43 - CFD: 2015/06/23 23:05:22 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/06/29 02:59:17 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/07/13 21:48:39 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/06/24 01:43:02 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/06/29 21:09:35 - [] D -- C:\Users\tony93\AppData\Roaming\.lifecraft
O43 - CFD: 2015/06/26 18:58:25 - [] D -- C:\Users\tony93\AppData\Roaming\.madgarden
O43 - CFD: 2015/07/16 21:10:07 - [] D -- C:\Users\tony93\AppData\Roaming\.minecraft
O43 - CFD: 2015/06/24 01:40:46 - [] D -- C:\Users\tony93\AppData\Roaming\.mono
O43 - CFD: 2015/07/11 17:31:35 - [] D -- C:\Users\tony93\AppData\Roaming\.technic
O43 - CFD: 2015/06/23 21:54:48 - [] D -- C:\Users\tony93\AppData\Roaming\Adobe
O43 - CFD: 2015/07/06 20:46:36 - [] D -- C:\Users\tony93\AppData\Roaming\Apple Computer
O43 - CFD: 2015/06/27 23:18:17 - [] D -- C:\Users\tony93\AppData\Roaming\AVAST Software
O43 - CFD: 2015/07/16 22:34:41 - [0] D -- C:\Users\tony93\AppData\Roaming\Awesomium
O43 - CFD: 2015/06/24 01:40:45 - [] D -- C:\Users\tony93\AppData\Roaming\Colossal Order
O43 - CFD: 2015/07/02 01:56:57 - [0] D -- C:\Users\tony93\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2015/06/28 16:59:46 - [] D -- C:\Users\tony93\AppData\Roaming\FarSky
O43 - CFD: 2015/07/16 12:59:25 - [] D -- C:\Users\tony93\AppData\Roaming\FileZilla
O43 - CFD: 2015/07/13 17:34:40 - [] D -- C:\Users\tony93\AppData\Roaming\HaiYuInst
O43 - CFD: 2015/07/06 20:46:47 - [] D -- C:\Users\tony93\AppData\Roaming\IObit
O43 - CFD: 2015/06/23 23:05:55 - [] D -- C:\Users\tony93\AppData\Roaming\java
O43 - CFD: 2015/06/26 15:14:40 - [] D -- C:\Users\tony93\AppData\Roaming\Kolben Games
O43 - CFD: 2015/06/23 22:52:22 - [] D -- C:\Users\tony93\AppData\Roaming\Macromedia
O43 - CFD: 2015/07/16 21:14:18 - [] SD -- C:\Users\tony93\AppData\Roaming\Microsoft
O43 - CFD: 2015/06/26 17:12:53 - [] D -- C:\Users\tony93\AppData\Roaming\MMFApplications
O43 - CFD: 2015/06/24 19:40:19 - [] D -- C:\Users\tony93\AppData\Roaming\MotioninJoy
O43 - CFD: 2015/07/14 02:50:07 - [] D -- C:\Users\tony93\AppData\Roaming\Mumble
O43 - CFD: 2015/06/26 01:17:09 - [] D -- C:\Users\tony93\AppData\Roaming\NVIDIA
O43 - CFD: 2015/06/30 00:21:43 - [] D -- C:\Users\tony93\AppData\Roaming\OBS
O43 - CFD: 2015/06/28 14:20:54 - [0] D -- C:\Users\tony93\AppData\Roaming\Opera Software
O43 - CFD: 2015/06/24 12:03:48 - [] D -- C:\Users\tony93\AppData\Roaming\Origin
O43 - CFD: 2015/07/06 20:47:40 - [] D -- C:\Users\tony93\AppData\Roaming\ProductData
O43 - CFD: 2015/07/05 16:28:35 - [0] D -- C:\Users\tony93\AppData\Roaming\Publish Providers
O43 - CFD: 2015/07/15 04:26:49 - [] D -- C:\Users\tony93\AppData\Roaming\qBittorrent
O43 - CFD: 2015/07/17 10:44:42 - [] D -- C:\Users\tony93\AppData\Roaming\Skype
O43 - CFD: 2015/07/05 21:27:24 - [] D -- C:\Users\tony93\AppData\Roaming\Sony
O43 - CFD: 2015/06/26 01:13:12 - [] D -- C:\Users\tony93\AppData\Roaming\SplitmediaLabs
O43 - CFD: 2015/06/24 01:40:43 - [] D -- C:\Users\tony93\AppData\Roaming\Steam
O43 - CFD: 2015/07/16 21:37:25 - [] D -- C:\Users\tony93\AppData\Roaming\TeamViewer
O43 - CFD: 2015/06/24 22:25:13 - [] D -- C:\Users\tony93\AppData\Roaming\The Sims 4
O43 - CFD: 2015/06/28 14:40:05 - [] D -- C:\Users\tony93\AppData\Roaming\uplay
O43 - CFD: 2015/07/09 03:14:59 - [] D -- C:\Users\tony93\AppData\Roaming\vlc
O43 - CFD: 2015/06/24 00:17:18 - [] D -- C:\Users\tony93\AppData\Roaming\WinRAR
O43 - CFD: 2015/07/17 10:50:13 - [] D -- C:\Users\tony93\AppData\Roaming\ZHP
O43 - CFD: 2015/07/02 20:12:13 - [] D -- C:\Users\tony93\AppData\Local\Activision
O43 - CFD: 2015/06/23 21:51:12 - [0] SHD -- C:\Users\tony93\AppData\Local\Application Data
O43 - CFD: 2015/07/16 21:14:18 - [] D -- C:\Users\tony93\AppData\Local\Apps
O43 - CFD: 2015/07/16 17:30:09 - [] D -- C:\Users\tony93\AppData\Local\Bluestacks
O43 - CFD: 2015/06/24 01:40:45 - [] D -- C:\Users\tony93\AppData\Local\Colossal Order
O43 - CFD: 2015/07/09 01:46:13 - [] D -- C:\Users\tony93\AppData\Local\Diagnostics
O43 - CFD: 2015/07/01 15:02:14 - [0] SHD -- C:\Users\tony93\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/07/01 15:02:13 - [0] SHD -- C:\Users\tony93\AppData\Local\EmieSiteList
O43 - CFD: 2015/07/01 15:02:14 - [0] SHD -- C:\Users\tony93\AppData\Local\EmieUserList
O43 - CFD: 2015/07/06 20:32:32 - [] D -- C:\Users\tony93\AppData\Local\FluxSoftware
O43 - CFD: 2015/07/15 19:20:18 - [] D -- C:\Users\tony93\AppData\Local\Google
O43 - CFD: 2015/06/23 22:22:21 - [] D -- C:\Users\tony93\AppData\Local\GWX
O43 - CFD: 2015/06/23 21:51:12 - [0] SHD -- C:\Users\tony93\AppData\Local\Historique
O43 - CFD: 2015/06/26 01:20:29 - [] D -- C:\Users\tony93\AppData\Local\IsolatedStorage
O43 - CFD: 2015/06/28 14:20:41 - [] D -- C:\Users\tony93\AppData\Local\Lenovo
O43 - CFD: 2015/07/02 15:24:11 - [] D -- C:\Users\tony93\AppData\Local\Mega Limited
O43 - CFD: 2015/07/02 15:18:29 - [] D -- C:\Users\tony93\AppData\Local\MegaDownloader
O43 - CFD: 2015/07/02 15:24:08 - [] D -- C:\Users\tony93\AppData\Local\MEGAsync
O43 - CFD: 2015/06/26 01:13:19 - [] D -- C:\Users\tony93\AppData\Local\Microsoft
O43 - CFD: 2015/06/23 22:42:32 - [] D -- C:\Users\tony93\AppData\Local\NVIDIA
O43 - CFD: 2015/07/05 14:36:55 - [] D -- C:\Users\tony93\AppData\Local\NVIDIA Corporation
O43 - CFD: 2015/06/28 14:20:54 - [0] D -- C:\Users\tony93\AppData\Local\Opera Software
O43 - CFD: 2015/06/24 14:31:48 - [] D -- C:\Users\tony93\AppData\Local\Origin
O43 - CFD: 2015/06/23 21:56:33 - [] D -- C:\Users\tony93\AppData\Local\Packages
O43 - CFD: 2015/06/23 21:56:28 - [0] D -- C:\Users\tony93\AppData\Local\PackageStaging
O43 - CFD: 2015/06/23 22:35:52 - [] D -- C:\Users\tony93\AppData\Local\Programs
O43 - CFD: 2015/06/26 20:58:53 - [] D -- C:\Users\tony93\AppData\Local\PunkBuster
O43 - CFD: 2015/06/24 01:02:56 - [] D -- C:\Users\tony93\AppData\Local\qBittorrent
O43 - CFD: 2015/07/01 15:03:24 - [] D -- C:\Users\tony93\AppData\Local\SKIDROW
O43 - CFD: 2015/06/23 22:47:32 - [] D -- C:\Users\tony93\AppData\Local\Skype
O43 - CFD: 2015/07/05 16:28:28 - [] D -- C:\Users\tony93\AppData\Local\Sony
O43 - CFD: 2015/06/23 23:00:20 - [] D -- C:\Users\tony93\AppData\Local\Steam
O43 - CFD: 2015/07/02 01:13:38 - [] D -- C:\Users\tony93\AppData\Local\TeknoGods
O43 - CFD: 2015/07/17 10:50:19 - [] D -- C:\Users\tony93\AppData\Local\Temp
O43 - CFD: 2015/06/23 21:51:12 - [0] SHD -- C:\Users\tony93\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/06/26 19:42:24 - [] D -- C:\Users\tony93\AppData\Local\Unity
O43 - CFD: 2015/06/23 21:54:45 - [0] D -- C:\Users\tony93\AppData\Local\VirtualStore
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/09 16:04:29 - [] RD -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/06/24 12:59:58 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 2015/07/06 20:32:36 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/02 15:24:08 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
O43 - CFD: 2015/07/16 21:14:19 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outil de téléchargement USB DVD Windows 7
O43 - CFD: 2015/07/09 16:04:29 - [] RD -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/06/29 19:02:49 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/11/21 07:56:08 - [] RD -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/06/24 00:16:31 - [] D -- C:\Users\tony93\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (1) - 11s
O45 - LFCP:[MD5.7325211CAE347C06DEB321768B1E651A] 2015/07/12 16:46:55 A -- C:\Windows\Prefetch\PRIMARYCOLORSETUP.EXE-643295CD.pf =>PUP.PrimaryColor

---\\ Liste des pilotes du système (SDL) (O58) (55) - 9s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176]
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200]
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016]
O58 - SDL:2015/06/27 23:17:17 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [29168]
O58 - SDL:2015/06/27 23:17:17 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [89944]
O58 - SDL:2015/06/27 23:17:17 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528]
O58 - SDL:2015/06/27 23:17:17 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65736]
O58 - SDL:2015/06/27 23:17:15 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1047320]
O58 - SDL:2015/06/27 23:17:39 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [442264]
O58 - SDL:2015/06/27 23:17:17 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [137288]
O58 - SDL:2015/06/27 23:17:17 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [272248]
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2015/06/28 02:08:02 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264]
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024]
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248]
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2014/05/27 11:21:04 A . (...) -- C:\Windows\System32\drivers\ikbevent.sys [22216]
O58 - SDL:2014/05/27 11:21:08 A . (...) -- C:\Windows\System32\drivers\imsevent.sys [22728]
O58 - SDL:2014/05/27 11:21:06 A . (...) -- C:\Windows\System32\drivers\INETMON.sys [25800]
O58 - SDL:2014/05/27 11:21:08 A . (.Copyright (C) 2011-2012 - Intel(R) Smart Connect Technology Device Dr.) -- C:\Windows\System32\drivers\ISCTD.sys [44744]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2009/11/18 01:12:00 A . (.Creative Technology Ltd. - Creative Audio Driver.) -- C:\Windows\System32\drivers\MBfilt64.sys [32344]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840]
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840]
O58 - SDL:2015/06/17 11:10:27 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [204648]
O58 - SDL:2015/06/17 11:10:27 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11011216]
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368]
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288]
O58 - SDL:2015/05/19 05:29:01 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [46768]
O58 - SDL:2015/06/17 11:10:27 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvadarm.sys [39240]
O58 - SDL:2014/07/18 08:31:08 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [874712]
O58 - SDL:2014/07/15 13:01:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4012632]
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072]
O58 - SDL:2015/06/24 18:00:47 A . (.Symantec Corporation - Symantec Event Library.) -- C:\Windows\System32\drivers\SYMEVENT64x86.SYS [177752]
O58 - SDL:2013/08/22 14:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [40664]
O58 - SDL:2014/09/30 17:47:28 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [129312]
O58 - SDL:2014/05/16 14:04:46 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [254240]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504]
O58 - SDL:2014/07/02 20:49:08 A . (.SplitmediaLabs Limited - XSplit Stream Audio.) -- C:\Windows\System32\drivers\xspltspk.sys [26200]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (64) - 48s
O61 - LFC: 2015/07/16 17:29:55 A . (.BlueStack Systems Inc..) -- C:\Users\tony93\Downloads\BlueStacks-ThinInstaller (1).exe [14246072]
O61 - LFC: 2015/07/13 17:00:10 A . (.BlueStack Systems Inc..) -- C:\Users\tony93\Downloads\BlueStacks-ThinInstaller.exe [260531672]
O61 - LFC: 2015/07/13 17:34:14 A . (..) -- C:\Users\tony93\Downloads\Droid4XInstaller.exe [8730280]
O61 - LFC: 2015/07/14 00:04:35 A . (.Tim Kosse.) -- C:\Users\tony93\Downloads\FileZilla_3.12.0.2_win64-setup.exe [6483456]
O61 - LFC: 2015/07/16 22:33:08 A . (.Hi-Rez Studios.) -- C:\Users\tony93\Downloads\InstallHiRezGamesEnglish.exe [46926968]
O61 - LFC: 2015/07/16 13:35:41 A . (.PeerBlock, LLC.) -- C:\Users\tony93\Downloads\PeerBlock-Setup_v1.2_r693.exe [2374320]
O61 - LFC: 2015/07/09 18:52:29 A . (.Syndicate, LLC, http://www.technicpack.net.) -- C:\Users\tony93\Downloads\TechnicLauncher.exe [4703408]
O61 - LFC: 2015/07/15 01:34:20 A . (.GOG.com.) -- C:\Users\tony93\Documents\Téléchargements\ittle_dew\setup_ittle_dew_2.0.0.3.exe [96741760]
O61 - LFC: 2015/07/11 17:31:41 A . (.Syndicate, LLC, http://www.technicpack.net.) -- C:\Users\tony93\Desktop\Menu\Jeux\Minecraft\Launcher\TechnicLauncher.exe [4731400]
O61 - LFC: 2015/07/16 21:10:14 A . (..) -- C:\Users\tony93\AppData\Roaming\NVIDIA\GLCache\d8713429c720cceb85ab6e6658e3c16d\65c3c4a72f188dad\82bd674ac494837f.bin [5460633]
O61 - LFC: 2015/07/15 23:59:45 A . (..) -- C:\Users\tony93\AppData\Roaming\NVIDIA\GLCache\c5b6376a9498ebc16f4911f8f89ec3e7\65c3c4a72f188dad\677c32a840c57490.bin [549991]
O61 - LFC: 2015/07/11 18:03:07 A . (..) -- C:\Users\tony93\AppData\Roaming\NVIDIA\GLCache\c5b6376a9498ebc16f4911f8f89ec3e7\65c3c4a72f188dad\82bd674ac494837f.bin [162334]
O61 - LFC: 2015/07/16 21:14:18 RA . (..) -- C:\Users\tony93\AppData\Roaming\Microsoft\Installer\{5F8683B5-5056-411C-B808-B289E29E9BBB}\icons.exe [119808]
O61 - LFC: 2015/07/13 17:34:20 A . (.?????????????.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\xldl.dll [297416]
O61 - LFC: 2015/07/13 17:34:20 A . (.ShenZhen Xunlei Networking Technologies,LTD.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\dl_peer_id.dll [92080]
O61 - LFC: 2015/07/13 17:34:20 A . (.Thunder Networking Technologies,LTD.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\download_engine.dll [3512776]
O61 - LFC: 2015/07/13 17:34:20 A . (.?????????????.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\MiniThunderPlatform.exe [272840]
O61 - LFC: 2015/07/13 17:36:06 A . (.???? (C) 2011.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\minizip.dll [19968]
O61 - LFC: 2015/07/13 17:34:20 A . (.Copyright (C) 2009.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\XLBugHandler.dll [100808]
O61 - LFC: 2015/07/13 17:36:06 A . (.Copyright 2010.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\XLBugReport.exe [248264]
O61 - LFC: 2015/07/13 17:34:20 A . (.(C) 1995-2004 Jean-loup Gailly & Mark Adler.) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\plugins\download\zlib1.dll [59904]
O61 - LFC: 2015/07/13 17:40:14 A . (..) -- C:\Users\tony93\AppData\Roaming\HaiYuInst\DXInst\Setup.exe [241577560]
O61 - LFC: 2015/07/11 17:31:39 A . (.Syndicate, LLC, http://www.technicpack.net.) -- C:\Users\tony93\AppData\Roaming\.technic\temp.exe [4731400]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\jinput-dx8.dll [61952]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\jinput-dx8_64.dll [65024]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\jinput-raw.dll [59392]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\jinput-raw_64.dll [62464]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\jinput-wintab.dll [56832]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\lwjgl.dll [294912]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\lwjgl64.dll [306176]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\OpenAL32.dll [390144]
O61 - LFC: 2015/07/11 17:35:46 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\no-lag-pvp-mods-not-hacks\bin\natives\OpenAL64.dll [382464]
O61 - LFC: 2015/07/10 00:27:51 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\saves\New World\crashedMetChunks.bin [58]
O61 - LFC: 2015/07/10 00:27:51 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\saves\New World\ghostMets.bin [58]
O61 - LFC: 2015/07/10 00:27:51 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\saves\New World\quantum\entanglements.bin [74]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\jinput-dx8.dll [61952]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\jinput-dx8_64.dll [65024]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\jinput-raw.dll [59392]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\jinput-raw_64.dll [62464]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\jinput-wintab.dll [56832]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\lwjgl.dll [294912]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\lwjgl64.dll [306176]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\OpenAL32.dll [390144]
O61 - LFC: 2015/07/09 23:52:37 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\hexxit\bin\natives\OpenAL64.dll [382464]
O61 - LFC: 2015/07/09 19:38:26 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\saves\Retest modpack\quantum\encryption.bin [614]
O61 - LFC: 2015/07/09 19:38:26 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\saves\Retest modpack\quantum\entanglements.bin [99]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\jinput-dx8.dll [61952]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\jinput-dx8_64.dll [65024]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\jinput-raw.dll [59392]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\jinput-raw_64.dll [62464]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\jinput-wintab.dll [56832]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\lwjgl.dll [294912]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\lwjgl64.dll [306176]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\OpenAL32.dll [390144]
O61 - LFC: 2015/07/09 19:35:20 A . (..) -- C:\Users\tony93\AppData\Roaming\.technic\modpacks\attack-of-the-bteam\bin\natives\OpenAL64.dll [382464]
O61 - LFC: 2015/07/14 12:00:18 A . (..) -- C:\Users\tony93\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5119797]
O61 - LFC: 2015/07/14 19:30:55 A . (..) -- C:\Users\tony93\AppData\Local\NVIDIA\NvBackend\Packages\00007a8f\DAO.19763820.exe [5903928]
O61 - LFC: 2015/07/14 19:30:55 A . (..) -- C:\Users\tony93\AppData\Local\NVIDIA\NvBackend\Packages\00007a87\CoProc update.19763320.exe [514472]
O61 - LFC: 2015/07/14 15:34:46 A . (.NVIDIA Corporation.) -- C:\Users\tony93\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe [628664]
O61 - LFC: 2015/07/14 15:34:42 A . (.NVIDIA Corporation.) -- C:\Users\tony93\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe [172984]
O61 - LFC: 2015/07/14 15:34:34 A . (.NVIDIA Corporation.) -- C:\Users\tony93\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology.dll [1357240]
O61 - LFC: 2015/07/17 10:44:14 A . (..) -- C:\Users\tony93\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/07/17 10:45:39 A . (..) -- C:\Users\tony93\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [236]
O61 - LFC: 2015/07/13 10:14:22 A . (..) -- C:\Users\tony93\AppData\Local\Google\Chrome\User Data\PepperFlash\18.0.0.209\pepflashplayer.dll [16307888]

---\\ Associations Shell Spawning (O67) (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (34) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1084416]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [227328]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3701760]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (58) - 3s
O87 - FAEL: "{A61CF3FC-55C2-4CF0-A8F2-C5BCE22CADD6}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{38659528-CCD7-40BD-931C-2676E1C4A81F}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{4F4B7C38-34C9-4F0B-9DF3-A2DE1F3C0665}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O87 - FAEL: "{59EA6917-C1A7-466B-89BA-5C136B40EDF4}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O87 - FAEL: "{151632AB-977C-48F8-AE71-08F137983CCD}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{0409283C-E1F9-438A-865E-D825DB3EC8DC}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{98B09CD8-A7ED-4D52-9682-802F18CC9A2D}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{0980D66D-6F55-47E3-AB07-D6E6BEE0DD5F}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{37D5E1B3-651A-42E7-AA41-DFF371939423}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
O87 - FAEL: "{B8841146-3D2F-4B3E-B111-57BC0D263A54}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
O87 - FAEL: "TCP Query User{96E3CD07-3CB0-477B-8661-8A2B55009603}C:\users\tony93\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\tony93\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "UDP Query User{7038EC9B-4F18-4188-AAF9-ACF9B1A965FF}C:\users\tony93\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\tony93\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "{013A5222-A9D7-440A-ADED-B83191442C6A}" [In-None-P6-TRUE] .(.Electronic Arts - Need for Speed™ Rivals.) -- C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14_x86.exe
O87 - FAEL: "{62AABDD4-1F53-4A43-8A3B-76F3F769373C}" [In-None-P17-TRUE] .(.Electronic Arts - Need for Speed™ Rivals.) -- C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14_x86.exe
O87 - FAEL: "{3B0F30A6-CE1E-41FA-A394-A6DFBF547D4B}" [In-None-P6-TRUE] .(.Electronic Arts - Need for Speed™ Rivals.) -- C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14.exe
O87 - FAEL: "{869237C8-41BD-4455-A826-6632862829E7}" [In-None-P17-TRUE] .(.Electronic Arts - Need for Speed™ Rivals.) -- C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14.exe
O87 - FAEL: "{D6B9B313-65EA-4125-A835-4245CB750B95}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe
O87 - FAEL: "{835CD891-9C0C-45B4-B5D9-CD92F47D80A2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe
O87 - FAEL: "{87A86092-7D69-44CB-8CE6-F10C0B367D4F}" [In-None-P6-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
O87 - FAEL: "{8CF96DAE-6608-4736-8CB6-8ABDE591B659}" [In-None-P17-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
O87 - FAEL: "TCP Query User{6227C6D2-EEC2-45DE-B136-869CDDA5A919}C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe" [In-None-P6-TRUE] .(.Epic Games, Inc. - .) -- C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe
O87 - FAEL: "UDP Query User{B03059AC-8FA5-49F3-A146-10397D6C0A35}C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe" [In-None-P17-TRUE] .(.Epic Games, Inc. - .) -- C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe
O87 - FAEL: "{6DCC4D9F-F3FD-40B8-A225-8DCA062A3091}" [In-None-P6-TRUE] .(.Rocksteady Studios Ltd. - Batman: Arkham Knight.) -- C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe
O87 - FAEL: "{4CC38B9B-EC7E-4F0A-882F-B45599C6CD0B}" [In-None-P17-TRUE] .(.Rocksteady Studios Ltd. - Batman: Arkham Knight.) -- C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe
O87 - FAEL: "TCP Query User{9E94AFFF-4EE5-4582-8A07-567E09731A34}C:\program files (x86)\call of duty black ops 2\sp.exe" [In-None-P6-TRUE] .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II.) -- C:\program files (x86)\call of duty black ops 2\sp.exe
O87 - FAEL: "UDP Query User{CEFC8979-1D19-4A5B-859A-B68EF77298EF}C:\program files (x86)\call of duty black ops 2\sp.exe" [In-None-P17-TRUE] .(.Activision Publishing Inc. - Call of Duty(R): Black Ops II.) -- C:\program files (x86)\call of duty black ops 2\sp.exe
O87 - FAEL: "TCP Query User{2EEA34D9-71AA-4073-A1B5-8EE755745231}C:\program files\mw3\iw5mp.exe" [In-None-P6-TRUE] .(...) -- C:\program files\mw3\iw5mp.exe
O87 - FAEL: "UDP Query User{C7A8A12B-6C08-4F93-AB73-0C97387ED236}C:\program files\mw3\iw5mp.exe" [In-None-P17-TRUE] .(...) -- C:\program files\mw3\iw5mp.exe
O87 - FAEL: "TCP Query User{169BC456-0D6C-4CC1-962D-4936041CE922}C:\program files\mw3\iw5mp_server.exe" [In-None-P6-TRUE] .(...) -- C:\program files\mw3\iw5mp_server.exe
O87 - FAEL: "UDP Query User{D854C7D4-A186-4CD3-8CBC-DA66DBDDF6A5}C:\program files\mw3\iw5mp_server.exe" [In-None-P17-TRUE] .(...) -- C:\program files\mw3\iw5mp_server.exe
O87 - FAEL: "TCP Query User{916571A6-AE73-4A55-B965-2D0223B59876}C:\program files\mw3\iw5sp.exe" [In-None-P6-TRUE] .(...) -- C:\program files\mw3\iw5sp.exe
O87 - FAEL: "UDP Query User{831B261B-05C9-4AFF-925C-20D90E572F42}C:\program files\mw3\iw5sp.exe" [In-None-P17-TRUE] .(...) -- C:\program files\mw3\iw5sp.exe
O87 - FAEL: "{95A51AAD-238F-4EBE-85AA-F3D53284ABDB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Blockade3d\main.exe
O87 - FAEL: "{CB37A2EA-0C3C-4798-BC7D-3393E0FA2360}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Blockade3d\main.exe
O87 - FAEL: "{D9B0ABC1-E5AD-4444-AD2B-5FE43CAE7CA7}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe
O87 - FAEL: "{C7DABE95-71EA-4FA9-AF1A-3ABFA5F9CD61}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe
O87 - FAEL: "{5993D6E4-5AF2-41E6-A1DA-DA01911339B6}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O87 - FAEL: "{F7A61030-9509-416C-97CE-86A885A9C2F2}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O87 - FAEL: "TCP Query User{B561899E-088E-4A5B-90EB-A51BCBC537BC}C:\users\tony93\desktop\call of duty black ops\blackopsmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\tony93\desktop\call of duty black ops\blackopsmp.exe
O87 - FAEL: "UDP Query User{0F2C4252-E44A-4455-90EA-B4280F04BF02}C:\users\tony93\desktop\call of duty black ops\blackopsmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\tony93\desktop\call of duty black ops\blackopsmp.exe
O87 - FAEL: "TCP Query User{68876A36-82CE-4EC3-94CD-2596338BD1C1}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "UDP Query User{AE6012C2-6E81-4463-AD18-70462965B5F7}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "TCP Query User{C2B3604B-B68D-4F27-A87D-87418E565040}C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe" [In-None-P6-TRUE] .(.Epic Games, Inc. - .) -- C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe
O87 - FAEL: "UDP Query User{5AB0C246-EE05-4C5B-A4CB-63C6A0826C65}C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe" [In-None-P17-TRUE] .(.Epic Games, Inc. - .) -- C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe
O87 - FAEL: "TCP Query User{D8BE8B78-A370-4188-93DA-0D3DA0448FD9}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
O87 - FAEL: "UDP Query User{071711E5-77AA-4FB2-9E8F-832311853058}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
O87 - FAEL: "{2F5F0739-351D-47FC-8588-FBEBA4644CA8}" [In-None-P6-TRUE] .(.Digital Confectioners, Ltd. - Depth.) -- C:\Program Files (x86)\Steam\steamapps\common\Depth\Binaries\Win64\DepthGame.exe
O87 - FAEL: "{971D07C0-3B02-4624-9D95-BE7249A8C98B}" [In-None-P17-TRUE] .(.Digital Confectioners, Ltd. - Depth.) -- C:\Program Files (x86)\Steam\steamapps\common\Depth\Binaries\Win64\DepthGame.exe
O87 - FAEL: "TCP Query User{8BD66BFA-2AF1-47AA-AE8E-F0DA0DF4944E}C:\users\tony93\desktop\menu\jeux\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\tony93\desktop\menu\jeux\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "UDP Query User{7BFE99DB-548F-4DF9-88CE-F787DA58F968}C:\users\tony93\desktop\menu\jeux\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\users\tony93\desktop\menu\jeux\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
O87 - FAEL: "TCP Query User{BBD4338C-A8C9-471E-AE9A-B2552AE9DBB1}C:\users\tony93\desktop\call of duty black ops\blackops.exe" [In-None-P6-TRUE] .(...) -- C:\users\tony93\desktop\call of duty black ops\blackops.exe
O87 - FAEL: "UDP Query User{B78527FB-CE06-469F-970C-F8698D22A616}C:\users\tony93\desktop\call of duty black ops\blackops.exe" [In-None-P17-TRUE] .(...) -- C:\users\tony93\desktop\call of duty black ops\blackops.exe
O87 - FAEL: "TCP Query User{21E34B01-B649-4EEB-885F-F33A8C5D44C2}C:\users\tony93\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe" [In-None-P6-TRUE] .(.????????????? - ?????????.) -- C:\users\tony93\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe
O87 - FAEL: "UDP Query User{19870C83-7662-4F53-ADA1-86DE2F40D899}C:\users\tony93\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe" [In-None-P17-TRUE] .(.????????????? - ?????????.) -- C:\users\tony93\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe
O87 - FAEL: "{82E7F042-6CEB-40B5-805B-47618C938DD0}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Oracle\VirtualBox\vboxheadless.exe
O87 - FAEL: "{E54B99FF-A58B-47E2-BE52-3595465133FA}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Oracle\VirtualBox\vboxheadless.exe
O87 - FAEL: "TCP Query User{04A404F9-DA3A-4E66-A16C-78A5696B49D0}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" [In-None-P6-TRUE] .(.Hirez Studios, Inc. - .) -- C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
O87 - FAEL: "UDP Query User{598E52AF-4F78-43A4-B0FC-E23C3B66615E}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" [In-None-P17-TRUE] .(.Hirez Studios, Inc. - .) -- C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (22) - 9s
SR - Auto [2014/11/04 13:19:48] [ 815392] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
SR - Auto [2015/06/27 23:17:15] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - Demand [2015/06/27 23:17:14] [ 4034896] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
SR - Demand [2015/06/16 22:33:14] [ 433784] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe
SR - Auto [2015/06/16 22:33:36] [ 413304] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
SR - Auto [2015/06/16 22:34:50] [ 822904] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
SR - Demand [2015/06/18 14:57:18] [ 1268568] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
SR - Auto [2015/06/24 13:37:26] [ 1152656] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
SS - Auto [2015/06/23 22:24:20] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2015/06/23 22:24:20] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SPaused - Auto [2015/03/12 17:54:54] [ 9216] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
SR - Auto [2014/08/25 16:01:34] [ 209712] Intel(R) Smart Connect Technology Agent (ISCTAgent) . (.Copyright© 2011-2013 Intel Corporation.) - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
SS - Auto [2014/11/04 13:33:58] [ 2630432] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
SR - Auto [2015/06/16 08:50:36] [ 281088] Mtscheckbondhi (Mtscheckbondhi) . (...) - C:\Program Files (x86)\Mtscheckbondhi\Mtscheckbondhi.exe
SR - Auto [2015/06/24 13:37:26] [ 1868432] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - Auto [2015/06/24 13:37:25] [23007376] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
SR - Auto [2015/06/17 08:48:17] [ 937616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SS - Demand [2015/06/30 17:05:59] [ 2004488] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginClientService.exe
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - Demand [2015/06/04 20:56:54] [ 837312] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - Auto [2015/06/17 08:03:11] [ 410768] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - Auto [2015/06/18 12:55:23] [ 5495056] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

---\\ Scan Additionnel (O88) (6) - 0s
C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS
C:\Windows\System32\Tasks\ProPCCleaner_Popup =>PUP.Optional.ProPCCleaner
C:\Windows\System32\Tasks\ProPCCleaner_Start =>PUP.Optional.ProPCCleaner
HKCU\SOFTWARE\ProPCCleanerConfig =>PUP.Optional.ProPCCleaner
HKCU\SOFTWARE\ProPCCleanerLanguage =>PUP.Optional.ProPCCleaner
C:\Windows\Prefetch\PRIMARYCOLORSETUP.EXE-643295CD.pf =>PUP.PrimaryColor

---\\ Récapitulatif des éléments trouvées sur votre station (4) - 0s
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb
http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/blog =>PUP.Optional.ProPCCleaner
http://www.nicolascoolman.fr/blog =>PUP.PrimaryColor

~ End of the scan, 40461 items in 117 seconds (866)(0)()

Publicité


Signaler le contenu de ce document

Publicité