cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.1.107 Par Nicolas Coolman (2015/08/1)
~ Démarré par olivier (Administrator) (2015/08/01 17:05:02)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\olivier\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\olivier\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ WIN_VISTA, 32-bit Service Pack 2 (Build 6002)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v44.0.2403.125
MFIE: Mozilla Firefox 39.0 (x86 fr) v39.0
MSIE: Internet Explorer v9.0.8112.16421

---\\ Informations sur les produits Windows (8) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Vista, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 6CJ97
Windows License : OK
Windows Automatic Updates : OK (Auto)

---\\ Logiciels de protection (2) - 3s
Avast Premier v10.2.2218
Trusteer Sécurité des points d'accès v3.5.1412.176

---\\ Surveillance de Logiciels (2) - 4s
Adobe Flash Player 18 NPAPI
Adobe Reader X

---\\ Logiciels de partage P2P (1) - 4s
Vuze v5.5.0.0

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3139.704 MB (56% free)
~ System Restore: Activé (Enable)
~ System drive C: has 23 GB free of 147 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-OLIVIER
~ User Name: olivier
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 23 GB free of 147 GB (System)
~ Drive D: has 146 GB free of 147 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 2s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2926592]
[MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96768]
[MD5.8F7EB54EC6C488FC086FB4AC3BB29BBD] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1129472]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.95F5FF73B076576C41740F1A842B9B57] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [19944]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864]
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [107008]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [185856]
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1082232]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288]
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [248832]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [224640]

---\\ Processus lancés (12) - 4s
[MD5.C6B6270CD764CD00A2E6BF04FA9F63CF] - (.IBM Corp. - RapportMgmtService.) -- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe [2222360] [PID.1400]
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [343336] [PID.320]
[MD5.C569E7F268C43D6C9C4D74EE2F06CCD8] - (.Avast Software s.r.o. - avast! firewall service.) -- C:\Program Files\Alwil Software\Avast5\afwServ.exe [107448] [PID.664]
[MD5.D9D1F09C20694B5402B0E9835C93E9C4] - (.IBM Corp. - RapportService.) -- C:\Program Files\Trusteer\Rapport\bin\RapportService.exe [2980120] [PID.556]
[MD5.EFBC44FBD75E4F80BD927AEBF6E7EADE] - (.Agere Systems - Agere Soft Modem Call Progress Service.) -- C:\Windows\System32\agrsmsvc.exe [13312] [PID.1336]
[MD5.5CA9B1062C0C3E3AE19C23AD9D8A5048] - (.Copyright 2007 - CLHNService Module.) -- C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [81504] [PID.2060]
[MD5.B7DC2580425225C320CEDA78DE55A3D0] - (.Egis Incorporated - Acer eDataSecurity Management Service.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [500784] [PID.2088]
[MD5.A51FD9DF23720485991F56741BBEFCFB] - (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [24576] [PID.2148]
[MD5.1E1A308F4229FAB0011A0745EE8377AE] - (.Copyright (C) 2007 - app.) -- C:\Acer\Mobility Center\MobilityService.exe [110592] [PID.2300]
[MD5.DF1C10A75DF7E50195FC417F88A33227] - (...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072] [PID.3064]
[MD5.E5CA07C1A5A4C7095FC8937D84B37243] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\Alwil Software\Avast5\ng\vbox\AvastVBoxSVC.exe [3207800] [PID.744]
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastui.exe [5515496] [PID.3512]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (10) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://android.clients.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com/
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (10) - 4s
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_209.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (11) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (O2) (2) - 1s
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (...) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll (.not file.)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: (no name) - [HKLM]{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} (Orphean) (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (17) - 2s
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [NvMediaCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [eRecoveryService] (Orphean)
O4 - HKLM\..\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastui.exe
O4 - HKLM\..\Run: [WPCUMI] . (.Microsoft Corporation - Notifications du contrôle parental Windows.) -- C:\Windows\System32\wpcumi.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-21-1204891484-3181756378-3361627054-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe
O4 - HKUS\S-1-5-21-1204891484-3181756378-3361627054-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-1204891484-3181756378-3361627054-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe

---\\ Modification Domaine/Adresses DNS (O17) (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
O20 - AppInit_DLLs: . (.Google - Google Desktop.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll

---\\ Liste des services NT non Microsoft et non désactivés (O23) (18) - 6s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) . (.Agere Systems - Agere Soft Modem Call Progress Service.) - C:\Windows\System32\agrsmsvc.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) . (.Avast Software s.r.o. - avast! firewall service.) - C:\Program Files\Alwil Software\Avast5\afwServ.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService (CLHNService) . (.Copyright 2007 - CLHNService Module.) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service (eDataSecurity Service) . (.Egis Incorporated - Acer eDataSecurity Management Service.) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) . (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService (MobilityService) . (.Copyright (C) 2007 - app.) - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 176.2.) - C:\Windows\System32\nvvsvc.exe
O23 - Service: Rapport Management Service (RapportMgmtService) . (.IBM Corp. - RapportMgmtService.) - C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: Raw Socket Service (RS_Service) . (.Acer Incorporated - Raw Socket Service.) - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) . (.Cyberlink Corp. - FCL Driver.) - C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl

---\\ Tâches planifiées en automatique (O39) (18) - 6s
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104]
[MD5.9B3355B29942AF67F014EA90CE1EA960] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [268976]
[MD5.FAAE091936E04BDE3B6041AB5C16BC7B] [APT] [avast! Emergency Update] (.Avast Software s.r.o..) -- C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [1298776]
[MD5.00000000000000000000000000000000] [APT] [Desk 365 RunAsStdUser] (...) -- C:\Program Files\Desk 365\desk365.exe (.not file.) [0] =>PUP.Optional.22Find
[MD5.51508F0C2476177E50C31B0BBFBF1BDB] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107912]
[MD5.51508F0C2476177E50C31B0BBFBF1BDB] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107912]
[MD5.1CE7982AA6A983F4C49A32C8D624237B] [APT] [{77CAA3EB-AF3F-4E35-8365-EFEC42E154AC}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [377000]
O39 - APT: Adobe Flash Player Updater - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT: GoogleUpdateTaskMachineUA - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056]
O39 - APT: Adobe Acrobat Update Task - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874]
O39 - APT: Adobe Flash Player Updater - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854]
O39 - APT: avast! Emergency Update - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [4184]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3174]
O39 - APT: Desk 365 RunAsStdUser - (...) -- C:\Windows\System32\Tasks\Desk 365 RunAsStdUser [3386] =>PUP.Optional.22Find
O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3800]
O39 - APT: GoogleUpdateTaskMachineUA - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4052]
O39 - APT: {77CAA3EB-AF3F-4E35-8365-EFEC42E154AC} - (.Mozilla Corporation.) -- C:\Windows\System32\Tasks\{77CAA3EB-AF3F-4E35-8365-EFEC42E154AC} [2998]

---\\ Logiciels installés (O42) (72) - 23s
O42 - Logiciel: Vuze - (.Azureus Software, Inc..) [HKLM] -- 8461-7759-5462-8226
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Agere Systems HDA Modem - (.Agere Systems.) [HKLM] -- Agere Systems Soft Modem
O42 - Logiciel: Avast Premier - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: CE-5330 Digital Camera Driver - (...) [HKLM] -- CE-5330 Digital Camera Driver
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop
O42 - Logiciel: Acer GridVista - (...) [HKLM] -- GridVista
O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}
O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}
O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}
O42 - Logiciel: Launch Manager - (...) [HKLM] -- LManager
O42 - Logiciel: Marvell Miniport Driver - (.Marvell.) [HKLM] -- Marvell Miniport Driver
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: NVIDIA Drivers - (...) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Trusteer Sécurité des points d'accès - (.Trusteer.) [HKLM] -- Rapport_msi
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: VirginMega DownloadManager V3 - (.VirginMega.) [HKLM] -- VirginMega.DownloadManager.v3.4AE6D9B37411D7D7A2C457954142B8FA4EE6E198.1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Explor@ Park - (.VTech.) [HKLM] -- VTechDownloadManager
O42 - Logiciel: GIMP 2.6.12-2 - (.The GIMP Team.) [HKLM] -- WinGimp-2.0_is1
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst
O42 - Logiciel: Acer VCM - (.Acer Incorporated.) [HKLM] -- {047F790A-7A2A-4B6A-AD02-38092BA63DAC}
O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-211328764D10}
O42 - Logiciel: Acer Mobility Center Plug-In - (.Acer Inc..) [HKLM] -- {11316260-6666-467B-AC34-183FCB5D4335}
O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM] -- {121727D5-FDF3-4723-BA57-EB383440ED72}
O42 - Logiciel: Acer eSettings Management - (.Acer Incorporated.) [HKLM] -- {13D85C14-2B85-419F-AC41-C7F21E68B25D}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Rapport - (.Trusteer.) [HKLM] -- {1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Skype™ 7.5 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: JMicron JMB38X Flash Media Controller - (.JMicron Technology Corp..) [HKLM] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C}
O42 - Logiciel: Java 7 Update 80 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F03217080FF}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0}
O42 - Logiciel: Acer eAudio Management - (.CyberLink Corp..) [HKLM] -- {57265292-228A-41FA-9AEC-4620CBCC2739}
O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM] -- {58E5844B-7CE2-413D-83D1-99294BF6C74F}
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}
O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}
O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
O42 - Logiciel: VirginMega DownloadManager V3 - (.VirginMega.) [HKLM] -- {813D9116-6C2F-CBD3-6787-C08819E2B117}
O42 - Logiciel: Windows PE x86 x64 wims - (.Microsoft.) [HKLM] -- {85F4ACB1-E7DC-C3C6-F4FD-BB936DF2695E}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: Acer Empowering Technology - (.Acer Incorporated.) [HKLM] -- {8F1B6239-FEA0-450A-A950-B05276CE177C}
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE}
O42 - Logiciel: ToolbarFR - (.Orange.) [HKLM] -- {A047FE02-C91C-41CB-898C-4ED21B86025A}
O42 - Logiciel: Acer eDataSecurity Management - (.Egis Inc..) [HKLM] -- {A5633652-3795-4829-BB0B-644F0279E279}
O42 - Logiciel: Acer Crystal Eye Webcam 2.0.8 - (.SuYin.) [HKLM] -- {A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Reader X (10.1.15) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Windows Deployment Tools - (.Microsoft.) [HKLM] -- {BFC9778E-9765-C94C-C082-C2514F8DEB9B}
O42 - Logiciel: getPlus(R) for Adobe - (.NOS Microsystems Ltd..) [HKLM] -- {CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}
O42 - Logiciel: Microsoft Primary Interoperability Assemblies 2005 - (.Microsoft Corporation.) [HKLM] -- {D24DB8B9-BB6C-4334-9619-BA1C650E13D3}
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM] -- {D36DD326-7280-11D8-97C8-000129760CBE}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Windows PE x86 x64 - (.Microsoft.) [HKLM] -- {F89D69CA-6EE1-E037-DD3B-08CDDE1BED1C}
O42 - Logiciel: Notification Live Search - (...) [HKCU] -- Live Search
O42 - Logiciel: Yahoo! BrowserPlus - (.Yahoo! Inc..) [HKCU] -- Yahoo! BrowserPlus

---\\ HKCU & HKLM Software Keys (116) - 24s
HKLM\SOFTWARE\Acer
HKLM\SOFTWARE\Acer Inc.
HKLM\SOFTWARE\Acer Incorporated
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\Agere
HKLM\SOFTWARE\ALWIL Software
HKLM\SOFTWARE\America Online
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\Azureus
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\Conexant
HKLM\SOFTWARE\CXT
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\ej-technologies
HKLM\SOFTWARE\EnigmaSoftwareGroup
HKLM\SOFTWARE\FRANCE TELECOM
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\hdcode
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JMicron Technology Corp.
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\LightScribe
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Marvell
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\muvee Technologies
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\NewTech Infosystems
HKLM\SOFTWARE\NOS
HKLM\SOFTWARE\nSplitter
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OemSetup
HKLM\SOFTWARE\OpenOffice
HKLM\SOFTWARE\Oracle
HKLM\SOFTWARE\Orange
HKLM\SOFTWARE\PCM_Upgrade
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\SuYin
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\Trusteer
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\webtogo
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\WinPcap
HKLM\SOFTWARE\Wistron
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\ALWIL Software
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Ashampoo
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Azureus
HKCU\SOFTWARE\CDDB
HKCU\SOFTWARE\COOPP
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DATA BECKER
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magnet
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewTech Infosystems
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\NOS
HKCU\SOFTWARE\nSplitter
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\PAW-Software
HKCU\SOFTWARE\Philips Songbird
HKCU\SOFTWARE\pixelStorm
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Songbird
HKCU\SOFTWARE\Sonix
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Trusteer
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Widcomm
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wistron
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Google
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Orange

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (233) - 24s
O43 - CFD: 2008/12/25 19:41:40 - [] D -- C:\Program Files\Acer
O43 - CFD: 2008/10/22 18:49:12 - [] D -- C:\Program Files\Acer Arcade Deluxe
O43 - CFD: 2010/06/09 23:19:07 - [] D -- C:\Program Files\Acer GameZone
O43 - CFD: 2008/10/22 18:49:18 - [] D -- C:\Program Files\Acer Inc
O43 - CFD: 2008/05/08 08:02:55 - [] D -- C:\Program Files\Acer Incorporated
O43 - CFD: 2008/05/08 08:15:13 - [] D -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD: 2014/10/18 11:23:50 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2010/05/19 00:47:15 - [] D -- C:\Program Files\Alwil Software
O43 - CFD: 2015/05/26 19:02:08 - [] D -- C:\Program Files\avast software
O43 - CFD: 2008/05/08 08:25:49 - [] D -- C:\Program Files\Big Kahuna Reef
O43 - CFD: 2009/04/26 17:04:57 - [] D -- C:\Program Files\CE-5330 =>PUP.Optional.CrossRider
O43 - CFD: 2015/05/25 23:17:08 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2010/06/09 22:59:12 - [] D -- C:\Program Files\Cyberlink
O43 - CFD: 2012/04/10 00:01:38 - [] D -- C:\Program Files\eMailTrackerPro 2009
O43 - CFD: 2012/11/14 21:57:49 - [] D -- C:\Program Files\Enigma Software Group =>.Enigma Software
O43 - CFD: 2012/07/06 16:26:26 - [0] D -- C:\Program Files\eSobi
O43 - CFD: 2008/12/25 19:37:41 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2014/05/11 17:35:55 - [] D -- C:\Program Files\GIMP-2.0
O43 - CFD: 2013/11/01 12:34:03 - [] D -- C:\Program Files\Google
O43 - CFD: 2013/10/11 23:43:49 - [] D -- C:\Program Files\GUMC527.tmp
O43 - CFD: 2013/10/06 17:47:22 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2008/04/30 09:21:35 - [] D -- C:\Program Files\Intel
O43 - CFD: 2015/07/18 03:59:52 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/06/18 16:55:41 - [] D -- C:\Program Files\Java
O43 - CFD: 2008/10/22 18:38:36 - [] D -- C:\Program Files\Launch Manager
O43 - CFD: 2008/04/30 09:23:59 - [] D -- C:\Program Files\Marvell
O43 - CFD: 2014/02/18 00:10:37 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 2015/03/29 14:13:03 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2015/05/21 04:15:05 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2009/10/11 10:54:22 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 2010/06/09 23:29:32 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2010/09/09 00:05:06 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2010/08/11 03:19:46 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/07/17 07:38:23 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2013/08/29 19:04:31 - [] D -- C:\Program Files\Mozilla Firefox(17)
O43 - CFD: 2013/11/09 15:00:44 - [] D -- C:\Program Files\Mozilla Firefox(9)
O43 - CFD: 2015/07/17 07:38:23 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2015/03/29 14:11:20 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2009/01/30 02:26:44 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2008/05/08 08:27:57 - [] D -- C:\Program Files\NewTech Infosystems
O43 - CFD: 2009/04/02 23:57:13 - [] D -- C:\Program Files\NOS
O43 - CFD: 2014/11/04 00:46:50 - [] D -- C:\Program Files\OpenOffice 4
O43 - CFD: 2014/08/10 17:39:21 - [] D -- C:\Program Files\OpenOffice.org 3
O43 - CFD: 2012/07/18 01:32:16 - [] D -- C:\Program Files\Oracle
O43 - CFD: 2013/08/30 23:08:08 - [] D -- C:\Program Files\Orange
O43 - CFD: 2013/03/23 01:23:04 - [0] D -- C:\Program Files\Paint.NET
O43 - CFD: 2012/11/16 23:29:43 - [0] D -- C:\Program Files\Philips
O43 - CFD: 2008/10/22 18:36:07 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2011/12/11 20:03:16 - [] D -- C:\Program Files\Samsung
O43 - CFD: 2009/01/28 21:11:57 - [] D -- C:\Program Files\Securitoo
O43 - CFD: 2013/08/28 18:17:23 - [] D -- C:\Program Files\SFR
O43 - CFD: 2015/03/18 01:02:04 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2008/04/30 09:25:07 - [] D -- C:\Program Files\Synaptics
O43 - CFD: 2013/09/06 21:03:14 - [] D -- C:\Program Files\Trusteer
O43 - CFD: 2006/11/02 15:01:55 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2009/02/09 14:45:02 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2014/10/18 11:25:24 - [] D -- C:\Program Files\VirginMega DownloadManager v3
O43 - CFD: 2012/01/22 17:04:51 - [] D -- C:\Program Files\VTech
O43 - CFD: 2015/03/26 04:41:13 - [] D -- C:\Program Files\Vuze
O43 - CFD: 2009/11/12 04:20:49 - [] D -- C:\Program Files\Windows Calendar
O43 - CFD: 2009/11/12 04:20:48 - [] D -- C:\Program Files\Windows Collaboration
O43 - CFD: 2009/11/12 04:20:47 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/21 04:13:00 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2014/08/06 12:45:27 - [] D -- C:\Program Files\Windows Kits
O43 - CFD: 2013/01/27 20:51:05 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 2012/04/14 03:01:06 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/06/10 03:46:18 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2008/12/25 19:37:41 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2009/11/12 04:20:48 - [] D -- C:\Program Files\Windows Photo Gallery
O43 - CFD: 2009/11/20 12:27:08 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2009/11/12 04:20:48 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2012/07/07 12:07:20 - [] D -- C:\Program Files\WinPcap
O43 - CFD: 2015/02/28 20:52:51 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2011/02/24 04:02:44 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2008/10/22 18:38:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
O43 - CFD: 2008/10/22 18:48:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe
O43 - CFD: 2008/10/22 18:37:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye
O43 - CFD: 2010/06/09 23:19:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone
O43 - CFD: 2008/10/22 18:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista
O43 - CFD: 2008/04/30 09:21:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem
O43 - CFD: 2011/02/24 04:02:44 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/12/20 12:54:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2008/01/21 04:42:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 2008/01/21 04:42:49 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/05/11 17:36:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP
O43 - CFD: 2013/11/01 12:34:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2010/08/05 09:24:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Desktop
O43 - CFD: 2015/03/25 23:33:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2008/10/22 18:38:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
O43 - CFD: 2006/11/02 14:56:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2010/06/09 23:29:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2010/05/28 00:42:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
O43 - CFD: 2015/05/21 03:10:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2009/12/12 12:22:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
O43 - CFD: 2008/05/08 08:28:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5
O43 - CFD: 2008/05/08 08:26:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8
O43 - CFD: 2014/11/04 00:46:50 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1
O43 - CFD: 2015/03/18 01:02:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2014/04/29 15:26:55 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2006/11/02 14:37:34 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/17 07:48:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Sécurité des points d'accès
O43 - CFD: 2014/07/18 22:18:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2012/01/22 17:05:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VTech
O43 - CFD: 2014/08/06 12:46:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
O43 - CFD: 2012/04/14 01:26:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2012/07/07 12:06:09 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2010/05/19 00:44:28 - [] D -- C:\ProgramData\Alwil Software
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2013/02/01 18:58:10 - [] D -- C:\ProgramData\ashampoo
O43 - CFD: 2013/10/30 00:45:40 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2008/12/25 19:37:41 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/10/06 17:45:59 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2011/11/04 01:25:25 - [0] D -- C:\ProgramData\eMule
O43 - CFD: 2010/07/07 23:49:57 - [] D -- C:\ProgramData\eSobi
O43 - CFD: 2008/12/25 19:37:41 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2008/05/08 08:16:01 - [] D -- C:\ProgramData\FloodLightGames
O43 - CFD: 2009/03/05 00:55:53 - [] D -- C:\ProgramData\Google
O43 - CFD: 2009/01/03 11:55:46 - [] D -- C:\ProgramData\InterAction studios
O43 - CFD: 2010/10/20 23:43:55 - [] D -- C:\ProgramData\LightScribe
O43 - CFD: 2014/01/24 18:23:45 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2008/12/25 19:37:41 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2014/02/25 04:07:10 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2010/06/09 23:29:56 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2008/12/25 19:37:41 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2012/04/30 08:19:20 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2010/10/20 23:39:45 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2009/04/03 00:01:58 - [] D -- C:\ProgramData\NOS
O43 - CFD: 2015/03/29 14:32:40 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/05/25 23:20:36 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2012/12/16 18:13:56 - [] D -- C:\ProgramData\Orange
O43 - CFD: 2009/02/03 22:22:49 - [] D -- C:\ProgramData\SiteAdvisor
O43 - CFD: 2015/06/18 16:27:26 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2010/05/29 12:25:16 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/10/06 17:46:17 - [] AD -- C:\ProgramData\TEMP
O43 - CFD: 2006/11/02 15:02:04 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2013/09/06 20:57:12 - [] D -- C:\ProgramData\Trusteer
O43 - CFD: 2012/01/22 17:04:51 - [] D -- C:\ProgramData\VTech
O43 - CFD: 2012/07/05 18:52:02 - [] D -- C:\ProgramData\WindowsSearch
O43 - CFD: 2008/05/08 08:15:14 - [] D -- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
O43 - CFD: 2009/04/27 00:00:26 - [0] DC -- C:\ProgramData\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}
O43 - CFD: 2011/12/26 23:36:44 - [] D -- C:\ProgramData\{F0489EF2-D393-4114-85BA-A94D71D89543}
O43 - CFD: 2011/09/13 22:47:06 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2015/06/18 16:49:25 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 2009/01/28 21:04:55 - [] D -- C:\Program Files\Common Files\France Telecom
O43 - CFD: 2008/05/08 08:30:33 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 2015/05/25 23:17:08 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 2008/05/08 08:27:38 - [] D -- C:\Program Files\Common Files\LightScribe
O43 - CFD: 2015/03/29 14:12:53 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2008/05/08 08:26:25 - [] D -- C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 2009/04/02 00:34:38 - [] D -- C:\Program Files\Common Files\ODBC
O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2015/03/18 01:02:03 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2011/11/13 23:41:51 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2009/01/28 22:22:56 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 2012/11/14 21:57:32 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 2009/05/17 00:28:19 - [] SHD -- C:\Users\olivier\AppData\Roaming\.#
O43 - CFD: 2010/08/15 19:49:53 - [] D -- C:\Users\olivier\AppData\Roaming\Acer
O43 - CFD: 2008/05/08 08:25:56 - [] D -- C:\Users\olivier\AppData\Roaming\Acer GameZone Console
O43 - CFD: 2012/07/07 12:06:09 - [] D -- C:\Users\olivier\AppData\Roaming\Adobe
O43 - CFD: 2013/11/01 12:27:53 - [] D -- C:\Users\olivier\AppData\Roaming\AVAST Software
O43 - CFD: 2015/05/09 02:11:47 - [] D -- C:\Users\olivier\AppData\Roaming\Azureus
O43 - CFD: 2009/01/01 20:46:59 - [] D -- C:\Users\olivier\AppData\Roaming\CyberLink
O43 - CFD: 2013/08/05 14:59:53 - [] D -- C:\Users\olivier\AppData\Roaming\dvdcss
O43 - CFD: 2012/07/06 16:26:12 - [0] D -- C:\Users\olivier\AppData\Roaming\eSobi
O43 - CFD: 2013/10/07 02:22:38 - [0] D -- C:\Users\olivier\AppData\Roaming\FreeSoftwareUpdater
O43 - CFD: 2009/01/28 20:49:59 - [] D -- C:\Users\olivier\AppData\Roaming\Google
O43 - CFD: 2014/12/28 01:30:03 - [] D -- C:\Users\olivier\AppData\Roaming\gtk-2.0
O43 - CFD: 2008/12/25 19:42:13 - [] D -- C:\Users\olivier\AppData\Roaming\Identities
O43 - CFD: 2011/12/11 20:22:53 - [] D -- C:\Users\olivier\AppData\Roaming\Intelli-studio
O43 - CFD: 2012/09/24 18:26:02 - [] D -- C:\Users\olivier\AppData\Roaming\it.clementoni.SapAlfabetoFR.B4D60FE9B52FFCCBFC32C60D48FA030B4118CB03.1
O43 - CFD: 2008/12/25 19:42:14 - [] D -- C:\Users\olivier\AppData\Roaming\Macromedia
O43 - CFD: 2006/11/02 14:37:34 - [0] D -- C:\Users\olivier\AppData\Roaming\Media Center Programs
O43 - CFD: 2013/10/05 00:29:11 - [] SD -- C:\Users\olivier\AppData\Roaming\Microsoft
O43 - CFD: 2012/04/09 23:10:16 - [] D -- C:\Users\olivier\AppData\Roaming\Mozilla
O43 - CFD: 2013/09/20 06:47:54 - [0] D -- C:\Users\olivier\AppData\Roaming\Nico Mak Computing
O43 - CFD: 2014/08/10 20:43:03 - [] D -- C:\Users\olivier\AppData\Roaming\OpenOffice
O43 - CFD: 2010/05/29 12:30:02 - [] D -- C:\Users\olivier\AppData\Roaming\OpenOffice.org
O43 - CFD: 2014/12/28 00:52:25 - [] D -- C:\Users\olivier\AppData\Roaming\Oracle
O43 - CFD: 2009/07/09 18:42:03 - [0] D -- C:\Users\olivier\AppData\Roaming\PeerNetworking
O43 - CFD: 2011/12/27 00:18:58 - [] D -- C:\Users\olivier\AppData\Roaming\Philips
O43 - CFD: 2011/12/26 23:39:16 - [] D -- C:\Users\olivier\AppData\Roaming\Philips-Songbird
O43 - CFD: 2013/10/06 17:47:15 - [] D -- C:\Users\olivier\AppData\Roaming\PowerCinema
O43 - CFD: 2015/06/28 10:59:21 - [] D -- C:\Users\olivier\AppData\Roaming\Skype
O43 - CFD: 2011/05/30 23:39:03 - [] D -- C:\Users\olivier\AppData\Roaming\Template
O43 - CFD: 2014/10/18 11:24:46 - [] D -- C:\Users\olivier\AppData\Roaming\VirginMega.DownloadManager.v3
O43 - CFD: 2014/10/18 11:24:10 - [] D -- C:\Users\olivier\AppData\Roaming\VirginMega.DownloadManager.v3.4AE6D9B37411D7D7A2C457954142B8FA4EE6E198.1
O43 - CFD: 2015/06/28 22:58:29 - [] D -- C:\Users\olivier\AppData\Roaming\vlc
O43 - CFD: 2010/09/08 23:38:13 - [] D -- C:\Users\olivier\AppData\Roaming\WinRAR
O43 - CFD: 2015/08/01 17:05:21 - [] D -- C:\Users\olivier\AppData\Roaming\ZHP
O43 - CFD: 2008/12/25 21:17:14 - [] D -- C:\Users\olivier\AppData\Local\Acer Arcade Deluxe
O43 - CFD: 2015/06/07 11:06:25 - [] D -- C:\Users\olivier\AppData\Local\Adobe
O43 - CFD: 2008/12/25 19:41:16 - [0] SHD -- C:\Users\olivier\AppData\Local\Application Data
O43 - CFD: 2009/02/02 14:43:29 - [] D -- C:\Users\olivier\AppData\Local\Apps
O43 - CFD: 2013/02/01 18:59:20 - [] D -- C:\Users\olivier\AppData\Local\ashampoo
O43 - CFD: 2012/01/22 17:06:10 - [] D -- C:\Users\olivier\AppData\Local\cache
O43 - CFD: 2008/12/25 21:17:26 - [] D -- C:\Users\olivier\AppData\Local\CyberLink
O43 - CFD: 2014/12/28 21:03:58 - [] D -- C:\Users\olivier\AppData\Local\DownloadManager
O43 - CFD: 2015/02/14 16:55:30 - [] D -- C:\Users\olivier\AppData\Local\Google
O43 - CFD: 2008/12/25 19:41:16 - [0] SHD -- C:\Users\olivier\AppData\Local\Historique
O43 - CFD: 2012/06/14 10:45:42 - [] D -- C:\Users\olivier\AppData\Local\Macromedia
O43 - CFD: 2015/03/29 22:40:19 - [] D -- C:\Users\olivier\AppData\Local\Microsoft
O43 - CFD: 2012/11/17 00:13:33 - [] D -- C:\Users\olivier\AppData\Local\Microsoft Games
O43 - CFD: 2009/07/22 23:54:34 - [0] D -- C:\Users\olivier\AppData\Local\Microsoft Help
O43 - CFD: 2012/04/09 23:10:16 - [] D -- C:\Users\olivier\AppData\Local\Mozilla
O43 - CFD: 2013/02/01 20:31:22 - [] D -- C:\Users\olivier\AppData\Local\Nero
O43 - CFD: 2013/09/29 10:36:28 - [] D -- C:\Users\olivier\AppData\Local\Nero_AG
O43 - CFD: 2012/07/07 12:50:42 - [] D -- C:\Users\olivier\AppData\Local\Orange
O43 - CFD: 2013/03/23 00:55:10 - [] D -- C:\Users\olivier\AppData\Local\Paint.NET
O43 - CFD: 2011/12/26 23:39:56 - [] D -- C:\Users\olivier\AppData\Local\Philips-Songbird
O43 - CFD: 2010/06/09 23:09:21 - [] D -- C:\Users\olivier\AppData\Local\PlayMovie
O43 - CFD: 2009/02/09 01:35:57 - [] D -- C:\Users\olivier\AppData\Local\PowerCinema
O43 - CFD: 2014/06/09 16:06:20 - [] D -- C:\Users\olivier\AppData\Local\Skype
O43 - CFD: 2008/12/25 21:17:28 - [] D -- C:\Users\olivier\AppData\Local\SoftDMA
O43 - CFD: 2015/08/01 17:04:59 - [] D -- C:\Users\olivier\AppData\Local\Temp
O43 - CFD: 2008/12/25 19:41:16 - [0] SHD -- C:\Users\olivier\AppData\Local\Temporary Internet Files
O43 - CFD: 2013/09/06 21:03:33 - [] D -- C:\Users\olivier\AppData\Local\Trusteer
O43 - CFD: 2009/01/28 23:32:44 - [] D -- C:\Users\olivier\AppData\Local\VirtualStore
O43 - CFD: 2014/05/11 17:09:12 - [] D -- C:\Users\olivier\AppData\Local\Windows Live
O43 - CFD: 2009/10/11 00:08:43 - [] D -- C:\Users\olivier\AppData\Local\Yahoo!
O43 - CFD: 2008/01/21 04:42:46 - [] RD -- C:\Users\olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2008/12/25 19:42:25 - [] RD -- C:\Users\olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2010/03/31 19:39:14 - [] D -- C:\Users\olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserPlus
O43 - CFD: 2008/01/21 04:42:46 - [] RD -- C:\Users\olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2012/07/07 12:04:50 - [0] D -- C:\Users\olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application
O43 - CFD: 2015/07/18 04:02:02 - [] RD -- C:\Users\olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (16) - 4s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\AgentMonitor [Key] . (.Copyright (C) 2010 - AgentMon Application.) -- C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
O53 - SMSR:HKLM\...\startupreg\ArcadeDeluxeAgent [Key] . (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
O53 - SMSR:HKLM\...\startupreg\BkupTray [Key] . (.Copyright (c)2005-2007, NewTech Infosystems, Inc. All - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
O53 - SMSR:HKLM\...\startupreg\eAudio [Key] . (.Acer Incorporated - Notification tool for RealTek audio chip.) -- C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
O53 - SMSR:HKLM\...\startupreg\eDataSecurity Loader [Key] . (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O53 - SMSR:HKLM\...\startupreg\Google Desktop Search [Key] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O53 - SMSR:HKLM\...\startupreg\LManager [Key] . (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe
O53 - SMSR:HKLM\...\startupreg\PlayMovie [Key] . (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O53 - SMSR:HKLM\...\startupreg\PLFSetI [Key] . (.Copyright (C) 2007 - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe
O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - HD Audio Control Panel.) -- RtHDVCpl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Skytel [Key] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- Skytel.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O53 - SMSR:HKLM\...\startupreg\WarReg_PopUp [Key] . (.Acer Incorporated - WR_PopUp.) -- C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe

---\\ Liste des pilotes du système (SDL) (O58) (101) - 59s
O58 - SDL:2008/01/21 04:23:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968]
O58 - SDL:2008/01/21 04:23:25 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600]
O58 - SDL:2008/01/21 04:23:26 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432]
O58 - SDL:2008/01/21 04:23:27 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560]
O58 - SDL:2008/03/01 01:13:38 A . (.Agere Systems - SoftModem Device Driver.) -- C:\Windows\System32\drivers\AGRSM.sys [1202560]
O58 - SDL:2008/01/21 04:23:00 N . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464]
O58 - SDL:2008/01/21 04:23:23 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416]
O58 - SDL:2008/01/21 04:23:24 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928]
O58 - SDL:2013/10/14 20:41:58 A . (.AVAST Software - avast! Filtering TDI driver.) -- C:\Windows\System32\drivers\aswFW.sys [104752]
O58 - SDL:2015/05/07 20:22:48 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [24144]
O58 - SDL:2015/05/07 20:22:14 A . (.Avast Software s.r.o. - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [26096]
O58 - SDL:2015/05/07 20:22:48 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [74976]
O58 - SDL:2012/03/07 00:44:51 A . (.ALWIL Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdis.sys [12112]
O58 - SDL:2015/05/07 20:21:47 A . (.Avast Software s.r.o. - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdis2.sys [253600]
O58 - SDL:2015/05/07 20:22:48 A . (.Avast Software s.r.o. - avast! TDI Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [55200]
O58 - SDL:2015/05/07 20:22:48 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [49904]
O58 - SDL:2015/05/07 20:22:14 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [787760]
O58 - SDL:2015/06/26 17:02:04 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [428120]
O58 - SDL:2015/05/07 20:22:49 A . (.Avast Software s.r.o. - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [57888]
O58 - SDL:2015/05/07 20:22:49 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [209048]
O58 - SDL:2008/04/06 04:56:08 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athr.sys [908800]
O58 - SDL:2008/01/21 04:23:20 A . (.Broadcom Corporation - Pilote NDIS6.0 Broadcom NetXtreme Gigabit E.) -- C:\Windows\System32\drivers\b57nd60x.sys [179712]
O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808]
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2008/01/21 04:23:00 N . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000]
O58 - SDL:2004/03/17 06:59:56 A . (.FotoNation Ltd. - USB Driver for Digital Camera.) -- C:\Windows\System32\drivers\CoachUsb.sys [46944]
O58 - SDL:2004/03/17 07:00:00 A . (.Accapella Ltd. - Video Capture Minidriver for Digital Camera.) -- C:\Windows\System32\drivers\CoachVc.sys [44256]
O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272]
O58 - SDL:2006/11/03 07:29:36 A . (.Dritek System Inc. - Dritek PS2 Keyboard Filter Driver.) -- C:\Windows\System32\drivers\DKbFltr.sys [21264]
O58 - SDL:2008/01/21 04:23:24 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784]
O58 - SDL:2008/01/21 04:23:22 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584]
O58 - SDL:2008/01/21 04:23:26 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504]
O58 - SDL:2008/01/21 04:23:23 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064]
O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576]
O58 - SDL:2008/03/21 10:48:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15.sys [15392]
O58 - SDL:2008/03/21 10:48:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15_64.sys [17952]
O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944]
O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944]
O58 - SDL:2008/04/12 03:55:04 A . (.JMicron Technology Corp. - JMicron JMB38X Memory Card Reader Driver.) -- C:\Windows\System32\drivers\jmcr.sys [84240]
O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312]
O58 - SDL:2008/01/21 04:23:25 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656]
O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312]
O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288]
O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616]
O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384]
O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160]
O58 - SDL:2011/02/11 23:23:34 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35088]
O58 - SDL:2008/01/21 04:23:23 A . (.National Semiconductor Corporation - NSC Fast Infrared Driver..) -- C:\Windows\System32\drivers\nscirda.sys [30720]
O58 - SDL:2008/01/31 03:52:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [14848]
O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608]
O58 - SDL:2013/02/18 09:22:18 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda32v.sys [149352]
O58 - SDL:2008/07/19 10:23:00 A . (.NVIDIA Corporation - NVIDIA Compatible Windows Vista Kernel Mode.) -- C:\Windows\System32\drivers\nvlddmkm.sys [7545824]
O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968]
O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112]
O58 - SDL:2006/11/28 21:46:22 N . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\Windows\System32\drivers\PCAMp50.sys [28224]
O58 - SDL:2006/11/28 21:46:20 N . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\Windows\System32\drivers\PCASp50.sys [27072]
O58 - SDL:2008/03/04 23:38:42 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Filter Dr.) -- C:\Windows\System32\drivers\psdfilter.sys [18992]
O58 - SDL:2008/03/04 23:38:44 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Named Pip.) -- C:\Windows\System32\drivers\PSDNServ.sys [16944]
O58 - SDL:2008/03/04 23:38:44 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Virtual D.) -- C:\Windows\System32\drivers\PSDVdisk.sys [60464]
O58 - SDL:2008/01/21 04:23:24 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360]
O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088]
O58 - SDL:2015/06/02 18:41:04 A . (.IBM Corp. - RapportHades64.) -- C:\Windows\System32\drivers\RapportHades.sys [68280]
O58 - SDL:2015/06/02 18:41:04 A . (.IBM Corp. - RapportKE.) -- C:\Windows\System32\drivers\RapportKELL.sys [218264]
O58 - SDL:2008/08/07 03:11:06 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2164248]
O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2008/01/21 04:23:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808]
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944]
O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848]
O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920]
O58 - SDL:2008/02/22 21:50:48 A . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [198064]
O58 - SDL:2008/02/25 16:29:24 A . (.EnTech Taiwan - TVicPort Driver for Windows NT/2000/XP.) -- C:\Windows\System32\drivers\TVicPort.sys [14544]
O58 - SDL:2008/01/31 03:51:50 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [13824]
O58 - SDL:2008/01/21 04:23:20 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648]
O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408]
O58 - SDL:2008/01/21 04:23:23 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816]
O58 - SDL:2008/01/21 04:23:00 N . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024]
O58 - SDL:2008/01/21 04:23:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616]
O58 - SDL:2008/01/21 04:23:22 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL3.SYS [200704]
O58 - SDL:2008/01/21 04:23:23 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT3.SYS [654336]
O58 - SDL:2008/01/21 04:23:22 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV3.SYS [987648]
O58 - SDL:2008/02/21 11:55:00 A . (.Marvell - Miniport Driver for Marvell Yukon Ethernet.) -- C:\Windows\System32\drivers\yk60x86.sys [299008]
O58 - SDL:2008/02/25 16:29:24 A . (.Zeal SoftStudio - zntport.) -- C:\Windows\System32\drivers\zntport.sys [6080]
O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Associations Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 29s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com/
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr/
O69 - SBI: SearchScopes [HKCU] {F6E281F2-BD34-45C8-9212-79CDAC71A9FE} - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (32) - 3s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928]
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [17920]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [601600]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (14) - 6s
O87 - FAEL: "{700982FC-837F-4B5A-9A78-2CBD0B8EB989}" [In-None-P6-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{1EC0BE30-C5C4-4D30-8DDA-FDFEE6BEFF0F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O87 - FAEL: "{93F78E54-6DE3-4FCA-974E-71A787221BEC}" [In-None-P17-TRUE] .(.Acer Incoporated - Acer Video Quality Enhancement.) -- C:\Program Files\Acer\Acer VCM\VC.exe
O87 - FAEL: "{9B835041-4DE6-49B1-948D-37F89370753F}" [In-None-P17-TRUE] .(.Acer Corp. - Acer Arcade Deluxe PlayMovie.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PlayMovie.exe
O87 - FAEL: "{449D3A6F-4470-42D6-86F7-01DB764D1AFB}" [In-None-P17-TRUE] .(.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
O87 - FAEL: "{20E64A11-2C3D-4D57-AA7E-799A65568477}" [In-None-P6-TRUE] .(...) -- System (.not file.)
O87 - FAEL: "{2C830323-2C40-413E-B61E-B030E4FDC3C5}" [In-None-P6-TRUE] .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{C74BDC10-1FC2-4CFE-AE8D-3F30A5505932}" [In-None-P17-TRUE] .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{B9F8AE22-B9D2-4461-A6F4-470CE1BF5766}" [In-None-P6-TRUE] .(.Azureus Software, Inc - Vuze Launcher.) -- C:\Program Files\Vuze\Azureus.exe
O87 - FAEL: "{7B038682-9388-4E20-83FC-5F81655F3DBE}" [In-None-P17-TRUE] .(.Azureus Software, Inc - Vuze Launcher.) -- C:\Program Files\Vuze\Azureus.exe
O87 - FAEL: "{34813922-3166-4A65-A9EF-F25B07EE29E2}" [In-None-P6-TRUE] .(.Azureus Software, Inc - Vuze Launcher.) -- C:\Program Files\Vuze\Azureus.exe
O87 - FAEL: "{479A8F49-8912-4FE8-B97D-3EF26FEDCC6F}" [In-None-P17-TRUE] .(.Azureus Software, Inc - Vuze Launcher.) -- C:\Program Files\Vuze\Azureus.exe
O87 - FAEL: "{66D24A37-BD09-4AF1-9463-C007ADD35BCF}" [In-None-P6-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\Alwil Software\Avast5\ng\vbox\aswFe.exe
O87 - FAEL: "{BEB45DE0-946C-4DD3-9D34-3226BEFE60A0}" [In-None-P17-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\Alwil Software\Avast5\ng\vbox\aswFe.exe

---\\ Scan Additionnel (O88) (2) - 0s
C:\Windows\System32\Tasks\Desk 365 RunAsStdUser =>PUP.Optional.22Find
C:\Program Files\CE-5330 =>PUP.Optional.CrossRider

---\\ Récapitulatif des éléments trouvées sur votre station (2) - 0s
http://www.nicolascoolman.fr/hijacker-22find/ =>PUP.Optional.22Find
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider

~ End of the scan, 22289 items in 456 seconds (813)(0)()

Publicité


Signaler le contenu de ce document

Publicité