cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.15.119 Par Nicolas Coolman (2015/08/15)
~ Démarré par Jean Phil (Administrator) (2015/08/16 10:35:23)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: E:\Documents and Settings\Jean Phil\Bureau\ZHPDiag.txt
~ Rapport: E:\Documents and Settings\Jean Phil\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (3) - 0s
MFIE: Mozilla Firefox 39.0.3 (x86 fr) v39.0.3
OPIE: Opera 28.0.1750.51 v28.0.1750.51
MSIE: Internet Explorer v8.0.6001.18702

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 18 PPAPI
Adobe Reader 9.4.0 - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 67 Stepping 3, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2619.82 MB (37% free)
~ System Restore: Activé (Enable)
~ System drive E: has 13 GB free of 240 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PATOUCHE
~ User Name: Jean Phil
~ Logged in as Administrator

---\\ Enumération des unités disques (4) - 0s
~ Drive C: has 6 GB free of 80 GB
~ Drive D: has 7 GB free of 156 GB
~ Drive E: has 13 GB free of 240 GB (System)
~ Drive G: has GB free of 0 GB

---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: Modified
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (22) - 0s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- E:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- E:\WINDOWS\System32\rundll32.exe [33792]
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- E:\WINDOWS\System32\wininet.dll [920064]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- E:\WINDOWS\System32\Winlogon.exe [512000]
[MD5.F6B7B1ECD7B41736BDB6FF4B092BCB79] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- E:\WINDOWS\System32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- E:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- E:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- E:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- E:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- E:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- E:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- E:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- E:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- E:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- E:\WINDOWS\System32\drivers\MRxSmb.sys [457856]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- E:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- E:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- E:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- E:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- E:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- E:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- E:\WINDOWS\System32\drivers\volsnap.sys [53376]

---\\ Processus lancés (29) - 4s
[MD5.1355EBE184F9DAB1718BC587F8A7E05E] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- E:\Program Files\Fichiers communs\MAGIX Services\Database\bin\FABS.exe [1253376] [PID.220]
[MD5.4F821F8CCA484C81C5DF79E84B429584] - (.Ellora Assets Corp. - CaptureLibService.) -- E:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216] [PID.264]
[MD5.8D80C2CB216C4D34512C69DBAA1CA4D0] - (...) -- E:\Program Files\labdbelklanchor\labdbelklanchor.exe [7596230] [PID.336]
[MD5.3A990B8FA88E1B9F2D99C1B9B8D76F4B] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.9.) -- E:\WINDOWS\system32\nvsvc32.exe [156448] [PID.504]
[MD5.E6568D2D90028207587CB43CD8E5FD01] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- E:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1259296] [PID.532]
[MD5.96EFEC24346A8EB1157E80523079ADDC] - (...) -- E:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056] [PID.560]
[MD5.CD9E638EFC321B1856E1F3CCCCCCA478] - (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe [930936] [PID.2460]
[MD5.B52BCA0ABD463590BE48663962608D46] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- E:\WINDOWS\RTHDCPL.exe [16859648] [PID.2664]
[MD5.9D197E4D8D7ED5302609808CD21D56C0] - (.Logitech Inc. - Logitech WingMan Event Monitor.) -- E:\Program Files\Logitech\Gaming Software\LWEMon.exe [153672] [PID.2696]
[MD5.4F9DD96AECDC12373D4203253D665C6D] - (.Oracle Corporation - Java Update Scheduler.) -- E:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [334896] [PID.2752]
[MD5.AB9990DB80EA3DAC0EAE50C906EF7ECA] - (.BitTorrent Inc. - µTorrent.) -- E:\Documents and Settings\Jean Phil\Application Data\uTorrent\uTorrent.exe [1693024] [PID.3048]
[MD5.1C451320A219F880510E40B68A90B864] - (.Valve Corporation - Steam Client Bootstrapper.) -- E:\Program Files\Steam\Steam.exe [2899136] [PID.3080]
[MD5.FB4EB04305AB727F7A4978691073D6D9] - (...) -- E:\Documents and Settings\Jean Phil\Application Data\Microsoft\svhost.exe [132608] [PID.3176]
[MD5.2BF671CE7DAEAA755E1B26C0DA5EB1E9] - (.Valve Corporation - Steam Client WebHelper.) -- E:\Program Files\Steam\bin\steamwebhelper.exe [1862848] [PID.3932]
[MD5.EDB33DBCB66CA5B1B683A5794DC3DC69] - (.Microsoft - Microsoft Host.) -- E:\Documents and Settings\Jean Phil\Local Settings\Temp\clr.exe [18432] [PID.832]
[MD5.D48AABE9BEF7157C8B40771AEAD27D4E] - (...) -- E:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancerService.exe [1198592] [PID.456]
[MD5.AEE4BC62F584AC630094FF0A83AC89FF] - (. - 29Y6IP.) -- E:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancer.exe [269312] [PID.3392]
[MD5.F7CEB1E5F0000FDEEE04B046BBDE1D4E] - (.Mozilla Corporation - Firefox.) -- E:\Program Files\Mozilla Firefox\firefox.exe [377000] [PID.3128]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.4368]
[MD5.405FD2FDA756052FAF4A80C1C5916DA9] - (.Opera Software - Opera crash-reporter.) -- E:\Program Files\Opera\31.0.1889.99\opera_crashreporter.exe [511608] [PID.5840]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.3376]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.5224]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.2712]
[MD5.FE5889AECDC809DF70435989867FC5A8] - (.Mozilla Corporation - Plugin Container for Firefox.) -- E:\Program Files\Mozilla Firefox\plugin-container.exe [271016] [PID.4400]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.5640]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.5128]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.4948]
[MD5.C2FA91C4E8C412561E2B20F7C1527B21] - (.Opera Software - Opera Internet Browser.) -- E:\Program Files\Opera\31.0.1889.99\opera.exe [849016] [PID.2044]
[MD5.69924CB1D8D8ED7D67FF2AC269119084] - (.Nicolas Coolman - ZHPDiag.) -- E:\Documents and Settings\Jean Phil\Mes documents\Téléchargements\ZHPDiag3-2015.8.15.119.exe [1902592] [PID.5408]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (11) - 0s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [djnhkfljnimcpelfndpcjcgngmefaobl] Talk and Comment for
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [idhngdhcfkoamngbedgpaokgjbnpdiji] RealDownloader
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (14) - 1s
M0 - MFSP: prefs.js [Jean Phil - 2yv4dbx8.default] http://www.windowsxlive.net
P2 - EXT FILE: (...) -- E:\Documents and Settings\Jean Phil\Application Data\Mozilla\Firefox\Profiles\2yv4dbx8.default\searchplugins\WebSearch.xml =>PUP.Optional.SimpleSearches
P2 - EXT FILE: (...) -- E:\Documents and Settings\Jean Phil\Application Data\Mozilla\Firefox\Profiles\2yv4dbx8.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- E:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- E:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- E:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll
P2 - FPN: [HKLM] [@realnetworks.com/npdlplugin;version=1] - (.RealDownloader.) -- E:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll

---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (2) - 0s
B2 - EXT: [{background:{scripts:[background.js]}content_scrip] E:\Documents and Settings\Jean Phil\Application Data\Opera Software\Opera Stable\Extensions\ainfggabdicifnldnkhegmafidmabhnk
B2 - EXT: [{background:{scripts:[background.js]}content_scrip] E:\Documents and Settings\Jean Phil\Application Data\Opera Software\Opera Stable\Extensions\ejncjppdnhkbnooppigldeocimdeodnf

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (10) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.windowsxlive.net
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ca.search.yahoo.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (9) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:1641;https=127.0.0.1:1641; =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=E:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=explorer.exe, 1.0+Patch-REPT\Oneclick.Root.v1.0.0.Keygen.Incl.Patch.REPT\OneClick Root Keygen.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (25)

---\\ Browser Helper Object de navigateur (BHO) (O2) (2) - 1s
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealDownloader - RealPlayer Download and Record Plugin.) -- E:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: CuTThEaPrice - {568BE4BC-165B-4AC1-9591-3D525C27082A} . (...) -- E:\Program Files\CuTThEaPrice\ke5x5fvS6MJ8o7.dll =>PUP.Optional.Multiplug

---\\ Applications lancées au démarrage du sytème (O4) (41) - 1s
O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- E:\WINDOWS\RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] . (.Realtek Semiconductor Corp. - Realtek Azalia Audio - Event Monitor.) -- E:\WINDOWS\ALCMTR.EXE
O4 - HKLM\..\Run: [Start WingMan Profiler] . (.Logitech Inc. - Logitech WingMan Event Monitor.) -- E:\Program Files\Logitech\Gaming Software\LWEMon.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- E:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Run: [UXTheme Launcher] . (.Windows X - UXTheme - Engine Launcher.) -- E:\Program Files\UXTheme Multi-Patcher\themeengine.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- E:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [TrojanScanner] . (.Simply Super Software - Trojan Scanner.) -- E:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [windowslive] . (.Genre - .) -- E:\WINDOWS:windowslive.exe
O4 - HKLM\..\Run: [TrayServer] . (.Magix - Trayserver.) -- E:\Program Files\MAGIX\Video_deluxe_16_Plus_Version à télécharger\TrayServer.exe
O4 - HKLM\..\Run: [NvMediaCenter] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- E:\WINDOWS\System32\RUNDLL32.EXE
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- E:\WINDOWS\System32\RUNDLL32.EXE
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- E:\Program Files\DAEMON Tools Lite\DTLite.exe
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- E:\Program Files\Messenger\msmsgs.exe
O4 - HKCU\..\Run: [Adobe Reader] %AppData%\Microsoft\winlogon.exe
O4 - HKCU\..\Run: [EA Core] E:\Program Files\Electronic Arts\EADM\Core.exe (.not file.)
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- E:\Documents and Settings\Jean Phil\Application Data\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- E:\Program Files\Steam\Steam.exe
O4 - HKCU\..\Run: [Windows Defender] . (...) -- E:\Documents and Settings\Jean Phil\Application Data\Microsoft\svhost.exe
O4 - HKCU\..\Run: [Bubble Suite] E:\Documents and Settings\Jean Phil\Application Data\Nosibay\Bubble Suite\Bubble Suite.exe (.not file.) =>PUP.Optional.SPointer
O4 - HKCU\..\Run: [Selection Tools] E:\Documents and Settings\Jean Phil\Application Data\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKCU\..\Run: [tsiVideo] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- E:\WINDOWS\System32\rundll32.exe
O4 - HKCU\..\policies\Explorer\Run: [Adobe Reader] %AppData%\Microsoft\winlogon.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] E:\WINDOWS\system32\Macromed\Flash\FlashUtil32_17_0_0_169_pepper.exe (.not file.)
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] E:\WINDOWS\system32\Macromed\Flash\FlashUtil32_17_0_0_169_pepper.exe (.not file.)
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- E:\Program Files\DAEMON Tools Lite\DTLite.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- E:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- E:\Program Files\Messenger\msmsgs.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [Adobe Reader] %AppData%\Microsoft\winlogon.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [EA Core] E:\Program Files\Electronic Arts\EADM\Core.exe (.not file.)
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- E:\Documents and Settings\Jean Phil\Application Data\uTorrent\uTorrent.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- E:\Program Files\Steam\Steam.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [Windows Defender] . (...) -- E:\Documents and Settings\Jean Phil\Application Data\Microsoft\svhost.exe
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [Bubble Suite] E:\Documents and Settings\Jean Phil\Application Data\Nosibay\Bubble Suite\Bubble Suite.exe (.not file.) =>PUP.Optional.SPointer
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [Selection Tools] E:\Documents and Settings\Jean Phil\Application Data\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKUS\S-1-5-21-1935655697-796845957-682003330-1003\..\Run: [tsiVideo] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- E:\WINDOWS\System32\rundll32.exe

---\\ Modification Domaine/Adresses DNS (O17) (9) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = gateway.2wire.net
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = gateway.2wire.net
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpDomain = gateway.2wire.net

---\\ Liste des services NT non Microsoft et non désactivés (O23) (8) - 1s
O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - E:\Program Files\Fichiers communs\MAGIX Services\Database\bin\FABS.exe
O23 - Service: (FreemakeVideoCapture) . (.Ellora Assets Corp. - CaptureLibService.) - E:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (...) - E:\Program Files\Google\Update\GoogleUpdate.exe (.not file.)
O23 - Service: labdbelklanchor (labdbelklanchor) . (...) - E:\Program Files\labdbelklanchor\labdbelklanchor.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.9.) - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - E:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - E:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: WajInterEnhancer Service (WajInterEnhancer Service) . (...) - E:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancerService.exe

---\\ Tâches planifiées en automatique (O39) (13) - 3s
[MD5.675DE4EC2D88A6D68C39C662A3204596] [APT] [RealDownloaderRealUpgradeLogonTaskS-1-5-21-1935655697-796845957-682003330-1003] (.RealNetworks, Inc..) -- E:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [187984]
[MD5.00000000000000000000000000000000] [APT] [RealPlayerRealUpgradeLogonTaskS-1-5-21-1935655697-796845957-682003330-1003] (...) -- E:\Program Files\Real\RealUpgrade\realupgrade.exe (.not file.) [0]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job [892]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\IronAds.job [522]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP - à la connexion.job [230]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [224]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425935590.job [414]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1935655697-796845957-682003330-1003.job [334]
O39 - APT: RealDownloaderRealUpgradeLogonTaskS-1-5-21-1935655697-796845957-682003330-1003 - (.RealNetworks, Inc..) -- E:\WINDOWS\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1935655697-796845957-682003330-1003.job [308] =>.RealNetworks, Inc.
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1935655697-796845957-682003330-1003.job [316]
O39 - APT: RealPlayerRealUpgradeLogonTaskS-1-5-21-1935655697-796845957-682003330-1003 - (...) -- E:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1935655697-796845957-682003330-1003.job [286]
O39 - APT: Orphean - (...) -- E:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1935655697-796845957-682003330-1003.job [294]

---\\ Logiciels installés (O42) (121) - 15s
O42 - Logiciel: Package de pilotes Windows - Advanced Micro Devices (AmdK8) Processor (05/ - (.Advanced Micro Devices.) [HKLM] -- 3BEF1AFDE8303306594E2ADA27520E6E700820AE
O42 - Logiciel: EA SPORTS online 2004 - (...) [HKLM] -- 82A44D22-9452-49FB-00FB-CEC7DCAF7E23
O42 - Logiciel: Adobe Acrobat 4.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Acrobat 4.0
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Flash Player 18 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI
O42 - Logiciel: AMDAway INF - (...) [HKLM] -- AMDAway INF
O42 - Logiciel: Call of Duty: Black Ops - (...) [HKLM] -- Call of Duty: Black Ops_is1
O42 - Logiciel: Collab - (.Image-Line bvba.) [HKLM] -- Collab
O42 - Logiciel: Company of Heroes - (.THQ Inc..) [HKLM] -- Company of Heroes
O42 - Logiciel: ConvertXtoDVD 5.2.0.9 - (.VSO Software.) [HKLM] -- ConvertXtoDVD 5.2.0.9
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM] -- DAEMON Tools Lite
O42 - Logiciel: Deer Hunter - The 2005 Season - (.Atari, Inc..) [HKLM] -- Deer Hunter 2005_is1
O42 - Logiciel: Diablo - (...) [HKLM] -- Diablo
O42 - Logiciel: Dolphin x86 - (.Dolphin Development Team.) [HKLM] -- Dolphin x86
O42 - Logiciel: ASUS E-Green Uninstall - (...) [HKLM] -- EGREEN
O42 - Logiciel: theHunter Launcher - (.Expansive Worlds.) [HKLM] -- FBDFBE7F-2DB8-47E2-B88E-32F4A2A74AA8_is1
O42 - Logiciel: FL Studio 8 - (.Image-Line bvba.) [HKLM] -- FL Studio 8
O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Downloader_is1
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Command & Conquer Generals - (.Electronic Arts.) [HKLM] -- InstallShield_{06F80017-8F98-4C94-B868-52358569FC32}
O42 - Logiciel: Command and Conquer(TM) Generals - Heure H - (.Electronic Arts.) [HKLM] -- InstallShield_{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}
O42 - Logiciel: Hotfix for Windows XP (KB915800-v4) - (.Microsoft Corporation.) [HKLM] -- KB915800-v4
O42 - Logiciel: Windows Search 4.0 - (.Microsoft Corporation.) [HKLM] -- KB940157
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: Security Update for Windows Search 4 - KB963093 - (.Microsoft Corporation.) [HKLM] -- KB963093
O42 - Logiciel: K-Lite Codec Pack 10.1.5 Full - (...) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM] -- LinuxLive USB Creator
O42 - Logiciel: Magic ISO Maker v5.5 (build 0281) - (...) [HKLM] -- Magic ISO Maker v5.5 (build 0281)
O42 - Logiciel: MAGIX 3D Maker (embeded) - (.MAGIX AG.) [HKLM] -- MAGIX 3D Maker F
O42 - Logiciel: MAGIX Screenshare - (.MAGIX AG.) [HKLM] -- MAGIX Screenshare F
O42 - Logiciel: MAGIX Speed burnR - (.MAGIX AG.) [HKLM] -- MAGIX Speed burnR F
O42 - Logiciel: MAGIX Video deluxe 16 Plus Version à télécharger 9.0.0.55 (F) - (.MAGIX AG.) [HKLM] -- MAGIX Video deluxe 16 Plus Version à télécharger F
O42 - Logiciel: MAGIX Contenu et Soundpools - (.MAGIX AG.) [HKLM] -- MAGIX_GlobalContent
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM] -- MAGIX_{5C375A31-ED71-4CA0-91E0-8FA47E72D56D}
O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0.3 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: MAGIX Music Maker 2014 Premium - (.MAGIX AG.) [HKLM] -- MX.{088A4B09-8FB2-48D0-932A-7F90BE050543}
O42 - Logiciel: Samplitude Music Studio 2014 - (.MAGIX AG.) [HKLM] -- MX.{E7B81E36-0C3B-4549-A2DF-6B53D3C7098A}
O42 - Logiciel: Nero 8 Lite 8.2.8.0 - (.Updatepack.nl.) [HKLM] -- Nero8Lite_is1
O42 - Logiciel: NVIDIA Drivers - (...) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Opera Stable 28.0.1750.51 - (.Opera Software ASA.) [HKLM] -- Opera 28.0.1750.51
O42 - Logiciel: Opera Stable 31.0.1889.99 - (.Opera Software.) [HKLM] -- Opera 31.0.1889.99
O42 - Logiciel: PoiZone - (.Image-Line bvba.) [HKLM] -- PoiZone
O42 - Logiciel: Command & Conquer Red Alert 2 - (...) [HKLM] -- Red Alert 2
O42 - Logiciel: RESIDENT EVIL2 - (...) [HKLM] -- RESIDENT EVIL2
O42 - Logiciel: SAMSUNG Android USB Modem Software - (...) [HKLM] -- SAMSUNG Android USB Modem
O42 - Logiciel: Hero Editor V0.96 - (...) [HKLM] -- ST6UNST #1
O42 - Logiciel: Hero Editor V0.96 (E:\Program Files\ - (...) [HKLM] -- ST6UNST #2
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM] -- Steam
O42 - Logiciel: Path of Exile - (.Grinding Gear Games.) [HKLM] -- Steam App 238960
O42 - Logiciel: Etherium - (.Tindalos Interactive.) [HKLM] -- Steam App 245370
O42 - Logiciel: Trojan Remover 6.8.2 - (.Simply Super Software.) [HKLM] -- Trojan Remover_is1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Wajam - (.WajInterEnhancer.) [HKLM] -- WajInterEnhancer =>PUP.Optional.Wajam
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 - (.Microsoft Corporation.) [HKLM] -- Wdf01005
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify
O42 - Logiciel: GTK+ 2.6.4 runtime environment - (.Tor Lillqvist.) [HKLM] -- WinGTK-2_is1
O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: Microsoft WinUsb 1.0 - (.Microsoft Corporation.) [HKLM] -- winusb0100
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP
O42 - Logiciel: Yahoo! Toolbar - (...) [HKLM] -- Yahoo! Companion
O42 - Logiciel: MAGIX Vita Solo Instruments (Saxophonia) for MAGIX Music Maker 2014 Premium - (.MAGIX AG.) [HKLM] -- {0579E056-41FD-34B7-9006-B2A0659ED96B}
O42 - Logiciel: MAGIX Music Maker 2014 Premium - (.MAGIX AG.) [HKLM] -- {088A4B09-8FB2-48D0-932A-7F90BE050543}
O42 - Logiciel: PremiumEnhancer - (.PremiumEnhancer.) [HKLM] -- {12DA0E6F-5543-440C-BAA2-28BF01070AFA}{4edbb8b0}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {14574B7F-75D1-4718-B7F2-EBF6E2862A35}
O42 - Logiciel: Guitar Pro 6 - (.Arobas Music.) [HKLM] -- {14A487F2-1259-4E6C-AE3C-3C888DDBCB60}_is1
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {199E6632-EB28-4F73-AECB-3E192EB92D18}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E}
O42 - Logiciel: Aqua Real - (...) [HKLM] -- {1E66C7FF-F827-4AEF-A998-932EA824998B}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {25724802-CC14-4B90-9F3B-3D6955EE27B1}
O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0}
O42 - Logiciel: MAGIX Vita Solo Instruments (Space Pad) for MAGIX Music Maker 2014 Premium - (.MAGIX AG.) [HKLM] -- {2C3829A1-6BB0-3CAE-960C-C19B8AF952C9}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {32C4A4EB-C97D-414E-99C5-38F8DFD31D5D}
O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM] -- {34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {38D0AE7E-0C1C-4490-AF15-EE25DE5EA8E8}
O42 - Logiciel: MAGIX Vita Solo Instruments (Vibraphone) for MAGIX Music Maker 2014 Premium - (.MAGIX AG.) [HKLM] -- {403F4C00-E5CB-3996-9244-A4AD715710EE}
O42 - Logiciel: Lyrics Plugin for Windows Media Player - (.Lyrics Plugin.) [HKLM] -- {43002AE2-4093-49E0-A03D-990EE184C568}
O42 - Logiciel: MAGIX Music Maker 2014 Trial Soundpools - (.MAGIX AG.) [HKLM] -- {47950763-DE1D-4C64-BEDE-D579CA9688CB}
O42 - Logiciel: Microsoft Games for Windows - LIVE - (.Microsoft Corporation.) [HKLM] -- {4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}
O42 - Logiciel: Vita Vintage Organ - (.MAGIX AG.) [HKLM] -- {4F6B2EA9-4598-4653-B13A-E27AA387DC9B}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {50193078-F553-4EBA-AA77-64C9FAA12F98}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {51D718D1-DA81-4FAD-919F-5C1CE3C33379}
O42 - Logiciel: MAGIX Music Maker 2014 Premium Update - (.MAGIX AG.) [HKLM] -- {58DDFC02-3E05-472E-ABF0-5A3DC500FFB1}
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM] -- {5C375A31-ED71-4CA0-91E0-8FA47E72D56D}
O42 - Logiciel: Logitech Gaming Software 5.10 - (.Logitech.) [HKLM] -- {60D32CDC-E3BE-4578-BA10-29322307CDDC}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: Vita Lead Synth - (.MAGIX AG.) [HKLM] -- {63F3DCEC-E5DB-4C4F-92EA-9A97E9AB90FA}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {66F78C51-D108-4F0C-A93C-1CBE74CE338F}
O42 - Logiciel: MAGIX Burn routines - (.MAGIX AG.) [HKLM] -- {72945A77-20ED-4507-B267-4771EDE4EE58}
O42 - Logiciel: Vita Drum Engine - (.MAGIX AG.) [HKLM] -- {7432D224-9F1C-40C3-914A-F254E63C2B3F}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {7F4B1592-222F-4E5F-A100-E5AFD61A0BB3}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {80D03817-7943-4839-8E96-B9F924C5E67D}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {97E5205F-EA4F-438F-B211-F1846419F1C1}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {99A7722D-9ACB-43F3-A222-ABC7133F159E}
O42 - Logiciel: CuTThEaPrice - (...) [HKLM] -- {A2C98B47-B5F4-94AA-281D-4135416774CF} =>PUP.Optional.Multiplug
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Reader 9.4.0 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A94000000001}
O42 - Logiciel: NVIDIA Pilote graphique 307.90 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA nView 136.53 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView
O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM] -- {B9A82C41-4F48-3C15-8A84-1A84582BE03E}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {BA801B94-C28D-46EE-B806-E1E021A3D519}
O42 - Logiciel: PingPlotter 4.00.2 - (.Pingman Tools, LLC.) [HKLM] -- {C7D1B1E1-1012-493E-B657-70096A81F06F}
O42 - Logiciel: RealDownloader - (.RealNetworks, Inc..) [HKLM] -- {C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE}
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {D4D244D1-05E0-4D24-86A2-B2433C435671}
O42 - Logiciel: Samplitude Music Studio 2014 - (.MAGIX AG.) [HKLM] -- {E7B81E36-0C3B-4549-A2DF-6B53D3C7098A}
O42 - Logiciel: Vita Century Guitar - (.MAGIX AG.) [HKLM] -- {E8243BF6-8014-4813-8337-1F8CBC6BE4C8}
O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM] -- {EAF636A9-F664-4703-A659-85A894DA264F}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: IsavEr - (."".) [HKLM] -- {F1422DAA-0829-09A1-7536-73936CAB8FFA}
O42 - Logiciel: NHL® 09 - (.Electronic Arts.) [HKLM] -- {F2B5A2A7-2DF9-4361-8BD5-362714528B51}
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM] -- {FD052FB9-FE90-4438-B355-15EDC89D8FB1}
O42 - Logiciel: Diablo - (...) [HKCU] -- Diablo
O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU] -- GameRanger
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: World of Tanks - (.Wargaming.net.) [HKCU] -- {1EAC1D02-C6AC-4FA6-9A44-96258C37C812na}_is1

---\\ HKCU & HKLM Software Keys (190) - 15s
HKLM\SOFTWARE\5dba8d1b-cb26-4771-91b4-33c34ece1cb3 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\5efd2b35-0322-a7b9-5f20-e87013dd08b7 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\76d1c021-d3c2-5d0a-23f4-fb3b8de6e888 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\9fc85777-2606-dd0a-a50c-bc78f3a281f6 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\ac20d11b-dbd8-3c2e-9180-c508749cba5e =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Activision
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\ASUS E-Green
HKLM\SOFTWARE\Atheros
HKLM\SOFTWARE\Battle.net
HKLM\SOFTWARE\Blizzard Entertainment
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CAPCOM
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\Cyanide
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\Cygnus Solutions
HKLM\SOFTWARE\D-Link Wireless N Dual Band DWA-160 _WPS Service
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\EA Games
HKLM\SOFTWARE\EA Sports
HKLM\SOFTWARE\Electronic Arts
HKLM\SOFTWARE\Essential Data Tools
HKLM\SOFTWARE\f7378ef5-3072-25f0-9f5b-9f725c1ad38a =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Formosoft
HKLM\SOFTWARE\Freemake
HKLM\SOFTWARE\GameSpy
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GTK
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Icaros
HKLM\SOFTWARE\Image-Line
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\KLCodecPack
HKLM\SOFTWARE\LAV
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\LinuxLive USB Creator
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\MAGIX
HKLM\SOFTWARE\Magix Development
HKLM\SOFTWARE\MCCI
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NCH Software
HKLM\SOFTWARE\NCH Swift Sound
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\Outsim
HKLM\SOFTWARE\Pingman Tools
HKLM\SOFTWARE\PocketSoft
HKLM\SOFTWARE\PoINT
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Propellerhead Software
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\SAMSUNG
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\Simply Super Software
HKLM\SOFTWARE\SoftVoice
HKLM\SOFTWARE\Southlogic
HKLM\SOFTWARE\TGTSoft
HKLM\SOFTWARE\ThinPrint
HKLM\SOFTWARE\THQ
HKLM\SOFTWARE\Valve
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\VMware, Inc.
HKLM\SOFTWARE\VST
HKLM\SOFTWARE\WajInterEnhancer =>PUP.Optional.Multiplug
HKLM\SOFTWARE\Westwood
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\Windows X
HKLM\SOFTWARE\Wondershare
HKLM\SOFTWARE\Xara
HKLM\SOFTWARE\Xing Technology Corp.
HKLM\SOFTWARE\Yahoo
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\ANI
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Arobas Music
HKCU\SOFTWARE\Battle.net
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Boilsoft
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\CommView
HKCU\SOFTWARE\Cyanide
HKCU\SOFTWARE\Cygnus Solutions
HKCU\SOFTWARE\D-Link
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DScaler5
HKCU\SOFTWARE\EA Sports
HKCU\SOFTWARE\EGOSOFT
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\Emulators
HKCU\SOFTWARE\epsxe
HKCU\SOFTWARE\Essential Data Tools
HKCU\SOFTWARE\Eurobattle.net
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameRanger
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\Image-Line
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\LinuxLive
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Lyrics Plugin
HKCU\SOFTWARE\M-Audio
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madshi
HKCU\SOFTWARE\MagicISO
HKCU\SOFTWARE\Magix
HKCU\SOFTWARE\MAGIX AG
HKCU\SOFTWARE\Magix Development
HKCU\SOFTWARE\Magix Low Latency 2011
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\NCH Software
HKCU\SOFTWARE\NCH Swift Sound
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OneClickRoot
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Pingman Tools
HKCU\SOFTWARE\ProductSetup =>PUP.Optional.InstallCore
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RedRexx
HKCU\SOFTWARE\SAMP
HKCU\SOFTWARE\Simply Super Software
HKCU\SOFTWARE\SoftVoice
HKCU\SOFTWARE\SoftwareOK
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\TGT Soft
HKCU\SOFTWARE\ThinPrint
HKCU\SOFTWARE\THQ
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VirtualDub.org
HKCU\SOFTWARE\Vision Thing
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajInterEnhancer =>PUP.Optional.Multiplug
HKCU\SOFTWARE\Wargaming.net
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WinRecovery
HKCU\SOFTWARE\WTools
HKCU\SOFTWARE\Xara
HKCU\SOFTWARE\Xilisoft
HKCU\SOFTWARE\yahoo
HKCU\SOFTWARE\YarukilessEmulator
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\RealNetworks

---\\ Contenu des dossiers Programmes (O43) (299) - 14s
O43 - CFD: 2015/07/30 15:12:13 - [] D -- E:\Program Files\50CoouuPons
O43 - CFD: 2015/07/30 15:12:21 - [] D -- E:\Program Files\50COuPoins
O43 - CFD: 2015/08/15 12:06:18 - [0] D -- E:\Program Files\50Couuponsu
O43 - CFD: 2015/07/24 08:09:05 - [] D -- E:\Program Files\Activision
O43 - CFD: 2015/02/21 07:58:29 - [] D -- E:\Program Files\Adobe
O43 - CFD: 2015/04/28 07:52:16 - [] D -- E:\Program Files\AeLLlCheApPriceo =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/28 06:09:30 - [] D -- E:\Program Files\After the Deadline
O43 - CFD: 2015/04/28 07:52:16 - [] D -- E:\Program Files\AllCheapProicei =>PUP.Optional.Multiplug
O43 - CFD: 2014/09/06 19:37:26 - [] D -- E:\Program Files\AMD
O43 - CFD: 2014/12/31 14:08:25 - [] D -- E:\Program Files\ASUS E-Green
O43 - CFD: 2015/08/07 04:20:02 - [] D -- E:\Program Files\Atari
O43 - CFD: 2015/07/24 07:22:37 - [] D -- E:\Program Files\CAPCOM
O43 - CFD: 2015/04/28 07:52:16 - [] D -- E:\Program Files\CheaapMe =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/07 06:45:37 - [0] D -- E:\Program Files\Color Change for
O43 - CFD: 2014/11/21 17:03:27 - [] D -- E:\Program Files\Common Files
O43 - CFD: 2014/09/06 19:06:00 - [0] D -- E:\Program Files\ComPlus Applications
O43 - CFD: 2015/08/16 01:51:57 - [] D -- E:\Program Files\CuTThEaPrice =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/07 06:44:54 - [] D -- E:\Program Files\CutThEPereice =>PUP.Optional.Multiplug
O43 - CFD: 2014/09/06 19:55:26 - [] D -- E:\Program Files\DAEMON Tools Lite
O43 - CFD: 2015/04/28 07:52:12 - [] D -- E:\Program Files\Date Today
O43 - CFD: 2014/11/23 00:56:56 - [] D -- E:\Program Files\Day Organizer
O43 - CFD: 2015/06/28 14:26:34 - [] D -- E:\Program Files\Diablo
O43 - CFD: 2014/12/23 13:24:03 - [] D -- E:\Program Files\DIFX
O43 - CFD: 2015/07/24 02:47:09 - [] D -- E:\Program Files\Dolphin x86
O43 - CFD: 2015/07/28 06:09:35 - [] D -- E:\Program Files\DownSaevvE =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/28 14:28:52 - [] D -- E:\Program Files\DoWnSauve =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/28 14:28:52 - [] D -- E:\Program Files\DownSavve =>PUP.Optional.Multiplug
O43 - CFD: 2015/05/05 05:12:03 - [] D -- E:\Program Files\EA Games
O43 - CFD: 2015/05/05 05:31:48 - [] D -- E:\Program Files\EA Sports
O43 - CFD: 2015/01/11 01:20:19 - [] D -- E:\Program Files\Electronic Arts
O43 - CFD: 2015/08/15 13:02:32 - [] D -- E:\Program Files\Fichiers communs
O43 - CFD: 2015/06/28 04:40:07 - [] D -- E:\Program Files\Firefly Studios
O43 - CFD: 2015/07/30 22:10:16 - [] D -- E:\Program Files\Formosoft
O43 - CFD: 2015/05/05 08:25:59 - [] D -- E:\Program Files\Freemake
O43 - CFD: 2015/08/07 06:44:54 - [] D -- E:\Program Files\FunDeaals =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 12:14:48 - [] D -- E:\Program Files\FUnDEals =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/07 06:44:39 - [] D -- E:\Program Files\FuonDeaalS =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/17 01:22:01 - [] D -- E:\Program Files\gfujfjgjfjghf
O43 - CFD: 2015/07/28 05:51:23 - [] D -- E:\Program Files\Google
O43 - CFD: 2015/07/18 06:36:32 - [] D -- E:\Program Files\GrEatoSaVee4oU =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/28 06:09:48 - [] D -- E:\Program Files\GReatSSAve4U =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/28 06:09:48 - [] D -- E:\Program Files\GreATTSAve4U =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 11:18:54 - [] D -- E:\Program Files\Guitar Pro 6
O43 - CFD: 2015/07/17 20:37:29 - [] D -- E:\Program Files\Hero Editor
O43 - CFD: 2015/07/28 06:09:48 - [] D -- E:\Program Files\IeSAver
O43 - CFD: 2015/07/28 14:29:35 - [] D -- E:\Program Files\Image Size Info
O43 - CFD: 2015/08/15 12:15:22 - [0] D -- E:\Program Files\Image Viewer
O43 - CFD: 2015/08/15 12:15:16 - [] D -- E:\Program Files\Image-Line
O43 - CFD: 2015/07/30 22:10:16 - [] HD -- E:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/07/29 22:43:20 - [] D -- E:\Program Files\Internet Explorer
O43 - CFD: 2015/07/28 06:09:48 - [] D -- E:\Program Files\IsavER
O43 - CFD: 2015/07/28 20:31:59 - [] D -- E:\Program Files\Java
O43 - CFD: 2015/05/18 22:50:27 - [] D -- E:\Program Files\K-Lite Codec Pack
O43 - CFD: 2015/08/02 17:20:19 - [] D -- E:\Program Files\labdbelklanchor
O43 - CFD: 2015/08/15 12:20:11 - [0] D -- E:\Program Files\LastPass Free Password Manager
O43 - CFD: 2015/08/07 06:03:19 - [0] D -- E:\Program Files\LibraryFoobar
O43 - CFD: 2015/02/21 08:15:28 - [] D -- E:\Program Files\LinuxLive USB Creator
O43 - CFD: 2014/12/04 16:47:21 - [] D -- E:\Program Files\Logitech
O43 - CFD: 2015/07/26 09:13:00 - [] D -- E:\Program Files\ma-config.com
O43 - CFD: 2014/09/25 10:53:39 - [] D -- E:\Program Files\MagicISO
O43 - CFD: 2015/08/15 12:02:08 - [] D -- E:\Program Files\MAGIX
O43 - CFD: 2014/09/06 19:05:38 - [] D -- E:\Program Files\Messenger
O43 - CFD: 2014/12/23 13:23:54 - [] D -- E:\Program Files\Microsoft Chart Controls
O43 - CFD: 2015/02/22 13:44:29 - [] D -- E:\Program Files\Microsoft Games
O43 - CFD: 2014/10/27 12:17:24 - [] D -- E:\Program Files\Microsoft Games for Windows - LIVE
O43 - CFD: 2014/09/07 16:18:08 - [] D -- E:\Program Files\Microsoft.NET
O43 - CFD: 2015/07/28 14:28:52 - [] D -- E:\Program Files\MinimumPPrice =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 12:20:27 - [0] D -- E:\Program Files\MinimumPRicce =>PUP.Optional.Multiplug
O43 - CFD: 2015/07/28 14:28:41 - [] D -- E:\Program Files\MinnimuMPrice =>PUP.Optional.Multiplug
O43 - CFD: 2014/09/06 19:07:35 - [] D -- E:\Program Files\Movie Maker
O43 - CFD: 2015/08/07 01:17:11 - [] D -- E:\Program Files\Mozilla Firefox
O43 - CFD: 2015/08/08 18:04:00 - [] D -- E:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2014/09/07 17:57:59 - [] D -- E:\Program Files\MSBuild
O43 - CFD: 2014/09/06 19:04:43 - [] D -- E:\Program Files\MSN
O43 - CFD: 2015/02/22 13:44:09 - [] D -- E:\Program Files\MSN Gaming Zone
O43 - CFD: 2015/02/22 10:43:39 - [] D -- E:\Program Files\MSXML 4.0
O43 - CFD: 2015/08/15 12:51:49 - [] D -- E:\Program Files\NCH Software
O43 - CFD: 2015/08/14 06:43:36 - [] D -- E:\Program Files\NeiwSaaver =>PUP.Optional.Multiplug
O43 - CFD: 2014/09/07 12:14:14 - [] D -- E:\Program Files\Nero
O43 - CFD: 2014/09/06 19:07:58 - [] D -- E:\Program Files\NetMeeting
O43 - CFD: 2015/07/30 15:11:54 - [0] D -- E:\Program Files\NewGenBook for
O43 - CFD: 2015/08/14 06:44:30 - [] D -- E:\Program Files\NewSSaavverr =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 12:20:41 - [0] D -- E:\Program Files\NewSSaver =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 22:26:31 - [] D -- E:\Program Files\NVIDIA Corporation
O43 - CFD: 2014/09/06 19:05:49 - [] D -- E:\Program Files\Online Services
O43 - CFD: 2015/08/07 17:15:52 - [] D -- E:\Program Files\Opera
O43 - CFD: 2015/05/22 04:26:38 - [] D -- E:\Program Files\Outlook Express
O43 - CFD: 2015/08/09 01:36:58 - [] D -- E:\Program Files\Outsim
O43 - CFD: 2015/04/28 09:13:34 - [] D -- E:\Program Files\PingPlotter
O43 - CFD: 2015/07/29 22:59:21 - [] D -- E:\Program Files\Real
O43 - CFD: 2015/03/26 14:13:19 - [] D -- E:\Program Files\RealNetworks
O43 - CFD: 2014/09/06 19:38:10 - [] D -- E:\Program Files\Realtek
O43 - CFD: 2014/09/07 17:57:56 - [] D -- E:\Program Files\Reference Assemblies
O43 - CFD: 2014/12/08 00:19:20 - [] D -- E:\Program Files\Rockstar Games
O43 - CFD: 2015/03/30 11:47:32 - [0] D -- E:\Program Files\SalePlus =>PUP.Optional.Multiplug
O43 - CFD: 2014/11/21 16:48:23 - [] D -- E:\Program Files\SAMSUNG
O43 - CFD: 2014/09/06 19:08:43 - [] D -- E:\Program Files\Services en ligne
O43 - CFD: 2015/08/15 12:21:15 - [0] D -- E:\Program Files\ShOPDriop =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/07 06:03:21 - [0] D -- E:\Program Files\SoftwareBump
O43 - CFD: 2015/07/15 06:21:34 - [] D -- E:\Program Files\Spawn
O43 - CFD: 2015/05/05 05:13:51 - [0] D -- E:\Program Files\SSalePlues =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/16 01:54:42 - [] D -- E:\Program Files\StatRunner
O43 - CFD: 2015/08/15 23:09:34 - [] D -- E:\Program Files\Steam
O43 - CFD: 2015/08/14 06:47:06 - [0] D -- E:\Program Files\Talk and Comment for
O43 - CFD: 2015/07/18 06:56:58 - [] D -- E:\Program Files\Textverter for RussianEnglish keyboard
O43 - CFD: 2015/08/15 12:21:24 - [] D -- E:\Program Files\TGTSoft
O43 - CFD: 2015/08/07 01:08:08 - [] D -- E:\Program Files\theHunter
O43 - CFD: 2014/12/27 23:59:13 - [] D -- E:\Program Files\THQ
O43 - CFD: 2015/07/29 22:25:07 - [] D -- E:\Program Files\Trojan Remover
O43 - CFD: 2014/09/06 19:16:06 - [0] HD -- E:\Program Files\Uninstall Information
O43 - CFD: 2015/05/05 06:25:50 - [] D -- E:\Program Files\UXTheme Multi-Patcher
O43 - CFD: 2015/01/18 23:36:56 - [] D -- E:\Program Files\VideoLAN
O43 - CFD: 2015/01/26 16:57:39 - [] D -- E:\Program Files\VSO Software
O43 - CFD: 2015/08/09 01:37:31 - [] D -- E:\Program Files\VstPlugins
O43 - CFD: 2015/08/16 01:53:43 - [] D -- E:\Program Files\Wajam =>PUP.Optional.Wajam
O43 - CFD: 2015/08/16 01:53:59 - [] D -- E:\Program Files\WajInterEnhancer =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 22:25:46 - [] D -- E:\Program Files\Windows Desktop Search
O43 - CFD: 2014/09/06 19:05:42 - [] D -- E:\Program Files\Windows Media Connect 2
O43 - CFD: 2015/07/24 05:52:26 - [] D -- E:\Program Files\Windows Media Player
O43 - CFD: 2014/09/06 19:05:20 - [] D -- E:\Program Files\Windows NT
O43 - CFD: 2014/09/06 19:08:46 - [0] HD -- E:\Program Files\WindowsUpdate
O43 - CFD: 2014/09/07 14:26:38 - [] D -- E:\Program Files\WinRAR
O43 - CFD: 2014/12/28 00:05:02 - [] D -- E:\Program Files\Yabause
O43 - CFD: 2015/01/31 00:35:44 - [] D -- E:\Program Files\Yahoo!
O43 - CFD: 2015/03/30 11:46:59 - [0] D -- E:\Program Files\youtubeadblocker =>PUP.Optional.YouTubeAdBlock
O43 - CFD: 2015/01/08 00:22:53 - [] RD -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2015/07/24 08:13:55 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Activision
O43 - CFD: 2015/07/30 22:10:10 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Aqua Real
O43 - CFD: 2015/08/07 04:20:30 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Atari
O43 - CFD: 2014/09/06 19:55:41 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\DAEMON Tools Lite
O43 - CFD: 2015/07/24 02:47:09 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Dolphin x86
O43 - CFD: 2015/08/15 22:25:53 - [] RD -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/05/05 05:12:05 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\EA Games
O43 - CFD: 2015/05/05 05:31:52 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\EA Sports
O43 - CFD: 2015/05/05 08:26:00 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Freemake
O43 - CFD: 2015/07/28 05:51:34 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 2015/08/15 10:43:37 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Guitar Pro 6
O43 - CFD: 2015/07/28 20:32:14 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 2014/09/06 19:06:09 - [] RD -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2015/05/18 22:50:29 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack
O43 - CFD: 2015/07/26 09:13:00 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com
O43 - CFD: 2015/08/15 12:00:43 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\MAGIX
O43 - CFD: 2014/09/07 12:14:11 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero
O43 - CFD: 2014/09/07 17:48:31 - [] RD -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/07/17 21:26:56 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Steam
O43 - CFD: 2015/08/07 01:07:16 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\theHunter
O43 - CFD: 2015/01/06 00:41:54 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\THQ
O43 - CFD: 2015/07/29 21:43:56 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Trojan Remover
O43 - CFD: 2015/01/18 23:37:18 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2015/08/16 01:54:00 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\WajInterEnhancer =>PUP.Optional.Multiplug
O43 - CFD: 2014/11/23 22:22:04 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\Westwood
O43 - CFD: 2014/09/07 14:26:38 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2015/04/28 13:30:59 - [] D -- E:\Documents and Settings\All Users\Menu Démarrer\Programmes\World of Tanks
O43 - CFD: 2015/08/15 12:19:34 - [] D -- E:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 2015/06/14 02:23:22 - [0] D -- E:\Documents and Settings\All Users\Application Data\19f264c600002199
O43 - CFD: 2015/04/10 21:36:09 - [0] D -- E:\Documents and Settings\All Users\Application Data\2d6f732600007316
O43 - CFD: 2015/08/15 12:06:54 - [] D -- E:\Documents and Settings\All Users\Application Data\87ad4b8000003d21
O43 - CFD: 2015/08/16 02:35:47 - [] D -- E:\Documents and Settings\All Users\Application Data\9278370109095801553
O43 - CFD: 2015/03/11 12:43:59 - [] D -- E:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2014/12/09 23:31:17 - [] D -- E:\Documents and Settings\All Users\Application Data\Age of Empires 3
O43 - CFD: 2015/08/15 12:10:18 - [] D -- E:\Documents and Settings\All Users\Application Data\Apple
O43 - CFD: 2015/08/15 12:19:35 - [] D -- E:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 2015/08/02 17:24:30 - [] D -- E:\Documents and Settings\All Users\Application Data\bkbhfkdnmlilpcikbiieghiedophcjfg
O43 - CFD: 2015/05/05 05:51:36 - [] D -- E:\Documents and Settings\All Users\Application Data\Block The Ads =>PUP.Optional.Multiplug
O43 - CFD: 2015/06/14 02:24:42 - [0] D -- E:\Documents and Settings\All Users\Application Data\c7231ca800007c0e
O43 - CFD: 2015/02/22 13:46:25 - [] D -- E:\Documents and Settings\All Users\Application Data\CyberLink
O43 - CFD: 2014/09/06 19:56:55 - [] D -- E:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
O43 - CFD: 2015/05/05 05:31:25 - [0] D -- E:\Documents and Settings\All Users\Application Data\eedb6e7b0000165a
O43 - CFD: 2014/12/23 13:35:52 - [0] D -- E:\Documents and Settings\All Users\Application Data\Electronic Arts
O43 - CFD: 2015/04/28 19:05:06 - [] D -- E:\Documents and Settings\All Users\Application Data\Extreme Blocker
O43 - CFD: 2015/05/05 05:31:07 - [0] D -- E:\Documents and Settings\All Users\Application Data\f598153100003f63
O43 - CFD: 2015/06/28 04:44:02 - [] D -- E:\Documents and Settings\All Users\Application Data\Firefly Studios
O43 - CFD: 2015/08/08 18:16:51 - [] D -- E:\Documents and Settings\All Users\Application Data\fomknbclcoppnlklognnbkjalinlbldf
O43 - CFD: 2015/05/05 08:27:21 - [] D -- E:\Documents and Settings\All Users\Application Data\Freemake
O43 - CFD: 2015/08/15 10:48:23 - [0] D -- E:\Documents and Settings\All Users\Application Data\Guitar Pro 6
O43 - CFD: 2015/08/07 01:07:30 - [] D -- E:\Documents and Settings\All Users\Application Data\Hunter
O43 - CFD: 2014/12/31 14:01:27 - [] D -- E:\Documents and Settings\All Users\Application Data\install_clap
O43 - CFD: 2015/03/27 00:17:32 - [] D -- E:\Documents and Settings\All Users\Application Data\jlicbpmeilheclkpkeofdbhjmhphpjdg
O43 - CFD: 2015/07/24 09:18:02 - [] D -- E:\Documents and Settings\All Users\Application Data\LogiShrd
O43 - CFD: 2015/07/26 09:13:00 - [] D -- E:\Documents and Settings\All Users\Application Data\ma-config.com
O43 - CFD: 2015/08/15 12:02:08 - [] D -- E:\Documents and Settings\All Users\Application Data\MAGIX
O43 - CFD: 2015/08/15 22:25:55 - [] SD -- E:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2015/05/04 10:11:37 - [] D -- E:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2015/05/23 12:29:26 - [] D -- E:\Documents and Settings\All Users\Application Data\NCH Software
O43 - CFD: 2014/09/07 12:13:59 - [] D -- E:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 2015/07/22 00:20:50 - [] D -- E:\Documents and Settings\All Users\Application Data\NVIDIA
O43 - CFD: 2015/07/22 00:20:53 - [] D -- E:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 2015/07/22 01:20:33 - [0] D -- E:\Documents and Settings\All Users\Application Data\nView_Profiles
O43 - CFD: 2014/09/07 16:01:17 - [] D -- E:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
O43 - CFD: 2015/07/28 20:33:01 - [] D -- E:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 2014/09/25 15:39:06 - [] D -- E:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 2015/07/29 22:59:13 - [] D -- E:\Documents and Settings\All Users\Application Data\Real
O43 - CFD: 2015/03/26 14:13:16 - [] D -- E:\Documents and Settings\All Users\Application Data\RealNetworks
O43 - CFD: 2014/09/07 21:49:16 - [] D -- E:\Documents and Settings\All Users\Application Data\Samsung
O43 - CFD: 2015/07/29 21:43:53 - [] D -- E:\Documents and Settings\All Users\Application Data\Simply Super Software
O43 - CFD: 2015/04/23 10:16:26 - [] D -- E:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2015/04/10 21:56:25 - [] D -- E:\Documents and Settings\All Users\Application Data\Supreme AdBlocker =>PUP.Optional.Adblocker
O43 - CFD: 2015/08/16 10:16:59 - [] AD -- E:\Documents and Settings\All Users\Application Data\Temp
O43 - CFD: 2015/05/05 05:51:16 - [] D -- E:\Documents and Settings\All Users\Application Data\TheAdBlock =>PUP.Optional.TheAdBlock
O43 - CFD: 2015/03/11 22:41:51 - [] D -- E:\Documents and Settings\All Users\Application Data\VMware
O43 - CFD: 2014/09/07 16:01:15 - [] D -- E:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2015/03/06 22:46:15 - [] D -- E:\Documents and Settings\All Users\Application Data\Yahoo! Companion
O43 - CFD: 2015/08/07 05:59:59 - [] D -- E:\Documents and Settings\All Users\Application Data\{55aa9ab4-5573-c5d4-55aa-a9ab45576ad1}
O43 - CFD: 2015/04/19 17:37:56 - [] D -- E:\Documents and Settings\All Users\Application Data\{591269a8-ef7e-d992-5912-269a8ef7a6a3}
O43 - CFD: 2015/02/21 07:58:38 - [] D -- E:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2015/08/15 12:19:34 - [0] D -- E:\Program Files\Fichiers communs\Apple
O43 - CFD: 2014/12/31 14:08:07 - [] D -- E:\Program Files\Fichiers communs\CyberLink
O43 - CFD: 2014/09/21 23:45:32 - [] D -- E:\Program Files\Fichiers communs\GTK
O43 - CFD: 2014/09/06 19:57:34 - [] D -- E:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2015/07/28 20:32:32 - [] D -- E:\Program Files\Fichiers communs\Java
O43 - CFD: 2014/12/04 16:47:22 - [] D -- E:\Program Files\Fichiers communs\Logitech
O43 - CFD: 2015/08/15 12:02:41 - [] D -- E:\Program Files\Fichiers communs\MAGIX Services
O43 - CFD: 2015/08/15 12:01:57 - [] D -- E:\Program Files\Fichiers communs\MAGIX Shared
O43 - CFD: 2014/12/04 16:47:04 - [] D -- E:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2014/09/06 19:07:51 - [] D -- E:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2014/09/07 12:14:10 - [] D -- E:\Program Files\Fichiers communs\Nero
O43 - CFD: 2014/09/06 14:29:42 - [] D -- E:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2015/08/15 13:02:33 - [] D -- E:\Program Files\Fichiers communs\Real
O43 - CFD: 2014/09/06 19:07:56 - [] D -- E:\Program Files\Fichiers communs\Services
O43 - CFD: 2014/09/06 14:29:37 - [] D -- E:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2014/09/06 19:06:48 - [] D -- E:\Program Files\Fichiers communs\System
O43 - CFD: 2015/01/02 00:45:17 - [] D -- E:\Program Files\Fichiers communs\Wise Installation Wizard
O43 - CFD: 2015/08/15 12:00:57 - [] D -- E:\Program Files\Fichiers communs\xara
O43 - CFD: 2015/02/21 07:59:13 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Adobe
O43 - CFD: 2015/07/03 18:55:02 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Apple Computer
O43 - CFD: 2014/10/07 23:16:37 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Boilsoft
O43 - CFD: 2014/10/19 19:28:22 - [0] D -- E:\Documents and Settings\Jean Phil\Application Data\Command and Conquer 4
O43 - CFD: 2015/07/15 06:22:35 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\DAEMON Tools Lite
O43 - CFD: 2015/02/27 18:59:16 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\DigitalDJ17
O43 - CFD: 2015/04/23 10:18:03 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Downloaded Installations
O43 - CFD: 2015/08/15 12:14:03 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\DVDVideoSoft
O43 - CFD: 2014/09/19 18:02:54 - [0] D -- E:\Documents and Settings\Jean Phil\Application Data\fltk.org
O43 - CFD: 2015/07/17 03:32:54 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\GameRanger
O43 - CFD: 2015/08/15 10:48:23 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Guitar Pro 6
O43 - CFD: 2014/09/06 19:16:08 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Identities
O43 - CFD: 2014/09/06 19:39:01 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\InstallShield
O43 - CFD: 2014/09/19 13:36:57 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Leadertech
O43 - CFD: 2014/11/21 16:57:33 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Logs
O43 - CFD: 2014/09/07 17:35:32 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Macromedia
O43 - CFD: 2015/08/15 12:03:08 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\MAGIX
O43 - CFD: 2015/08/08 06:00:55 - [] SD -- E:\Documents and Settings\Jean Phil\Application Data\Microsoft
O43 - CFD: 2015/05/04 10:11:52 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Mozilla
O43 - CFD: 2014/09/27 19:46:09 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\MPC-HC
O43 - CFD: 2014/09/07 12:15:03 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Nero
O43 - CFD: 2015/08/15 12:10:57 - [0] D -- E:\Documents and Settings\Jean Phil\Application Data\Nosibay =>PUP.Optional.SPointer
O43 - CFD: 2014/09/25 15:58:04 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\NVIDIA
O43 - CFD: 2015/03/09 17:13:16 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Opera Software
O43 - CFD: 2015/08/15 13:02:25 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Real
O43 - CFD: 2015/03/26 14:13:55 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\RealNetworks
O43 - CFD: 2015/01/11 01:26:09 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Red Alert 3
O43 - CFD: 2015/07/29 21:43:53 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Simply Super Software
O43 - CFD: 2015/02/27 18:48:10 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\SongManager
O43 - CFD: 2015/04/23 10:03:52 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Sun
O43 - CFD: 2015/08/07 01:07:30 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\theHunter
O43 - CFD: 2015/08/04 16:31:24 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Unity
O43 - CFD: 2015/08/16 10:34:59 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\uTorrent
O43 - CFD: 2015/08/15 06:18:53 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\vlc
O43 - CFD: 2015/03/11 22:38:13 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\VMware
O43 - CFD: 2015/04/28 10:00:40 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Wargaming.net
O43 - CFD: 2015/08/15 22:26:11 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Windows Desktop Search
O43 - CFD: 2014/09/10 14:20:25 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Windows Search
O43 - CFD: 2014/09/07 15:21:24 - [0] D -- E:\Documents and Settings\Jean Phil\Application Data\WinRAR
O43 - CFD: 2014/11/21 17:02:32 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Wondershare
O43 - CFD: 2015/08/15 12:10:27 - [0] D -- E:\Documents and Settings\Jean Phil\Application Data\WTools
O43 - CFD: 2015/01/26 17:00:26 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\Xilisoft
O43 - CFD: 2015/08/16 10:35:36 - [] D -- E:\Documents and Settings\Jean Phil\Application Data\ZHP
O43 - CFD: 2015/07/24 08:19:19 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Activision
O43 - CFD: 2015/08/04 12:32:53 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Adobe
O43 - CFD: 2015/07/02 00:00:15 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Apple
O43 - CFD: 2015/07/02 00:01:23 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Apple Computer
O43 - CFD: 2015/07/30 02:30:13 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 2015/07/22 03:45:55 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\CEF
O43 - CFD: 2015/01/24 19:00:36 - [0] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Deployment
O43 - CFD: 2015/07/28 05:53:19 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Google
O43 - CFD: 2014/09/07 17:49:10 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Identities
O43 - CFD: 2014/12/04 16:51:06 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Logitech
O43 - CFD: 2015/08/13 18:42:33 - [] SD -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Microsoft
O43 - CFD: 2015/05/04 10:11:45 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Mozilla
O43 - CFD: 2015/03/09 17:13:19 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Opera Software
O43 - CFD: 2014/12/31 14:09:59 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Power2Go8
O43 - CFD: 2015/02/28 15:09:02 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Spoon
O43 - CFD: 2015/07/17 21:44:43 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Steam
O43 - CFD: 2015/04/23 10:16:20 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Sun
O43 - CFD: 2015/08/04 16:30:20 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Unity
O43 - CFD: 2015/03/11 13:03:13 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\VMware
O43 - CFD: 2015/01/18 00:54:08 - [0] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 2014/11/21 17:03:32 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Wondershare
O43 - CFD: 2015/08/15 12:02:00 - [] D -- E:\Documents and Settings\Jean Phil\Local Settings\Application Data\Xara
O43 - CFD: 2014/09/06 19:16:17 - [] RD -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2015/08/15 13:02:29 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\ASIO4ALL v2
O43 - CFD: 2015/07/24 05:52:14 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\CAPCOM
O43 - CFD: 2015/06/28 13:21:44 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\Diablo
O43 - CFD: 2015/08/07 04:21:02 - [] RD -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/07/17 20:37:10 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\Hero Editor
O43 - CFD: 2015/08/15 12:52:04 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\Image-Line
O43 - CFD: 2015/02/21 08:15:20 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\LinuxLive USB Creator
O43 - CFD: 2014/09/25 10:53:38 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\MagicISO
O43 - CFD: 2015/07/18 05:16:24 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\Steam
O43 - CFD: 2014/09/07 14:26:38 - [] D -- E:\Documents and Settings\Jean Phil\Menu Démarrer\Programmes\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (1) - 2s
O45 - LFCP:[MD5.422A4EC80507EB2ADB2601D4C823A2D3] 2015/08/15 12:01:01 A -- E:\WINDOWS\Prefetch\SELECTION TOOLS UPDATE.EXE-165CDCFC.pf =>PUP.Optional.Nosibay

---\\ Liste des pilotes du système (SDL) (O58) (45) - 4s
O58 - SDL:2006/07/01 23:42:58 A . (.Advanced Micro Devices - AMD Processor Driver.) -- E:\WINDOWS\System32\drivers\AmdK8.sys [43520]
O58 - SDL:2013/11/27 10:00:00 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- E:\WINDOWS\System32\drivers\athw.sys [2158848]
O58 - SDL:2012/05/10 11:02:34 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- E:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2012/05/10 11:02:34 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- E:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2008/04/12 23:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- E:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/12 23:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- E:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2008/04/12 23:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- E:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2014/09/06 19:55:26 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- E:\WINDOWS\System32\drivers\dtsoftbus01.sys [243128]
O58 - SDL:2010/07/12 14:39:26 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- E:\WINDOWS\System32\drivers\dwarusb.sys [604160]
O58 - SDL:2008/04/12 23:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- E:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2012/05/10 11:02:34 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- E:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2013/03/23 01:22:26 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- E:\WINDOWS\System32\drivers\nv4_mini.sys [12653120]
O58 - SDL:2007/07/30 11:58:54 A . (.NVIDIA Corporation - NVIDIA Networking Function Driver..) -- E:\WINDOWS\System32\drivers\NVENETFD.sys [54400]
O58 - SDL:2007/07/30 11:58:56 A . (.NVIDIA Corporation - NVIDIA Networking Bus Driver..) -- E:\WINDOWS\System32\drivers\nvnetbus.sys [22016]
O58 - SDL:2007/07/30 11:58:48 A . (.NVIDIA Corporation - NVIDIA Network Resource Manager..) -- E:\WINDOWS\System32\drivers\nvnrm.sys [886912]
O58 - SDL:2008/04/12 23:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- E:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2012/05/10 11:02:34 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- E:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2012/05/10 11:02:34 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- E:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2008/01/15 19:17:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- E:\WINDOWS\System32\drivers\RtkHDAud.sys [4652544]
O58 - SDL:2008/04/12 23:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- E:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2012/08/29 02:24:50 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- E:\WINDOWS\System32\drivers\ssudbus.sys [83168]
O58 - SDL:2012/08/29 02:24:50 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- E:\WINDOWS\System32\drivers\ssudmdm.sys [181344]
O58 - SDL:2012/05/10 11:02:34 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- E:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2012/05/10 11:02:34 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- E:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2010/04/27 17:57:22 A . (.Logitech Inc. - Logitech WingMan Virtual Bus Enumerator Dri.) -- E:\WINDOWS\System32\drivers\WmBEnum.sys [22856]
O58 - SDL:2010/04/27 15:01:26 A . (.Logitech Inc. - Logitech WingMan Hid Filter Driver.) -- E:\WINDOWS\System32\drivers\WmFilter.sys [37704]
O58 - SDL:2010/04/27 17:57:28 A . (.Logitech Inc. - Logitech WingMan Virtual Hid Device Driver.) -- E:\WINDOWS\System32\drivers\WmVirHid.sys [15048]
O58 - SDL:2010/04/27 17:57:28 A . (.Logitech Inc. - Logitech WingMan Translation Driver.) -- E:\WINDOWS\System32\drivers\WmXlCore.sys [66632]
O58 - SDL:2014/09/07 15:28:41 A . (. - ANPD (NT5) Driver.) -- E:\WINDOWS\System32\ANPD.SYS [29411]
O58 - SDL:2014/09/07 15:28:41 A . (. - ANPD (NT5) Driver.) -- E:\WINDOWS\System32\ANPD64.SYS [48640]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/12 23:00:00 A . (...) -- E:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (8) - 29s
O61 - LFC: 2015/08/10 16:04:14 A . (.Internet Web soft.) -- E:\Documents and Settings\Jean Phil\Mes documents\adobe_flash_player (1).exe [831344]
O61 - LFC: 2015/08/10 16:05:00 A . (.Internet Web soft.) -- E:\Documents and Settings\Jean Phil\Mes documents\adobe_flash_player (2).exe [831344]
O61 - LFC: 2015/08/09 00:48:34 A . (.Internet Web soft.) -- E:\Documents and Settings\Jean Phil\Mes documents\adobe_flash_player.exe [831344]
O61 - LFC: 2015/08/16 10:01:05 A . (..) -- E:\Documents and Settings\Jean Phil\Mes documents\Downloads\Megadeth - Youthanasia [1995]\Original Master Recording\Megadeth - Youthanasia.bin [529611600]
O61 - LFC: 2015/08/15 11:17:01 RA . (.MPT34M.) -- E:\Documents and Settings\Jean Phil\Mes documents\Downloads\Magix Deluxe Plus 16.French.patch.crack\magix.video.deluxe.16.plus-patch.exe [558080]
O61 - LFC: 2015/08/16 01:54:57 A . (..) -- E:\Documents and Settings\Jean Phil\Bureau\keygen.exe [202]
O61 - LFC: 2015/08/11 20:53:44 A . (..) -- E:\Documents and Settings\Jean Phil\Application Data\appdataFr2.bin [20]
O61 - LFC: 2015/08/15 06:44:10 A . (..) -- E:\Documents and Settings\Jean Phil\Application Data\appdataFr25.bin [24]

---\\ Associations Shell Spawning (O67) (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- E:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- E:\WINDOWS\system32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- E:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe

---\\ Menu de démarrage Internet (SMI) (O68) (17) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- E:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- E:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- E:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\Launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- E:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- E:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- E:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- E:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- E:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- E:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- E:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- E:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- E:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Launcher.) -- E:\Program Files\Opera\launcher.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 3s
O69 - SBI: SearchScopes [HKCU] {2AB40AB4-FF67-4FAF-839C-2C7EBA8D1FD2} [DefaultScope] - (Google) - http://www.google.com/

---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) (7) - 28s
O82 - LFC: 2014/11/23 00:14:57 A . (.Copyright © Exidous 2013.) -- E:\Documents and Settings\Jean Phil\Modèles\OneClick Root Keygen.exe [532480] =>.Crack,Keygen
O82 - LFC: 2015/07/29 22:13:37 RA . (...) -- E:\Documents and Settings\Jean Phil\Mes documents\Downloads\Network LookOut Administrator Professional 3.5.2+kegen\keygen\keygen.exe [154624] =>.Crack,Keygen
O82 - LFC: 2015/07/29 21:28:11 RA . (.Lz0.) -- E:\Documents and Settings\Jean Phil\Mes documents\Downloads\Guitar pro 6\si necessaire .en cas de probleme\keygen_thanks_to_Lz0.exe [53248] =>.Crack,Keygen
O82 - LFC: 2015/06/02 09:45:26 A . (...) -- E:\Documents and Settings\Jean Phil\Mes documents\Documents\Trojan.remover.6.8.2.keygen.by.Inferno.exe [1765073] =>.Crack,Keygen
O82 - LFC: 2014/11/25 09:46:56 A . (...) -- E:\Documents and Settings\Jean Phil\Mes documents\Documents\Nouveau dossier\Trojan.remover.6.8.2.keygen.exe [353280] =>.Crack,Keygen
O82 - LFC: 2015/08/16 01:50:25 A . (...) -- E:\Documents and Settings\Jean Phil\Local Settings\Temp\8A00\temp\Trojan.remover.6.8.2.keygen.exe [353280] =>.Crack,Keygen
O82 - LFC: 2015/08/16 01:54:57 A . (...) -- E:\Documents and Settings\Jean Phil\Bureau\keygen.exe [202] =>.Crack,Keygen

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (41) - 2s
O83 - Search Svchost Services: 6to4 (6to4) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- E:\WINDOWS\system32\6to4svc.dll [100864]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- E:\WINDOWS\system32\appmgmts.dll [176640]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- E:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- E:\WINDOWS\system32\browser.dll [78336]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- E:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- E:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- E:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- E:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- E:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- E:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- E:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- E:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- E:\WINDOWS\system32\wkssvc.dll [134144]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- E:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- E:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- E:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- E:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- E:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- E:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- E:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- E:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- E:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- E:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- E:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- E:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- E:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- E:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- E:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- E:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- E:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- E:\WINDOWS\system32\advapi32.dll [685568]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- E:\WINDOWS\system32\wbem\wmisvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- E:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- E:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- E:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- E:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- E:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- E:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- E:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- E:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- E:\WINDOWS\system32\mspmsnsv.dll [27136]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (11) - 59s
SS - Demand [2015/08/11 23:56:07] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - Auto [2009/08/27 17:09:10] [ 1253376] FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG.) - E:\Program Files\Fichiers communs\MAGIX Services\Database\bin\FABS.exe
SS - Demand [2008/08/07 11:10:02] [ 3276800] Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) . (.MAGIX®.) - E:\Program Files\Fichiers communs\MAGIX Services\Database\bin\fbserver.exe
SR - Auto [2015/04/24 14:53:18] [ 9216] (FreemakeVideoCapture) . (.Ellora Assets Corp..) - E:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
SS - Demand [2005/04/04 00:41:10] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - E:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
SR - Auto [2015/08/02 17:19:57] [ 7596230] labdbelklanchor (labdbelklanchor) . (...) - E:\Program Files\labdbelklanchor\labdbelklanchor.exe
SS - Demand [2015/08/06 07:12:17] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - E:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SR - Auto [2013/03/21 18:26:00] [ 156448] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - E:\WINDOWS\system32\nvsvc32.exe
SR - Auto [2013/01/31 07:22:47] [ 1259296] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - E:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
SR - Auto [2013/08/14 15:19:22] [ 39056] RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - E:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
SR - Auto [2015/08/14 08:00:36] [ 1198592] WajInterEnhancer Service (WajInterEnhancer Service) . (...) - E:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancerService.exe

---\\ Scan Additionnel (O88) (50) - 0s
E:\Documents and Settings\Jean Phil\Application Data\Mozilla\Firefox\Profiles\2yv4dbx8.default\searchplugins\WebSearch.xml =>PUP.Optional.SimpleSearches
E:\Documents and Settings\Jean Phil\Application Data\Mozilla\Firefox\Profiles\2yv4dbx8.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
E:\Program Files\CuTThEaPrice\ke5x5fvS6MJ8o7.dll =>PUP.Optional.Multiplug
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{568BE4BC-165B-4AC1-9591-3D525C27082A} =>PUP.Optional.Multiplug
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajInterEnhancer =>PUP.Optional.Wajam
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A2C98B47-B5F4-94AA-281D-4135416774CF} =>PUP.Optional.Multiplug
HKLM\SOFTWARE\5dba8d1b-cb26-4771-91b4-33c34ece1cb3 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\5efd2b35-0322-a7b9-5f20-e87013dd08b7 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\76d1c021-d3c2-5d0a-23f4-fb3b8de6e888 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\9fc85777-2606-dd0a-a50c-bc78f3a281f6 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\ac20d11b-dbd8-3c2e-9180-c508749cba5e =>PUP.Optional.CrossRider
HKLM\SOFTWARE\f7378ef5-3072-25f0-9f5b-9f725c1ad38a =>PUP.Optional.CrossRider
HKLM\SOFTWARE\WajInterEnhancer =>PUP.Optional.Multiplug
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\ProductSetup =>PUP.Optional.InstallCore
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajInterEnhancer =>PUP.Optional.Multiplug
E:\Program Files\AeLLlCheApPriceo =>PUP.Optional.Multiplug
E:\Program Files\AllCheapProicei =>PUP.Optional.Multiplug
E:\Program Files\CheaapMe =>PUP.Optional.Multiplug
E:\Program Files\CuTThEaPrice =>PUP.Optional.Multiplug
E:\Program Files\CutThEPereice =>PUP.Optional.Multiplug
E:\Program Files\DownSaevvE =>PUP.Optional.Multiplug
E:\Program Files\DoWnSauve =>PUP.Optional.Multiplug
E:\Program Files\DownSavve =>PUP.Optional.Multiplug
E:\Program Files\FunDeaals =>PUP.Optional.Multiplug
E:\Program Files\FUnDEals =>PUP.Optional.Multiplug
E:\Program Files\FuonDeaalS =>PUP.Optional.Multiplug
E:\Program Files\GrEatoSaVee4oU =>PUP.Optional.Multiplug
E:\Program Files\GReatSSAve4U =>PUP.Optional.Multiplug
E:\Program Files\GreATTSAve4U =>PUP.Optional.Multiplug
E:\Program Files\MinimumPPrice =>PUP.Optional.Multiplug
E:\Program Files\MinimumPRicce =>PUP.Optional.Multiplug
E:\Program Files\MinnimuMPrice =>PUP.Optional.Multiplug
E:\Program Files\NeiwSaaver =>PUP.Optional.Multiplug
E:\Program Files\NewSSaavverr =>PUP.Optional.Multiplug
E:\Program Files\NewSSaver =>PUP.Optional.Multiplug
E:\Program Files\SalePlus =>PUP.Optional.Multiplug
E:\Program Files\ShOPDriop =>PUP.Optional.Multiplug
E:\Program Files\SSalePlues =>PUP.Optional.Multiplug
E:\Program Files\Wajam =>PUP.Optional.Wajam
E:\Program Files\WajInterEnhancer =>PUP.Optional.Multiplug
E:\Program Files\youtubeadblocker =>PUP.Optional.YouTubeAdBlock
E:\Documents and Settings\All Users\Menu Démarrer\Programmes\WajInterEnhancer =>PUP.Optional.Multiplug
E:\Documents and Settings\All Users\Application Data\Block The Ads =>PUP.Optional.Multiplug
E:\Documents and Settings\All Users\Application Data\Supreme AdBlocker =>PUP.Optional.Adblocker
E:\Documents and Settings\All Users\Application Data\TheAdBlock =>PUP.Optional.TheAdBlock
E:\Documents and Settings\Jean Phil\Application Data\Nosibay =>PUP.Optional.SPointer
E:\WINDOWS\Prefetch\SELECTION TOOLS UPDATE.EXE-165CDCFC.pf =>PUP.Optional.Nosibay

---\\ Récapitulatif des éléments trouvées sur votre station (12) - 0s
http://www.nicolascoolman.fr/blog =>PUP.Optional.SimpleSearches
http://www.nicolascoolman.fr/blog =>PUP.Optional.BDYahoo
http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/blog =>PUP.Optional.YouTubeAdBlock
http://www.nicolascoolman.fr/blog =>PUP.Optional.Adblocker
http://www.nicolascoolman.fr/blog =>PUP.Optional.TheAdBlock

~ End of the scan, 45755 items in 182 seconds (1048)(7)()

Publicité


Signaler le contenu de ce document

Publicité