cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.8.113 Par Nicolas Coolman (2015/08/8)
~ Démarré par Admin (Administrator) (2015/08/09 02:08:11)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Admin\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Admin\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 32-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v44.0.2403.130
MFIE: Mozilla Firefox 39.0.3 (x86 en-US) v39.0.3
MSIE: Internet Explorer v11.0.9600.17914

---\\ Informations sur les produits Windows (4) - 16s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (1) - 1s
Malwarebytes' Anti-Malware

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3665.22 MB (46% free)
~ System Restore: Activé (Enable)
~ System drive C: has 10 GB free of 76 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: ADMIN-PC
~ User Name: Admin
~ Logged in as Administrator

---\\ Enumération des unités disques (5) - 0s
~ Drive C: has 10 GB free of 76 GB (System)
~ Drive D: has GB free of 2 GB
~ Drive E: has 16 GB free of 39 GB
~ Drive F: has 8 GB free of 33 GB
~ Drive G: has 1 GB free of 2 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 5s
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256]
[MD5.63B01F72FD727D5736DBEF54174D8F93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232]
[MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888]
[MD5.01C5B803F6E1FDF8F16F0763DA9B997D] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [124416]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904]
[MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848]
[MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168]
[MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632]

---\\ Processus lancés (17) - 3s
[MD5.4DC6B0772D1698F04FC79053A21C8260] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Windows\System32\AEADISRV.EXE [90112] [PID.1700]
[MD5.73B0195E0405051CC2B69E84EC3F64D1] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [731840] [PID.1768]
[MD5.26EABEEA7F30DCF21DA0577C4EE26FAA] - (.Foxit Corporation - Foxit Cloud Safe Update Service.) -- C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216] [PID.1804]
[MD5.2ECE62321739623F52BB28AE0EBBC2D1] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files\MiuiTab\ProtectService.exe [125056] [PID.1832] =>PUP.Optional.MiuiTab
[MD5.1011C779C9FCD01AFA96490C86A50421] - (.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625304] [PID.1992]
[MD5.360959BBD4F451E1AB811F4304232766] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2568120] [PID.1164]
[MD5.201E7AE2E2B101DC0844426097D298B8] - (.Dyn - A fully-featured cross platform DDNS update.) -- C:\Program Files\Dyn\Updater\dyn_updater.exe [1639216] [PID.660]
[MD5.AFD15F701B550037FFDDE6B18171479D] - (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816] [PID.2984]
[MD5.B7D90AF207653B8DADD4400F199EA687] - (.TeVii Technology Ltd. - TeVii Remote Control.) -- C:\Windows\TeViiRC.exe [328328] [PID.3000]
[MD5.6E8357E50213A7E4B424F23F4102E0DA] - (.Cracked By Wh!5teR - ESET GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [2029640] [PID.3128]
[MD5.F152A1C1F9CE2F13056D3BFB14F001CE] - (.Copyright (C) 2008 - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe [128864] [PID.3232]
[MD5.D447736259F18CBCA9E4CE09465CBB5D] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3829328] [PID.3280]
[MD5.AEA5738E8CCEB85267861F304B9993A7] - (.TechSmith Corporation - SnagIt 8.) -- C:\Program Files\TechSmith\SnagIt 8\SnagIt32.exe [5517312] [PID.2276]
[MD5.BD95E822E7A958BBCA842D078426A151] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.6020]
[MD5.2E50426D295B53935BB196CC63EC0313] - (.PandoraTV - .) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe [586904] [PID.6080]
[MD5.10576CF2D993DC84FEAE185637A7E65C] - (.TechSmith Corporation - TechSmith HTML Help Helper.) -- C:\Program Files\TechSmith\SnagIt 8\TscHelp.exe [26112] [PID.6116]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (12) - 0s
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cknebhggccemgcnbidipinkifmmegdel] Alexa Traffic Rank
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [eknmbllaehgdgginmokmkipolodpcnap] pricechiop =>PUP.Optional.Multiplug
G2 - GCE: Preference [User Data\Default] [eoeocmdmhhgcmamcogoldekhicehiadi] NExxtCoup =>PUP.Optional.Multiplug
G2 - GCE: Preference [User Data\Default] [fhpgipeghaccffbhgkjmooieflpoieef] __MSG_application_title__
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (22) - 2s
M0 - MFSP: prefs.js [Admin - bdcsbn63.default] http://www.delta-homes.com/?type=hp&ts=1434015348&z=c51640455ea9487593e8149g5z6c9zbe9gewbcbw6o&from=ient06110&uid=SAMSUNGXHD083GJ_S1VBJ9ASC10210C10210X =>PUP.Optional.Qvo6
P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\defsearchp@gmail.com.xpi =>PUP.Optional.PriceFountain
P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\searchplugins\delta-homes.xml =>PUP.Optional.DeltaHomes
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazondotcom.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\twitter.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (.lightningnewtab.com - Default NewTab.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\default_newtabff@gmail.com =>PUP.Optional.LightningNewTab
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Users\Admin\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Users\Admin\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@DVR/npmedia,version=33.2.0.4] - (...) -- C:\Program Files\webrec\WEB30\DVR32\33.2.0.4\npmedia.dll
P2 - FPN: [HKLM] [@DVR/npTimeGrid,version=33.2.0.4] - (...) -- C:\Program Files\webrec\WEB30\DVR32\33.2.0.4\npTimeGrid.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (11) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/ =>PUP.Optional.Qvo6
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (24)

---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} . (.TechSmith Corporation - SnagIt Browser Helper Object for Internet E.) -- C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab

---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: (no name) - [HKLM]{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} (Orphean)

---\\ Applications lancées au démarrage du sytème (O4) (41) - 2s
O4 - HKLM\..\Run: [SoundMAXPnP] . (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [TeViiRC] . (.TeVii Technology Ltd. - TeVii Remote Control.) -- C:\Windows\TeViiRC.exe
O4 - HKLM\..\Run: [NeroFilterCheck] . (.Nero AG - NeroCheck.) -- C:\Windows\System32\NeroCheck.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe (.not file.) =>PUP.Optional.Mobogenie
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\Run: [egui] . (.Cracked By Wh!5teR - ESET GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- c:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [DivXMediaServer] . (.DivX, LLC - DivX DLNA Media Server.) -- C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
O4 - HKLM\..\Run: [NPSStartup] (Orphean)
O4 - HKLM\..\Run: [autodetect] . (.Copyright (C) 2008 - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe
O4 - HKLM\..\Run: [bintin] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [Google Update] C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
O4 - HKCU\..\Run: [NextLive] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files\Steam\Steam.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [urlspace] C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.)
O4 - HKCU\..\RunOnce: [BeginInteractiveOSUpgrade] . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Google Update] C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [NextLive] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files\Steam\Steam.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [urlspace] C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.)
O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\RunOnce: [BeginInteractiveOSUpgrade] . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Liste des services NT non Microsoft et non désactivés (O23) (16) - 1s
O23 - Service: Andrea ADI Filters Service (AEADIFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Windows\System32\AEADISRV.EXE
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Dyn Updater (DynUpdater) . (.Dyn - A fully-featured cross platform DDNS update.) - C:\Program Files\Dyn\Updater\dyn_updater.exe
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Corporation - Foxit Cloud Safe Update Service.) - C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) - C:\Windows\System32\nvvsvc.exe
O23 - Service: PandoraService (PanService) . (.Pandora.TV - Pandora.TV service file.) - C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe

---\\ Tâches planifiées en automatique (O39) (17) - 3s
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000Core.job [1026]
O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000UA.job [1078]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3802]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4054]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000Core [3656]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000UA [4052]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\LaunchSignup [4014]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\SidebarExecute [3148]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{53D1B0B1-F593-4DFB-B896-4CC09B5EC859} [3232]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{6F8D9A46-F6BD-4C0D-B87E-D86A922458E2} [3130]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{88D357DA-8EBB-4490-B9E6-810117A9A75E} [3234]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{CE144174-013B-4121-9BBC-4DB55DD072EE} [3156]
O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{F132D93A-CC80-4399-9D3E-6AD8EEDDB3AD} [3150]

---\\ Logiciels installés (O42) (99) - 12s
O42 - Logiciel: Pandora Service - (.Pandora.TV.) [HKLM] -- 4F6D5E84-5826-4394-9F40-3A9A19165651_is1
O42 - Logiciel: AC3Filter 2.6.0b - (.Alexander Vigovsky.) [HKLM] -- AC3Filter_is1
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop 7.0
O42 - Logiciel: Advanced RAR Password Recovery (remove only) - (...) [HKLM] -- Advanced RAR Password Recovery
O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM] -- AIMP3
O42 - Logiciel: bitcontrol® Digital TV Link v2.5 - (.BitCtrl Systems GmbH.) [HKLM] -- bcDTVLink
O42 - Logiciel: bitcontrol® MPEG-2 Video Decoder v1.5 - (.BitCtrl Systems GmbH.) [HKLM] -- bcMPEG2dec
O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup
O42 - Logiciel: DVB Dream version 2.7.1 - (...) [HKLM] -- DVB Dream_is1
O42 - Logiciel: Elecard AVC HD Editor - (.Elecard.) [HKLM] -- Elecard AVC HD Editor 1.0.100705
O42 - Logiciel: Elecard AVC HD Player - (.Elecard.) [HKLM] -- Elecard AVC HD Player 5.8.121004
O42 - Logiciel: Elecard AVC PlugIn for ProgDVB - (.Elecard.) [HKLM] -- Elecard AVC PlugIn for ProgDVB 3.0.120718
O42 - Logiciel: Elecard AVC PlugIn for WMP - (.Elecard.) [HKLM] -- Elecard AVC PlugIn for WMP 3.1.120718
O42 - Logiciel: Elecard Stream Inspector - (.Elecard.) [HKLM] -- Elecard Stream Inspector 1.2.110811
O42 - Logiciel: Fausto - (...) [HKLM] -- Fausto
O42 - Logiciel: ffdshow v1.3.4531 [2014-06-28] - (...) [HKLM] -- ffdshow_is1
O42 - Logiciel: FileZilla Client 3.10.0.2 - (.Tim Kosse.) [HKLM] -- FileZilla Client
O42 - Logiciel: FormatFactory 3.6.0.0 - (.Format Factory.) [HKLM] -- FormatFactory
O42 - Logiciel: Foxit Reader - (.Foxit Corporation.) [HKLM] -- Foxit Reader_is1
O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM] -- GOM Player
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: HD Pack 2.6 - (...) [HKLM] -- HD Pack
O42 - Logiciel: HD Pack 2.7 - (...) [HKLM] -- HD Pack 2.7
O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F}
O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM] -- InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager
O42 - Logiciel: K-Lite Codec Pack 10.1.5 Full - (...) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: LAV Filters 0.65 - (.Hendrik Leppkes.) [HKLM] -- lavfilters_is1
O42 - Logiciel: Lazesoft Recover My Password version 3.2 Home Edition - (.Lazesoft.) [HKLM] -- LS-C4DC987A-47E2-487C-9F63-7E1DB5F88FC3_is1
O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0.3 (x86 en-US)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: myTeVii - (...) [HKLM] -- MyTeVii
O42 - Logiciel: No-IP DUC - (.Vitalwerks Internet Solutions LLC.) [HKLM] -- NoIPDUC
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo
O42 - Logiciel: OSForensics - (.PassMark Software.) [HKLM] -- OSForensics_is1
O42 - Logiciel: Recover My Files - (.GetData Pty Ltd.) [HKLM] -- Recover My Files v5_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM] -- Steam
O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM] -- TeamViewer 9
O42 - Logiciel: TeViiData - (...) [HKLM] -- TeViiData
O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM] -- The KMPlayer
O42 - Logiciel: Connexion par le Web au Bureau à distance - (...) [HKLM] -- TsActiveXClient
O42 - Logiciel: Pro Evolution Soccer 2015 Update v1.05 - (...) [HKLM] -- UHJvRXZvbHV0aW9uU29jY2VyMjAxNQ==_is1
O42 - Logiciel: UltraISO Premium V9.6 - (...) [HKLM] -- UltraISO_is1
O42 - Logiciel: URL Helper - (...) [HKLM] -- URL Helper_is1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: WinPcap 4.1.1 - (.CACE Technologies.) [HKLM] -- WinPcapInst
O42 - Logiciel: WinRAR 4.01 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: WinSCP 4.2.8 - (.Martin Prikryl.) [HKLM] -- winscp3_is1
O42 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
O42 - Logiciel: SnagIt 8 - (.TechSmith Corporation.) [HKLM] -- {0AEA9ECE-2AD0-4DF0-932E-F0AC6B771749}
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E}
O42 - Logiciel: Skype™ 7.1 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 40 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218040F0}
O42 - Logiciel: SimpleTV 0.4.7 b2 - (.SergeyVS.) [HKLM] -- {290A2821-B1F8-4566-B49A-25F349A5B5CB}_is1
O42 - Logiciel: MyLanViewer version 4.18.6 - (.S.K. Software.) [HKLM] -- {2D933C82-63E9-4640-A1EF-08E38F0CF4C2}_is1
O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F}
O42 - Logiciel: Remote Desktop Connection - (.Microsoft.) [HKLM] -- {3E713D52-C967-41FB-AA24-3A92CC1025A4}
O42 - Logiciel: Foxit Cloud - (.Foxit Corporation.) [HKLM] -- {41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B}
O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {5303CFB5-D635-44F0-A94B-9611E81F07C4}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2}
O42 - Logiciel: Pro Evolution Soccer 2014 - (.KONAMI.) [HKLM] -- {5EFD3544-2371-4900-8ACA-F157BA80FB0C}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: RAR Password Unlocker - (.RAR Password Unlocker, Inc..) [HKLM] -- {69B77D45-F5AD-4AB9-933D-352703324469}_is1
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {80407BA7-7763-4395-AB98-5233F1B34E65}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: Internet Haut Débit Mobile - (...) [HKLM] -- {93D34EE3-99B3-4DB1-8B0A-0A657466F90D}
O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM] -- {A33E42AC-6A09-4373-96AA-B2806431A938}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Kingo ROOT version 1.3.6.2289 - (.Kingosoft Technology Ltd..) [HKLM] -- {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1
O42 - Logiciel: NVIDIA Pilote 3D Vision 341.74 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
O42 - Logiciel: NVIDIA Pilote graphique 341.74 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 1.8.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 340.50 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA Virtual Audio 1.2.19 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044}
O42 - Logiciel: Dyn Updater - (.Dyn.) [HKLM] -- {B855EFCD-9CD5-4F96-ADDC-8DA28364389E}
O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM] -- {B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}
O42 - Logiciel: LG Connection Manager - (.LGE.) [HKLM] -- {BBF60130-FB99-4909-B0F3-A511F25E13A9}
O42 - Logiciel: CCcamInfoPHP v0.8.6 (DT6) - (.Zegato/DragTeam.) [HKLM] -- {BFB382CC-0A92-4A40-B6D1-4E72E0E6D2D1}
O42 - Logiciel: LG Wireless USB Modem Driver - (.LG Electronics.) [HKLM] -- {C4C4642E-B5E3-4044-A3E6-BD997FF6F72E}
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {E896BE27-5592-4B33-A8EB-47737524886A}
O42 - Logiciel: SoundMAX - (.Analog Devices.) [HKLM] -- {F0A37341-D692-11D4-A984-009027EC0A9C}
O42 - Logiciel: SmartDVB - (.SmartWARE.) [HKLM] -- {FB5DB39C-3201-4082-BB88-F0D0C8D3B29B}
O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: XBMC - (.Team XBMC.) [HKCU] -- XBMC
O42 - Logiciel: Atraci 0.6.5 - (.Atraci Team.) [HKCU] -- {F4B2C5C1-F084-4858-B9C3-E641F5C12BBC}_is1

---\\ HKCU & HKLM Software Keys (210) - 12s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\Analog Devices
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\CM&V
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\Cyberlink
HKLM\SOFTWARE\Cygwin
HKLM\SOFTWARE\DC-Unlocker
HKLM\SOFTWARE\Debug
HKLM\SOFTWARE\delta-homesSoftware =>PUP.Optional.DeltaHomes
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\DivX
HKLM\SOFTWARE\DVB Support
HKLM\SOFTWARE\DVBDream
HKLM\SOFTWARE\EA Games
HKLM\SOFTWARE\EA Sports
HKLM\SOFTWARE\EasyBoot Systems
HKLM\SOFTWARE\Elcom
HKLM\SOFTWARE\Elecard
HKLM\SOFTWARE\EliteDVB
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\FileZilla 3
HKLM\SOFTWARE\FileZilla Client
HKLM\SOFTWARE\Foxit Software
HKLM\SOFTWARE\Freemake
HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GRETECH
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Icaros
HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\Internet Haut Débit Mobile
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\KLCodecPack
HKLM\SOFTWARE\KMPlayer
HKLM\SOFTWARE\KONAMI
HKLM\SOFTWARE\LAV
HKLM\SOFTWARE\Lazesoft
HKLM\SOFTWARE\LG Electronics
HKLM\SOFTWARE\LGE
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MarkAny
HKLM\SOFTWARE\Martin Prikryl
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\MyLanViewer
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\Pandora.TV
HKLM\SOFTWARE\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Prog
HKLM\SOFTWARE\Protexis
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\S3R521
HKLM\SOFTWARE\Saar Software
HKLM\SOFTWARE\SAMSUNG
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SmartSound Software
HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\TeamViewer
HKLM\SOFTWARE\TechSmith
HKLM\SOFTWARE\TeVii
HKLM\SOFTWARE\TuneUp
HKLM\SOFTWARE\Valve
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Vitalia
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\vPlug
HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches
HKLM\SOFTWARE\WIBU-SYSTEMS
HKLM\SOFTWARE\WinPcap
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Z3X
HKLM\SOFTWARE\ZTEUSBDriverFlag
HKCU\SOFTWARE\%CompanyFullName%
HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader
HKCU\SOFTWARE\2X
HKCU\SOFTWARE\AC3Filter
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\Analog Devices
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Avast Software
HKCU\SOFTWARE\AVS
HKCU\SOFTWARE\BitCtrl Systems GmbH
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BST
HKCU\SOFTWARE\ched
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\Corel
HKCU\SOFTWARE\Cyberlink
HKCU\SOFTWARE\Cygwin
HKCU\SOFTWARE\Defiant Technologies
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\DreamMultimedia
HKCU\SOFTWARE\DRPSu Updater
HKCU\SOFTWARE\DSS
HKCU\SOFTWARE\Dyn
HKCU\SOFTWARE\EasyBoot Systems
HKCU\SOFTWARE\Elcom
HKCU\SOFTWARE\Elecard
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GetData
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GRETECH
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallCore =>PUP.Optional.InstallCore
HKCU\SOFTWARE\InterVideo
HKCU\SOFTWARE\Jactek
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\KMPlayer
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\LG Connection Manager
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madshi
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Martin Prikryl
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Mixesoft
HKCU\SOFTWARE\Mobileleader
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\MTK
HKCU\SOFTWARE\MyLanViewer
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewBlue
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PhotoFiltre Studio X
HKCU\SOFTWARE\ProtectedData
HKCU\SOFTWARE\RealVNC
HKCU\SOFTWARE\rejetto
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SimonTatham
HKCU\SOFTWARE\SimpleTV by SergeyVS#3
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SmartWARE
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\SOG
HKCU\SOFTWARE\SourceForge
HKCU\SOFTWARE\SupHpUISoft =>PUP.Optional.CrossRider
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\TechSmith
HKCU\SOFTWARE\TeVii
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\URLHelper
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VideoLAN
HKCU\SOFTWARE\Vitalwerks
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\XBMC
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Zegato/DragTeam
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programmes (O43) (333) - 14s
O43 - CFD: 2015/06/16 00:56:32 - [] D -- C:\Program Files\AC3Filter
O43 - CFD: 2014/03/07 14:47:27 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2015/05/23 09:54:13 - [0] D -- C:\Program Files\AGEIA Technologies
O43 - CFD: 2015/04/19 10:59:05 - [] D -- C:\Program Files\AIMP3
O43 - CFD: 2013/06/10 17:03:26 - [] D -- C:\Program Files\Analog Devices
O43 - CFD: 2014/03/17 21:50:21 - [] D -- C:\Program Files\CodeMeter
O43 - CFD: 2015/05/08 17:03:11 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2014/05/31 15:16:16 - [] D -- C:\Program Files\DivX
O43 - CFD: 2014/05/04 20:38:35 - [] D -- C:\Program Files\DragTeam
O43 - CFD: 2014/04/21 23:15:10 - [] D -- C:\Program Files\DVBViewer
O43 - CFD: 2013/12/18 11:04:47 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 2014/04/26 12:42:44 - [] D -- C:\Program Files\Dyn
O43 - CFD: 2013/12/28 11:40:34 - [] D -- C:\Program Files\ElcomSoft
O43 - CFD: 2014/01/04 16:16:28 - [] D -- C:\Program Files\Elecard
O43 - CFD: 2013/12/18 02:43:11 - [] D -- C:\Program Files\ESET
O43 - CFD: 2014/01/14 13:47:33 - [] D -- C:\Program Files\Fausto
O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2015/01/19 09:30:44 - [] D -- C:\Program Files\FileZilla FTP Client
O43 - CFD: 2014/08/15 23:31:11 - [] D -- C:\Program Files\Foxit Software
O43 - CFD: 2013/12/18 02:52:16 - [] D -- C:\Program Files\FreeTime
O43 - CFD: 2014/03/17 21:50:17 - [] D -- C:\Program Files\GetData
O43 - CFD: 2014/10/08 22:35:13 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/04/21 22:22:25 - [] D -- C:\Program Files\GRETECH
O43 - CFD: 2013/12/18 17:43:33 - [] D -- C:\Program Files\HD Pack 2.7
O43 - CFD: 2015/05/23 15:20:00 - [] D -- C:\Program Files\HTC
O43 - CFD: 2015/04/23 11:28:53 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/04/13 10:22:21 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 2015/07/15 17:53:47 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2014/10/11 00:26:50 - [] D -- C:\Program Files\Internet Haut Débit Mobile
O43 - CFD: 2015/03/04 02:48:37 - [] D -- C:\Program Files\Java
O43 - CFD: 2013/12/18 20:28:23 - [] D -- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 2015/05/23 15:20:50 - [] D -- C:\Program Files\Kingo ROOT
O43 - CFD: 2015/06/16 00:39:57 - [] D -- C:\Program Files\LAV Filters
O43 - CFD: 2014/08/24 23:36:15 - [] D -- C:\Program Files\Lazesoft Recover My Password
O43 - CFD: 2015/04/23 11:28:11 - [] D -- C:\Program Files\LG Connection Manager
O43 - CFD: 2015/04/23 11:28:53 - [] D -- C:\Program Files\LG Electronics
O43 - CFD: 2015/04/24 01:21:04 - [] D -- C:\Program Files\ma-config.com
O43 - CFD: 2013/12/18 02:52:48 - [] D -- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 2014/10/10 12:52:23 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2015/05/14 09:17:49 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2014/03/04 15:01:36 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 2013/12/18 14:16:14 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2013/12/18 14:14:36 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 2014/03/05 15:01:43 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2013/12/18 14:15:56 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2015/07/01 23:58:39 - [] D -- C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab
O43 - CFD: 2013/12/20 16:08:21 - [] D -- C:\Program Files\Mobogenie =>PUP.Optional.Mobogenie
O43 - CFD: 2015/08/08 00:50:56 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2015/08/08 08:20:09 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2013/12/18 14:16:22 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2014/03/10 14:54:37 - [] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2015/03/25 00:09:38 - [] D -- C:\Program Files\MyLanViewer
O43 - CFD: 2014/06/30 17:20:22 - [] D -- C:\Program Files\No-IP
O43 - CFD: 2014/09/26 07:17:25 - [] D -- C:\Program Files\Notepad++
O43 - CFD: 2015/07/30 10:16:43 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 2015/06/09 11:19:49 - [] D -- C:\Program Files\Opera
O43 - CFD: 2015/05/01 11:31:02 - [] D -- C:\Program Files\OSForensics
O43 - CFD: 2013/06/10 17:02:23 - [] D -- C:\Program Files\PANDORA.TV
O43 - CFD: 2013/12/18 14:46:42 - [] D -- C:\Program Files\PhotoFiltre Studio X
O43 - CFD: 2014/03/10 00:52:36 - [] D -- C:\Program Files\QuickTime
O43 - CFD: 2014/10/13 10:26:07 - [] D -- C:\Program Files\RAR Password Unlocker
O43 - CFD: 2009/07/14 05:52:30 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2014/06/06 21:42:17 - [] D -- C:\Program Files\Samsung
O43 - CFD: 2015/08/04 01:52:38 - [] D -- C:\Program Files\SimpleTV
O43 - CFD: 2015/02/25 01:39:10 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2014/03/10 00:50:15 - [] D -- C:\Program Files\SmartSound Software
O43 - CFD: 2015/08/08 23:27:51 - [] D -- C:\Program Files\Steam
O43 - CFD: 2014/06/15 13:52:08 - [] D -- C:\Program Files\StreamingStar
O43 - CFD: 2015/04/03 22:43:21 - [] D -- C:\Program Files\SupTab =>PUP.Optional.SupTab
O43 - CFD: 2014/08/18 22:35:51 - [] D -- C:\Program Files\TeamViewer
O43 - CFD: 2014/10/07 22:25:53 - [] D -- C:\Program Files\TechSmith
O43 - CFD: 2013/12/20 15:47:39 - [] D -- C:\Program Files\UltraISO
O43 - CFD: 2014/01/23 13:28:57 - [] D -- C:\Program Files\uTorrent
O43 - CFD: 2014/01/06 02:46:33 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2013/12/18 14:39:13 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/14 03:38:44 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2015/03/14 00:55:02 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 2013/12/18 11:04:47 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/06/10 15:13:56 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2013/06/10 16:58:00 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2013/12/18 11:04:46 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 2013/12/18 11:04:46 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2013/12/18 11:04:47 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2014/06/15 13:53:31 - [] D -- C:\Program Files\WinPcap
O43 - CFD: 2013/06/10 17:04:32 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2013/12/18 00:11:13 - [] D -- C:\Program Files\WinSCP
O43 - CFD: 2014/06/07 11:59:54 - [] D -- C:\Program Files\XBMC
O43 - CFD: 2014/01/12 01:05:49 - [] D -- C:\Program Files\ZHPDiag
O43 - CFD: 2015/06/16 00:56:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter
O43 - CFD: 2013/06/10 14:56:00 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2013/06/10 14:56:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/12/28 11:40:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced RAR Password Recovery
O43 - CFD: 2015/04/19 10:59:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
O43 - CFD: 2014/04/27 22:44:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AltDVB
O43 - CFD: 2014/08/17 18:02:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\bitcontrol
O43 - CFD: 2014/03/18 22:17:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BYclouder Samsung Phone Data Recovery
O43 - CFD: 2014/05/31 15:15:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
O43 - CFD: 2015/03/29 18:49:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Dream
O43 - CFD: 2015/06/15 19:46:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Dream1
O43 - CFD: 2013/12/18 02:07:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Support
O43 - CFD: 2014/09/25 20:30:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dyn Updater
O43 - CFD: 2014/01/04 16:19:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elecard
O43 - CFD: 2013/12/25 14:45:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elips Corporation
O43 - CFD: 2013/12/18 02:43:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
O43 - CFD: 2014/01/14 13:47:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fausto
O43 - CFD: 2015/06/16 00:51:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow
O43 - CFD: 2015/01/19 09:30:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 2014/08/15 23:31:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF
O43 - CFD: 2014/08/15 23:13:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 2015/04/01 05:53:10 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/04/21 22:22:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
O43 - CFD: 2014/10/08 22:35:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2013/12/18 11:58:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Pack 2.7
O43 - CFD: 2014/04/14 23:34:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 2014/10/10 23:52:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Haut Débit Mobile
O43 - CFD: 2015/03/04 02:47:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2013/12/18 20:28:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 2015/05/23 15:17:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT
O43 - CFD: 2015/06/16 00:39:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters
O43 - CFD: 2014/08/24 23:34:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lazesoft Recover My Password
O43 - CFD: 2015/04/23 11:27:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Connection Manager
O43 - CFD: 2015/04/24 01:21:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
O43 - CFD: 2009/07/14 05:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2013/12/18 02:52:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
O43 - CFD: 2013/12/18 14:17:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/05/14 03:06:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/03/25 00:09:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyLanViewer
O43 - CFD: 2015/03/15 16:50:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2014/09/26 07:17:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 2015/07/30 10:19:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/03/14 11:56:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSForensics
O43 - CFD: 2013/06/10 17:02:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDORATV
O43 - CFD: 2013/12/18 14:46:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
O43 - CFD: 2014/03/10 00:52:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 2014/10/13 10:26:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Unlocker
O43 - CFD: 2015/08/04 01:52:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimpleTV
O43 - CFD: 2014/09/27 15:54:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2014/05/02 10:01:06 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartDVB
O43 - CFD: 2014/10/07 22:25:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SnagIt 8
O43 - CFD: 2015/05/24 22:50:55 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/05/08 17:03:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/06/15 13:52:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StreamingStar
O43 - CFD: 2009/07/14 08:49:10 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2014/05/15 00:02:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
O43 - CFD: 2013/12/20 15:47:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO
O43 - CFD: 2015/08/06 10:28:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2014/06/15 13:53:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
O43 - CFD: 2013/06/10 17:04:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2013/12/18 00:11:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP
O43 - CFD: 2014/01/12 01:02:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2014/08/13 23:21:13 - [] D -- C:\ProgramData\1d21a0b72eb59dd6
O43 - CFD: 2014/09/17 22:16:55 - [] SHD -- C:\ProgramData\360Quarant
O43 - CFD: 2014/03/10 00:51:28 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2014/03/10 00:52:14 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/06/10 09:40:59 - [] D -- C:\ProgramData\Ashampoo
O43 - CFD: 2015/06/09 11:13:49 - [] D -- C:\ProgramData\Baidu
O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2014/09/14 14:16:12 - [0] D -- C:\ProgramData\CMUV
O43 - CFD: 2013/12/18 20:29:52 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2013/12/20 15:41:18 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2014/05/31 15:16:16 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/04/26 12:42:48 - [] D -- C:\ProgramData\Dyn
O43 - CFD: 2014/03/10 00:50:18 - [] D -- C:\ProgramData\eSellerate
O43 - CFD: 2013/12/18 02:43:11 - [] D -- C:\ProgramData\ESET
O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/03/25 01:42:23 - [0] D -- C:\ProgramData\firebird
O43 - CFD: 2014/03/04 01:51:14 - [0] D -- C:\ProgramData\Freemake
O43 - CFD: 2015/04/21 22:27:28 - [] D -- C:\ProgramData\GRETECH
O43 - CFD: 2014/03/06 01:01:07 - [] D -- C:\ProgramData\HostIt
O43 - CFD: 2013/12/18 14:47:01 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 2015/06/11 10:35:46 - [] D -- C:\ProgramData\IePluginServices =>Trojan.SProtector
O43 - CFD: 2015/06/11 10:37:23 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
O43 - CFD: 2014/08/13 23:02:39 - [] D -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma
O43 - CFD: 2014/01/14 22:39:37 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 2015/05/03 14:45:46 - [] D -- C:\ProgramData\KONAMI
O43 - CFD: 2015/04/24 01:21:04 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 2013/12/18 02:52:44 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/05/24 22:35:26 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/04/17 02:21:45 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/15 15:36:56 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2014/10/14 15:01:37 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2014/03/10 23:04:34 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2014/08/13 23:21:49 - [0] D -- C:\ProgramData\NExxtCoup =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/08 23:27:36 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2014/01/07 23:15:08 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/05/13 01:19:12 - [] D -- C:\ProgramData\ohkgfhejgebkkloppjflcalbbdcfohdf
O43 - CFD: 2015/03/04 02:49:01 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2013/12/23 12:14:41 - [] D -- C:\ProgramData\Origin
O43 - CFD: 2015/02/11 09:49:05 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/03/14 11:56:10 - [] D -- C:\ProgramData\PassMark
O43 - CFD: 2014/09/14 14:15:37 - [] D -- C:\ProgramData\ProgDVB
O43 - CFD: 2014/10/06 20:35:26 - [] D -- C:\ProgramData\Protexis
O43 - CFD: 2014/05/15 00:02:53 - [] D -- C:\ProgramData\regid.1995-08.com.techsmith
O43 - CFD: 2014/06/06 21:42:04 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 2015/02/25 01:39:07 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2014/03/10 00:50:35 - [] D -- C:\ProgramData\SmartSound Software Inc
O43 - CFD: 2013/06/10 17:03:26 - [] D -- C:\ProgramData\SonicFocus
O43 - CFD: 2015/01/16 14:32:27 - [] D -- C:\ProgramData\SP_FT_Logs
O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/05/03 14:45:42 - [] D -- C:\ProgramData\Steam
O43 - CFD: 2014/07/04 04:34:37 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2014/10/07 22:26:07 - [] D -- C:\ProgramData\TechSmith
O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/04/21 22:28:38 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 2014/08/13 23:29:29 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu
O43 - CFD: 2015/04/21 22:28:43 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 2014/03/07 14:47:27 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2013/12/18 02:43:04 - [] D -- C:\Program Files\Common Files\Ahead
O43 - CFD: 2014/03/10 00:51:28 - [] D -- C:\Program Files\Common Files\Apple
O43 - CFD: 2014/08/17 18:02:25 - [] D -- C:\Program Files\Common Files\BitCtrl
O43 - CFD: 2014/05/15 09:45:14 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 2014/05/31 15:15:52 - [] D -- C:\Program Files\Common Files\DivX Shared
O43 - CFD: 2014/01/04 16:18:52 - [] D -- C:\Program Files\Common Files\Elecard
O43 - CFD: 2013/12/20 15:47:39 - [] D -- C:\Program Files\Common Files\EZB Systems
O43 - CFD: 2015/03/04 02:48:14 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 2014/03/05 15:01:49 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2014/09/27 15:54:08 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2015/05/08 17:03:11 - [] D -- C:\Program Files\Common Files\Steam
O43 - CFD: 2013/12/18 14:14:17 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2014/05/15 00:02:40 - [] D -- C:\Program Files\Common Files\TechSmith Shared
O43 - CFD: 2014/03/04 14:57:54 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 2014/10/07 22:24:58 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 2015/05/17 12:59:59 - [] D -- C:\Users\Admin\AppData\Roaming\AC3Filter
O43 - CFD: 2015/04/30 01:33:22 - [] D -- C:\Users\Admin\AppData\Roaming\Adobe
O43 - CFD: 2015/08/05 04:25:11 - [] D -- C:\Users\Admin\AppData\Roaming\AIMP3
O43 - CFD: 2015/04/30 10:14:46 - [] D -- C:\Users\Admin\AppData\Roaming\Apple Computer
O43 - CFD: 2015/08/09 02:08:33 - [] D -- C:\Users\Admin\AppData\Roaming\DMCache
O43 - CFD: 2015/05/04 22:10:36 - [] D -- C:\Users\Admin\AppData\Roaming\dvdcss
O43 - CFD: 2015/04/30 10:15:21 - [] D -- C:\Users\Admin\AppData\Roaming\ESET
O43 - CFD: 2015/08/07 01:49:41 - [] D -- C:\Users\Admin\AppData\Roaming\FileZilla
O43 - CFD: 2015/07/20 00:31:08 - [] D -- C:\Users\Admin\AppData\Roaming\Foxit Software
O43 - CFD: 2015/06/04 00:48:08 - [] D -- C:\Users\Admin\AppData\Roaming\IDM
O43 - CFD: 2015/05/01 01:23:11 - [] D -- C:\Users\Admin\AppData\Roaming\Macromedia
O43 - CFD: 2015/08/06 17:36:55 - [] D -- C:\Users\Admin\AppData\Roaming\Malwarebytes
O43 - CFD: 2015/07/31 02:54:29 - [] SD -- C:\Users\Admin\AppData\Roaming\Microsoft
O43 - CFD: 2015/04/30 01:28:54 - [] D -- C:\Users\Admin\AppData\Roaming\Mozilla
O43 - CFD: 2015/06/16 00:15:35 - [] D -- C:\Users\Admin\AppData\Roaming\MPC-HC
O43 - CFD: 2015/05/01 02:35:33 - [] D -- C:\Users\Admin\AppData\Roaming\Notepad++
O43 - CFD: 2015/05/14 23:22:55 - [] D -- C:\Users\Admin\AppData\Roaming\NVIDIA
O43 - CFD: 2015/06/09 11:11:55 - [] D -- C:\Users\Admin\AppData\Roaming\Opera Software
O43 - CFD: 2015/06/03 00:49:45 - [] D -- C:\Users\Admin\AppData\Roaming\PhotoFiltre Studio X
O43 - CFD: 2015/08/09 01:56:22 - [] D -- C:\Users\Admin\AppData\Roaming\SimpleTV V03
O43 - CFD: 2015/07/24 15:15:50 - [] D -- C:\Users\Admin\AppData\Roaming\Skype
O43 - CFD: 2015/06/24 02:26:02 - [] D -- C:\Users\Admin\AppData\Roaming\Spiritsoft
O43 - CFD: 2015/05/01 22:57:33 - [] D -- C:\Users\Admin\AppData\Roaming\TechSmith
O43 - CFD: 2015/08/08 23:28:04 - [] D -- C:\Users\Admin\AppData\Roaming\uTorrent
O43 - CFD: 2015/08/08 15:34:28 - [] D -- C:\Users\Admin\AppData\Roaming\vlc
O43 - CFD: 2015/05/02 11:23:00 - [] D -- C:\Users\Admin\AppData\Roaming\WinRAR
O43 - CFD: 2015/08/09 02:09:11 - [] D -- C:\Users\Admin\AppData\Roaming\ZHP
O43 - CFD: 2015/05/24 22:46:13 - [0] D -- C:\Users\Admin\AppData\Local\Adobe
O43 - CFD: 2013/06/10 16:58:08 - [0] SHD -- C:\Users\Admin\AppData\Local\Application Data
O43 - CFD: 2015/03/15 10:32:51 - [] D -- C:\Users\Admin\AppData\Local\Apps
O43 - CFD: 2015/06/10 09:53:21 - [] D -- C:\Users\Admin\AppData\Local\Ashampoo Movie Studio Pro
O43 - CFD: 2014/11/22 02:02:11 - [] D -- C:\Users\Admin\AppData\Local\Atraci
O43 - CFD: 2013/12/20 15:44:29 - [] D -- C:\Users\Admin\AppData\Local\cache
O43 - CFD: 2015/07/22 08:25:19 - [] D -- C:\Users\Admin\AppData\Local\CEF
O43 - CFD: 2014/08/13 23:01:22 - [] D -- C:\Users\Admin\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser
O43 - CFD: 2014/08/13 23:01:22 - [] D -- C:\Users\Admin\AppData\Local\Comodo
O43 - CFD: 2015/08/08 23:31:26 - [] D -- C:\Users\Admin\AppData\Local\CrashDumps
O43 - CFD: 2014/05/02 10:01:45 - [] D -- C:\Users\Admin\AppData\Local\CrashRpt =>.Legitimate.CrashReports
O43 - CFD: 2015/07/20 12:15:03 - [0] D -- C:\Users\Admin\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/10 15:19:37 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/10 15:19:37 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/10 15:19:37 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieUserList
O43 - CFD: 2013/12/21 17:55:39 - [] D -- C:\Users\Admin\AppData\Local\ESET
O43 - CFD: 2014/01/14 22:39:44 - [] D -- C:\Users\Admin\AppData\Local\FileViewPro
O43 - CFD: 2014/03/04 01:39:55 - [] D -- C:\Users\Admin\AppData\Local\FreemakeVideoConverter
O43 - CFD: 2013/12/20 15:44:28 - [] D -- C:\Users\Admin\AppData\Local\genienext =>PUP.Optional.NextLive
O43 - CFD: 2014/08/13 23:11:38 - [] D -- C:\Users\Admin\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2014/10/08 19:02:45 - [] D -- C:\Users\Admin\AppData\Local\Google
O43 - CFD: 2013/12/18 00:09:34 - [] D -- C:\Users\Admin\AppData\Local\GPUMonitor
O43 - CFD: 2015/06/01 11:19:15 - [] D -- C:\Users\Admin\AppData\Local\GWX
O43 - CFD: 2013/06/10 16:58:08 - [0] SHD -- C:\Users\Admin\AppData\Local\Historique
O43 - CFD: 2015/04/17 09:48:44 - [] D -- C:\Users\Admin\AppData\Local\Kingosoft
O43 - CFD: 2014/10/30 22:09:47 - [] D -- C:\Users\Admin\AppData\Local\Macromedia
O43 - CFD: 2015/03/14 02:03:12 - [] D -- C:\Users\Admin\AppData\Local\Microsoft
O43 - CFD: 2013/12/18 13:30:38 - [0] D -- C:\Users\Admin\AppData\Local\Microsoft Help
O43 - CFD: 2013/12/20 16:08:21 - [] D -- C:\Users\Admin\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie
O43 - CFD: 2014/10/19 12:14:17 - [] D -- C:\Users\Admin\AppData\Local\Mozilla
O43 - CFD: 2015/03/25 03:07:33 - [] D -- C:\Users\Admin\AppData\Local\MyLanViewer
O43 - CFD: 2014/03/10 15:07:31 - [] D -- C:\Users\Admin\AppData\Local\Nero
O43 - CFD: 2014/03/10 15:06:59 - [] D -- C:\Users\Admin\AppData\Local\Nero_AG
O43 - CFD: 2014/01/09 00:09:39 - [] D -- C:\Users\Admin\AppData\Local\NVIDIA
O43 - CFD: 2014/01/07 23:15:05 - [] D -- C:\Users\Admin\AppData\Local\NVIDIA Corporation
O43 - CFD: 2015/06/09 11:12:22 - [] D -- C:\Users\Admin\AppData\Local\Opera Software
O43 - CFD: 2013/12/18 00:13:09 - [] D -- C:\Users\Admin\AppData\Local\Programs
O43 - CFD: 2014/07/04 22:46:59 - [] D -- C:\Users\Admin\AppData\Local\Skype
O43 - CFD: 2015/03/09 00:42:36 - [] D -- C:\Users\Admin\AppData\Local\SmartDVB
O43 - CFD: 2014/10/12 23:39:47 - [] D -- C:\Users\Admin\AppData\Local\SpaceKace
O43 - CFD: 2014/01/01 12:44:02 - [] D -- C:\Users\Admin\AppData\Local\SRS Labs
O43 - CFD: 2015/05/09 09:26:03 - [] D -- C:\Users\Admin\AppData\Local\Steam
O43 - CFD: 2014/10/07 22:27:33 - [] D -- C:\Users\Admin\AppData\Local\TechSmith
O43 - CFD: 2015/08/09 02:08:43 - [] D -- C:\Users\Admin\AppData\Local\Temp
O43 - CFD: 2013/06/10 16:58:08 - [0] SHD -- C:\Users\Admin\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/08/13 23:01:22 - [] D -- C:\Users\Admin\AppData\Local\Torch =>PUP.Optional.Torch
O43 - CFD: 2015/04/21 22:31:03 - [] D -- C:\Users\Admin\AppData\Local\TuneUp Software
O43 - CFD: 2013/12/18 02:51:07 - [] D -- C:\Users\Admin\AppData\Local\VirtualStore
O43 - CFD: 2014/06/30 17:20:48 - [] D -- C:\Users\Admin\AppData\Local\Vitalwerks
O43 - CFD: 2015/08/07 09:45:38 - [] D -- C:\Users\Admin\AppData\Local\Windows Live
O43 - CFD: 2009/07/14 05:42:04 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/03/11 12:01:33 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/12/28 11:40:34 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced RAR Password Recovery
O43 - CFD: 2014/10/09 00:01:47 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Atraci
O43 - CFD: 2014/08/17 18:02:25 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\bitcontrol
O43 - CFD: 2014/05/04 20:38:54 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCcamInfoPHP v0.8.6 (DT6)
O43 - CFD: 2013/12/18 02:07:43 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVB Support
O43 - CFD: 2013/12/25 14:45:29 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Elips Corporation
O43 - CFD: 2014/01/14 13:47:31 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fausto
O43 - CFD: 2015/06/09 11:20:13 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 2013/12/18 03:23:43 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2014/04/14 23:34:29 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 2009/07/14 05:37:42 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/06/30 17:20:22 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC
O43 - CFD: 2014/09/26 07:17:24 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 2015/02/19 22:28:55 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\P2PSurveillance
O43 - CFD: 2013/12/18 14:46:42 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
O43 - CFD: 2014/03/17 21:50:22 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Files v5
O43 - CFD: 2014/05/02 10:01:23 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartDVB
O43 - CFD: 2015/05/13 01:18:51 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/12/17 23:57:21 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeVii
O43 - CFD: 2014/04/04 23:12:55 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeViiData
O43 - CFD: 2015/04/21 22:24:21 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
O43 - CFD: 2015/03/15 10:32:51 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
O43 - CFD: 2013/06/10 17:04:32 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2014/06/07 11:59:54 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBMC

---\\ Liste des pilotes du système (SDL) (O58) (85) - 10s
O58 - SDL:2009/05/18 14:32:58 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\ADIHdAud.sys [381440]
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976]
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552]
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512]
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400]
O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256]
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312]
O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400]
O58 - SDL:2009/10/26 23:54:24 A . (.HTC, Corporation - ADB Interface.) -- C:\Windows\System32\drivers\ANDROIDUSB.sys [25088]
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368]
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608]
O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888]
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128]
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080]
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952]
O58 - SDL:2008/03/05 01:00:40 A . (.DemoForge, LLC - Mirage Driver.) -- C:\Windows\System32\drivers\dfmirage.sys [34128]
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720]
O58 - SDL:2009/07/13 23:02:52 A . (.Intel Corporation - Pilote de la carte Intel(R) Gigabit NDIS 6..) -- C:\Windows\System32\drivers\e1k6032.sys [164864]
O58 - SDL:2013/10/01 18:12:08 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1k6232.sys [369416]
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712]
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160]
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624]
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152]
O58 - SDL:2012/12/07 18:27:50 A . (.Windows (R) Win 7 DDK provider - RawPacket NDIS Protocol Driver.) -- C:\Windows\System32\drivers\htcnprot.sys [23040]
O58 - SDL:2011/03/11 06:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160]
O58 - SDL:2013/11/28 01:24:18 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [108000]
O58 - SDL:2009/06/10 22:19:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [4756480]
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040]
O58 - SDL:2005/09/01 13:03:04 N . (.Ahead Software AG - NERO IMAGEDRIVE SCSI miniport.) -- C:\Windows\System32\drivers\imagedrv.sys [5888]
O58 - SDL:2005/09/01 13:03:04 N . (.Ahead Software AG - Nero Image Server.) -- C:\Windows\System32\drivers\imagesrv.sys [127488]
O58 - SDL:2009/09/23 02:31:44 A . (.LG Electronics Inc - LG Wireless USB Multi function Driver.) -- C:\Windows\System32\drivers\lgwusbbus.sys [13696]
O58 - SDL:2009/09/23 02:31:44 A . (.LG Electronics Inc - LG Wireless USB Modem Driver.) -- C:\Windows\System32\drivers\lgwusbmodem.sys [25216]
O58 - SDL:2009/09/23 02:31:46 A . (.LG Electronics Inc - LG Wireless USB Serial1 Driver.) -- C:\Windows\System32\drivers\lgwusbser01.sys [21248]
O58 - SDL:2009/09/23 02:31:48 A . (.LG Electronics Inc - LG Wireless USB Serial2 Driver.) -- C:\Windows\System32\drivers\lgwusbser02.sys [21248]
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824]
O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168]
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864]
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848]
O58 - SDL:2009/11/05 13:20:50 A . (.ZTE Incorporated - ZTE CDROM Filter.) -- C:\Windows\System32\drivers\massfilter.sys [9216]
O58 - SDL:2010/01/07 17:07:04 A . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [19160]
O58 - SDL:2010/01/07 17:07:14 A . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [38224]
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800]
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584]
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624]
O58 - SDL:2009/10/20 19:19:44 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [50704]
O58 - SDL:2015/06/29 23:46:44 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10704072]
O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120]
O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744]
O58 - SDL:2013/12/05 09:42:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad32v.sys [34080]
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488]
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064]
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016]
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888]
O58 - SDL:2009/11/10 16:28:44 A . (.Copyright (C) 2008 SRS Labs, Inc. - SRS Premium Sound driver.) -- C:\Windows\System32\drivers\SRS_PremiumSound_i386.sys [246000]
O58 - SDL:2007/10/25 17:26:10 A . (...) -- C:\Windows\System32\drivers\StarOpen.sys [5632]
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072]
O58 - SDL:2010/06/07 07:37:04 A . (.TeVii Technology, Ltd. - TeViiData Virtual Network Driver.) -- C:\Windows\System32\drivers\TeViiData.sys [17752]
O58 - SDL:2011/07/27 10:09:08 A . (.TeVii Technology Ltd. - .) -- C:\Windows\System32\drivers\TeViiS2.sys [130184]
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976]
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904]
O58 - SDL:2009/11/05 13:20:32 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys [105088]
O58 - SDL:2009/11/05 13:20:42 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmea.sys [105088]
O58 - SDL:2009/11/05 13:20:44 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbser6k.sys [105088]
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2010/06/14 09:32:54 A . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [36608]
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (12) - 30s
O61 - LFC: 2015/08/02 16:08:29 A . (.Tonec Inc..) -- C:\Users\Admin\Downloads\Programs\idman623build17.exe [6640080]
O61 - LFC: 2015/08/04 01:52:09 A . (.SergeyVS.) -- C:\Users\Admin\Downloads\Programs\SimpleTV 0.4.7 b2 setup (VLC 2.0.2).exe [36566480]
O61 - LFC: 2015/08/02 14:09:45 A . (..) -- C:\Users\Admin\Downloads\Programs\tc00398200d.exe [13886712]
O61 - LFC: 2015/08/02 13:24:31 A . (..) -- C:\Users\Admin\Downloads\Programs\tc80091200d.exe [126776016]
O61 - LFC: 2015/08/06 10:27:35 A . (..) -- C:\Users\Admin\Downloads\Programs\vlc-2.2.1-win32.exe [28849904]
O61 - LFC: 2015/08/03 23:20:36 A . (..) -- C:\Users\Admin\Documents\KONAMI\Pro Evolution Soccer 2015\save\LG 02.bin [14076840]
O61 - LFC: 2015/08/03 23:20:38 A . (..) -- C:\Users\Admin\Documents\KONAMI\Pro Evolution Soccer 2015\save\SYSTEM.bin [136577]
O61 - LFC: 2015/08/01 10:08:14 A . (.BitTorrent Inc..) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe [1693024]
O61 - LFC: 2015/08/01 10:08:14 A . (.BitTorrent Inc..) -- C:\Users\Admin\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe [1693024]
O61 - LFC: 2015/08/07 15:24:28 A . (..) -- C:\Users\Admin\AppData\Local\NVIDIA\NvBackend\Packages\00007beb\DAO.19838421.exe [5951752]
O61 - LFC: 2015/08/04 10:05:05 A . (..) -- C:\Users\Admin\AppData\Local\NVIDIA\NvBackend\Packages\00007bb7\DAO.19826035.exe [5931992]
O61 - LFC: 2015/08/09 01:19:01 A . (..) -- C:\Users\Admin\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]

---\\ Associations Shell Spawning (O67) (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://istart.webssearches.com/ =>PUP.Optional.WebsSearches
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (16) - 3s
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.defaultenginename", "delta-homes"); =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.alias", "delta-homes"); =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.iconURL", "http://search.delta-homes.com/favicon.ico"); =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.name", "delta-homes"); =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.ptid", "ient06110"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.uid", "SAMSUNGXHD083GJ_S1VBJ9ASC10210C10210X"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.url", "http://search.delta-homes.com/web/?type=ds&ts=1434015348&z=c51640455ea9487593e8149g5[...] =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.selectedEngine", "delta-homes"); =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.startup.homepage", "http://www.delta-homes.com/?type=hp&ts=1434015348&z=c51640455ea9487593e8149g5z6c9zbe9gewbcb[...] =>PUP.Optional.Qvo6
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (delta-homes) - http://do-search.com/ =>PUP.Optional.DoSearches
O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://do-search.com/ =>PUP.Optional.DoSearches

---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) (1) - 68s
O82 - LFC: 2014/03/06 01:00:45 A . (.HostIt.) -- C:\Users\Admin\Downloads\PhotoFiltre Studio X v10 6 2 Keygen rar.exe [321216] =>.Crack,Keygen

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2057216]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (66) - 4s
O87 - FAEL: "TCP Query User{11536CAC-77F2-40E9-A1FD-EC95F99FFFF8}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P6-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.)
O87 - FAEL: "UDP Query User{BEBE30AB-5A70-4E26-9A56-6C110190491E}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P17-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.)
O87 - FAEL: "TCP Query User{92F1665A-6D13-479B-9833-2E70DD799F1C}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P6-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.)
O87 - FAEL: "UDP Query User{F75F3C8D-AC60-4AA2-B699-000E29BDF7FD}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P17-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.)
O87 - FAEL: "TCP Query User{A3756A98-5B6C-449D-BAFA-FF49D6771D3E}C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P6-TRUE] .(...) -- C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.)
O87 - FAEL: "UDP Query User{056E2C8E-906E-4997-81FF-5DAB2E2DD1A6}C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P17-TRUE] .(...) -- C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.)
O87 - FAEL: "TCP Query User{EFBF898B-D957-4F66-BEDC-EF8A39A5DCEA}E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P6-TRUE] .(.Ysf Zone - Ysf Zone.) -- E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe
O87 - FAEL: "UDP Query User{9EF0C317-1F86-4B6A-8CBA-D9AD24EB3AEF}E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P17-TRUE] .(.Ysf Zone - Ysf Zone.) -- E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe
O87 - FAEL: "TCP Query User{1BA2B65D-29FC-4B1D-B2C0-8D2DFFAA34A3}F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe" [In-None-P6-TRUE] .(.BernyR - Dreambox Control Center.) -- F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe
O87 - FAEL: "UDP Query User{DBADF53B-5E38-43CD-A26F-8C9749387007}F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe" [In-None-P17-TRUE] .(.BernyR - Dreambox Control Center.) -- F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe
O87 - FAEL: "TCP Query User{F7912039-80F3-45F3-B1BC-F43B898B2228}C:\program files\simpletv\tv.exe" [In-None-P6-TRUE] .(.VSG - SimpleTV v0.4.7 b2.) -- C:\program files\simpletv\tv.exe
O87 - FAEL: "UDP Query User{F69AA429-AD5F-4DCF-B7CC-EF9A4F593576}C:\program files\simpletv\tv.exe" [In-None-P17-TRUE] .(.VSG - SimpleTV v0.4.7 b2.) -- C:\program files\simpletv\tv.exe
O87 - FAEL: "TCP Query User{5BB75163-1DB6-4C8E-81C8-09CEBD53A09B}F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe" [In-None-P6-TRUE] .(.John V. - Settings Editor (Enigma 1 & 2, Neutrino, Tr.) -- F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe
O87 - FAEL: "UDP Query User{E61204F7-9A8C-4B61-8580-360FD5B2303F}F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe" [In-None-P17-TRUE] .(.John V. - Settings Editor (Enigma 1 & 2, Neutrino, Tr.) -- F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe
O87 - FAEL: "{CE25BAE8-A801-4135-8457-529BDF488758}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O87 - FAEL: "{E5D5E7B2-6358-42D9-9BFB-6422083B1E54}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O87 - FAEL: "{90496940-D87A-42FD-A426-F19E2E0D6A7C}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O87 - FAEL: "{296EDD91-E062-4603-B3B0-D1FD0A980312}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O87 - FAEL: "{E53158A1-500B-48E9-9738-28F15967A25E}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{D90D5986-BA15-49A1-8515-3EF92FCAC6F4}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{BE09FBDE-77D5-4712-B279-8CF9FD50D55B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe (.not file.)
O87 - FAEL: "{33564583-13D8-483D-99B4-1B516F5C458D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe (.not file.)
O87 - FAEL: "{651D618E-9A0F-4087-BD0E-6F93C17C5245}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe (.not file.)
O87 - FAEL: "{CF4FF0C4-DE91-40B4-A829-75DA60ED5855}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe (.not file.)
O87 - FAEL: "TCP Query User{5A31358D-3322-4B9A-83F2-B83BBB180AC3}C:\program files\xbmc\xbmc.exe" [In-None-P6-TRUE] .(.Team XBMC - XBMC.) -- C:\program files\xbmc\xbmc.exe
O87 - FAEL: "UDP Query User{3A859023-067B-4BE3-B281-0C62CE7FFFEC}C:\program files\xbmc\xbmc.exe" [In-None-P17-TRUE] .(.Team XBMC - XBMC.) -- C:\program files\xbmc\xbmc.exe
O87 - FAEL: "TCP Query User{6E0B5E95-C6D2-4854-A381-99802C9F47EC}F:\program files\konami\pro evolution soccer 2014\pes2014.exe" [In-None-P6-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2014.) -- F:\program files\konami\pro evolution soccer 2014\pes2014.exe
O87 - FAEL: "UDP Query User{6C80B3E7-8E2B-4B1E-8A96-BDE6B3A7F5D4}F:\program files\konami\pro evolution soccer 2014\pes2014.exe" [In-None-P17-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2014.) -- F:\program files\konami\pro evolution soccer 2014\pes2014.exe
O87 - FAEL: "{FEAB588B-FB72-478F-B2DA-18F569FFA154}" [In-None-P6-TRUE] .(...) -- F:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013.exe (.not file.)
O87 - FAEL: "{B4DDD70C-BB55-49F6-8A30-E7FD01491484}" [In-None-P17-TRUE] .(...) -- F:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013.exe (.not file.)
O87 - FAEL: "TCP Query User{186168C9-F78F-4969-8956-7599ADC2E562}C:\program files\winscp\winscp.exe" [In-None-P6-TRUE] .(.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) -- C:\program files\winscp\winscp.exe
O87 - FAEL: "UDP Query User{AEA82634-DB1B-4DD5-8EFB-8750E9098E53}C:\program files\winscp\winscp.exe" [In-None-P17-TRUE] .(.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) -- C:\program files\winscp\winscp.exe
O87 - FAEL: "TCP Query User{E7A66567-BB54-4B99-9479-309A291E4CDB}C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe" [In-None-P6-TRUE] .(...) -- C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe (.not file.)
O87 - FAEL: "UDP Query User{30DA4923-9895-4405-903D-284507DB2836}C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe" [In-None-P17-TRUE] .(...) -- C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe (.not file.)
O87 - FAEL: "TCP Query User{5F9341C6-F2CD-4791-9E50-795158D7D93C}C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe" [In-None-P6-TRUE] .(...) -- C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe (.not file.)
O87 - FAEL: "UDP Query User{63219231-60DC-461D-82E1-507E94B3679A}C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe" [In-None-P17-TRUE] .(...) -- C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe (.not file.)
O87 - FAEL: "TCP Query User{A53F4D7F-8E03-431A-A6F3-7898B31796F1}F:\program files\pro evolution soccer 2015\pes2015.exe" [In-None-P6-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2015.) -- F:\program files\pro evolution soccer 2015\pes2015.exe
O87 - FAEL: "UDP Query User{F1EEE630-5DC3-4932-B82F-CC49E82EC223}F:\program files\pro evolution soccer 2015\pes2015.exe" [In-None-P17-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2015.) -- F:\program files\pro evolution soccer 2015\pes2015.exe
O87 - FAEL: "{7FAA89ED-A0C2-4CB3-B3A5-EFB6533892E1}" [In-None-P6-TRUE] .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
O87 - FAEL: "{4777E698-9E2D-4D3F-B695-839A8012EF0C}" [In-None-P17-TRUE] .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
O87 - FAEL: "{12038EDC-DB28-4AC4-915C-BA14588C2D36}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.)
O87 - FAEL: "{AA71438F-E935-4B0C-A5F0-30608F84FD55}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.)
O87 - FAEL: "{DED7132C-E619-4CBC-8C77-7147569947A3}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.)
O87 - FAEL: "{0E17D431-CBB8-4109-98B0-60230396AB4F}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.)
O87 - FAEL: "{05C0604E-BB1F-4665-8E5F-EE93A7B131F8}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX11.848\jingling.exe (.not file.)
O87 - FAEL: "{54960933-196B-411B-9A1D-E10BCC9B674B}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX11.848\jingling.exe (.not file.)
O87 - FAEL: "{0B6C8F3A-2EEB-4F01-8B95-28E4B2D0E10D}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX63.704\jingling.exe (.not file.)
O87 - FAEL: "{169690C2-181E-4927-93D2-753EFB00C15F}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX63.704\jingling.exe (.not file.)
O87 - FAEL: "{047C0E2C-B924-4CD0-BFD5-FF5E4FAAA3BD}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX34.176\jingling.exe (.not file.)
O87 - FAEL: "{E9CCB872-E59A-43F8-B166-E872969F4ECF}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX34.176\jingling.exe (.not file.)
O87 - FAEL: "{66BA45D7-85EE-41CD-A8EA-23EA71F5A01C}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX25.848\jingling.exe (.not file.)
O87 - FAEL: "{4A93DCE0-A48D-47E0-BEF0-C4B8E6401ECA}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX25.848\jingling.exe (.not file.)
O87 - FAEL: "{B1629006-702D-4F87-8D84-34D2FB550DA4}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.)
O87 - FAEL: "{0403EF9C-438D-4AC3-91D7-3B36857DAE0A}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.)
O87 - FAEL: "{83111D9E-03B7-4675-BAE1-8493CE703D48}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.)
O87 - FAEL: "{BEC8E41C-BE0E-433B-97FC-AD5631AFA83B}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.)
O87 - FAEL: "TCP Query User{C4EA96B7-89FC-4D63-9053-494962978FF3}F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P6-TRUE] .(.Ysf Zone - Ysf Zone.) -- F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe
O87 - FAEL: "UDP Query User{57BEB179-C2EF-4A27-8081-5DB1EEFAF0E6}F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P17-TRUE] .(.Ysf Zone - Ysf Zone.) -- F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe
O87 - FAEL: "{B04AD8D2-2B84-400D-8F64-089071961BF1}" [In-None-P6-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
O87 - FAEL: "{E9F899F3-41EC-4E6A-91D3-E267A09FA7E7}" [In-None-P17-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
O87 - FAEL: "{B5D6CE8C-38BA-41FB-9203-60B1BFEDFC8B}" [In-None-P6-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
O87 - FAEL: "{D654D82B-E02B-45F6-87CD-F2F18365304D}" [In-None-P17-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
O87 - FAEL: "{DF4DDAEF-8C28-41DE-BEF1-FC01230ACDF9}" [In-None-P6-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
O87 - FAEL: "{AFE0D837-85EE-4A11-BF36-CDEC6AED5850}" [In-None-P17-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
O87 - FAEL: "{86D5F7C3-58B9-469B-A6CE-9BFF4F89816E}" [In-None-P6-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
O87 - FAEL: "{110EE792-C2BF-4145-B599-A8FB4A2E22C3}" [In-None-P17-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe

---\\ Recherche de clés de registre Tracing (O100) (2) - 1s
HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASAPI32 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASMANCS =>PUP.Optional.TornTV

---\\ Scan Additionnel (O88) (47) - 0s
C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.MiuiTab
C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eknmbllaehgdgginmokmkipolodpcnap
C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoeocmdmhhgcmamcogoldekhicehiadi
C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\defsearchp@gmail.com.xpi =>PUP.Optional.PriceFountain
C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\searchplugins\delta-homes.xml =>PUP.Optional.DeltaHomes
C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\default_newtabff@gmail.com =>PUP.Optional.LightningNewTab
C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} =>PUP.Optional.LuckyTab
HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR
C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\delta-homesSoftware =>PUP.Optional.DeltaHomes
HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\PIP =>Toolbar.Ask
HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater
HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches
HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\InstallCore =>PUP.Optional.InstallCore
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\SupHpUISoft =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider =>PUP.Optional.CrossRider
C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab
C:\Program Files\Mobogenie =>PUP.Optional.Mobogenie
C:\Program Files\SupTab =>PUP.Optional.SupTab
C:\ProgramData\IePluginServices =>Trojan.SProtector
C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
C:\ProgramData\InstallMate =>PUP.Optional.Tarma
C:\ProgramData\NExxtCoup =>PUP.Optional.Multiplug
C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu
C:\Users\Admin\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser
C:\Users\Admin\AppData\Local\CrashRpt =>.Legitimate.CrashReports
C:\Users\Admin\AppData\Local\genienext =>PUP.Optional.NextLive
C:\Users\Admin\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\Admin\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie
C:\Users\Admin\AppData\Local\Torch =>PUP.Optional.Torch
HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASAPI32 =>PUP.Optional.TornTV
HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASMANCS =>PUP.Optional.TornTV

---\\ Récapitulatif des éléments trouvées sur votre station (34) - 0s
http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab
http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/hijacker-qvo6/ =>PUP.Optional.Qvo6
http://www.nicolascoolman.fr/blog =>PUP.Optional.PriceFountain
http://www.nicolascoolman.fr/blog =>PUP.Optional.DeltaHomes
http://www.nicolascoolman.fr/blog =>PUP.Optional.BDYahoo
http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/blog =>PUP.Optional.LuckyTab
http://www.nicolascoolman.fr/pup-mobogenie/ =>PUP.Optional.Mobogenie
http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu
http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/hijacker-webssearches/ =>PUP.Optional.WebsSearches
http://www.nicolascoolman.fr/pup-1clickdownloader/ =>PUP.Optional.1ClickDownloader
http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore
http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/trojan-sprotector/ =>Trojan.SProtector
http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/blog =>PUP.Optional.ChromaticBrowser
http://www.nicolascoolman.fr/blog =>.Legitimate.CrashReports
http://www.nicolascoolman.fr/pup-nextlive/ =>PUP.Optional.NextLive
http://www.nicolascoolman.fr/blog =>PUP.Optional.Torch
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart
http://www.nicolascoolman.fr/pup-dosearches/ =>PUP.Optional.DoSearches
http://www.nicolascoolman.fr/hijacker-torntv/ =>PUP.Optional.TornTV

~ End of the scan, 33247 items in 231 seconds (1207)(1)()

Publicité


Signaler le contenu de ce document

Publicité