cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.9.28.146 Par Nicolas Coolman (2015/09/28)
~ Démarré par dell (Administrator) (2015/10/02 08:25:46)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\dell\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\dell\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v45.0.2454.101
MFIE: Mozilla Firefox 35.0.1 (x86 fr) v35.0.1
MSIE: Internet Explorer v11.0.9600.16428

---\\ Informations sur les produits Windows (4) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (1) - 3s
Windows Defender W7 (Activate)

---\\ Surveillance de Logiciels (2) - 3s
Adobe Flash Player 16 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 30 Stepping 5, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4125.06 MB (17% free)
~ System Restore: Activé (Enable)
~ System drive C: has 375 GB free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DELL-PC
~ User Name: dell
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 375 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 1s
[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2872320] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] ©
[MD5.E6CB36B85BE59095337427E853A5B65A] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2332160] ©
[MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] ©
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] ©
[MD5.492D07D79E7024CA310867B526D9636D] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [357888] ©
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] ©
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] ©
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] ©
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208] ©
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] ©
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1656680] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] ©
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] ©
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] ©
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] ©

---\\ Processus lancés (15) - 1s
[MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1468] ©
[MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1492] ©
[MD5.F54C3BDF4AEEF3186A7E71EBA51874A0] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [794328] [PID.1676] ©
[MD5.3962633B1E34EE2BE3DDAFEF4F178E6F] - (.Microsoft - novaPDF Server.) -- C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [35616] [PID.2008] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.1932] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.2576] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.2844] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5252] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5416] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5488] ©
[MD5.B39CAB9DF6B7BCDE9B27D566BAF78D3C] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe [491688] [PID.3680] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.3164] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.140] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5612] ©
[MD5.BEB274EF932F3AD40F15AE7DCD1F53DA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\dell\Downloads\ZHPDiag3.exe [1939968] [PID.3852] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (12) - 1s
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ©
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll ©
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL ©
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©

---\\ Applications lancées au démarrage du système (6) - 0s
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_9FD5ED0742D873E78F8A54709BF48770] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-586568083-1528139856-979542677-1000\..\Run: [GoogleChromeAutoLaunch_9FD5ED0742D873E78F8A54709BF48770] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (22) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (6) - 0s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe ©
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc. - BlueStacks Service.) - C:\Program Files (x86)\BlueStacks\HD-Service.exe ©
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©

---\\ Tâches planifiées en automatique (10) - 4s
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] ©
[MD5.D64F4EFE66B65FF001B8ABB8ADDEF0CB] [APT] [doPDF Update] (.Copyright © 2014.) -- C:\Program Files\Softland\novaPDF 8\Driver\UpdateApplication.exe [654336]
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] ©
O39 - APT: doPDF Update - (.Copyright © 2014.) -- C:\Windows\System32\Tasks\doPDF Update [3562]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] ©

---\\ Logiciels installés (71) - 8s
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: Moniteur de la technologie Intel® Turbo Boost - (.Intel.) [HKLM][64Bits] -- {39F4C6F9-618A-4E5B-8FB2-6BD661174E32} ©
O42 - Logiciel: novaPDF 8 Printer Driver - (.Softland.) [HKLM][64Bits] -- {48CFCB4B-0488-4711-B54E-E8E3F5929166} ©
O42 - Logiciel: Quickset64 - (.Dell Inc..) [HKLM][64Bits] -- {87CF757E-C1F1-4D22-865C-00C6950B5258} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} ©
O42 - Logiciel: NVIDIA Pilote 3D Vision 266.39 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision ©
O42 - Logiciel: NVIDIA Pilote graphique 266.39 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA Pilote audio HD : 1.1.13.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver ©
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868} ©
O42 - Logiciel: doPDF - (.Softland.) [HKLM][64Bits] -- {B80AFB51-7CD1-43F7-9D26-E496C5CD0453} ©
O42 - Logiciel: Logiciel Intel(R) PROSet/Wireless WiFi - (.Intel Corporation.) [HKLM][64Bits] -- {D16A2127-B927-4379-B153-3DEC091E4EEB} ©
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E} ©
O42 - Logiciel: Adobe Flash Player 16 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: ANDY OS - (.andyroid.net.) [HKLM][64Bits] -- ANDY OS
O42 - Logiciel: AVerMedia H339 Hybrid TV Tuner 2.2.64.69 - (.AVerMedia TECHNOLOGIES, Inc..) [HKLM][64Bits] -- AVerMedia H339 Hybrid TV Tuner ©
O42 - Logiciel: Babylon - (.Babylon.) [HKLM][64Bits] -- Babylon =>PUP.Optional.Babylon
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net ©
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks App Player ©
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ©
O42 - Logiciel: Everest Poker.fr - (...) [HKLM][64Bits] -- EverestPoker.fr
O42 - Logiciel: FileZilla Client 3.10.1.1 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone ©
O42 - Logiciel: MozBackup 1.5.1 - (.Pavel Cvrcek.) [HKLM][64Bits] -- MozBackup ©
O42 - Logiciel: Mozilla Firefox 35.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 35.0.1 (x86 fr) ©
O42 - Logiciel: Mozilla Thunderbird 38.3.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 38.3.0 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ ©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo ©
O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM][64Bits] -- PokerStars.fr ©
O42 - Logiciel: PSPad editor - (.Jan Fiala.) [HKLM][64Bits] -- PSPad editor_is1
O42 - Logiciel: Samsung ML-371x Series - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung ML-371x Series ©
O42 - Logiciel: Samsung Printer Live Update - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Printer Live Update ©
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: WinHTTrack Website Copier 3.48-21 - (.HTTrack.) [HKLM][64Bits] -- WinHTTrack Website Copier_is1 ©
O42 - Logiciel: XAMPP - (.Bitnami.) [HKLM][64Bits] -- xampp ©
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {01961AE4-2F93-408B-AAED-AC582C4F5059} ©
O42 - Logiciel: doPDF 8 - (.Softland.) [HKLM][64Bits] -- {1922fb50-7bb8-4221-8187-60436f4e3f87} ©
O42 - Logiciel: JMicron Flash Media Controller Driver - (.JMicron Technology Corp..) [HKLM][64Bits] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} ©
O42 - Logiciel: Netwaiting - (.BVRP Software, Inc.) [HKLM][64Bits] -- {3F92ABBB-6BBF-11D5-B229-002078017FBF} ©
O42 - Logiciel: Qualcomm Gobi 2000 Package for Dell - (.QUALCOMM.) [HKLM][64Bits] -- {5030C973-F5BA-4432-860C-A3DA77BFEB05} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: Poedit - (.Vaclav Slavik.) [HKLM][64Bits] -- {68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1 ©
O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701} ©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: AccelerometerP11 - (.STMicroelectronics.) [HKLM][64Bits] -- {87434D51-51DB-4109-B68F-A829ECDCF380} ©
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Ciel Compta 18.0 - (.Ciel.) [HKLM][64Bits] -- {A094E2AD-FD66-497A-AC31-59CC71A2DA11} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} ©
O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: Complete Website Downloader - (.RebrandSoftware.) [HKLM][64Bits] -- {BA6C97BE-9951-9048-2835-D986CB290215}_is1
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {C779648B-410E-4BBA-B75B-5815BCEFE71D} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (107) - 8s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\Adobee
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Avanquest
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\BVRP Software, Inc
HKLM\SOFTWARE\Wow6432Node\Citrix
HKLM\SOFTWARE\Wow6432Node\Dell Computer Corporation
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\EverestPoker.fr
HKLM\SOFTWARE\Wow6432Node\FileZilla Client
HKLM\SOFTWARE\Wow6432Node\freefallprotection
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\ManageableUpdatePackage
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Notepad++
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\PowerPivot
HKLM\SOFTWARE\Wow6432Node\PTECH
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\RebrandSoftware
HKLM\SOFTWARE\Wow6432Node\Reg
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\Sage
HKLM\SOFTWARE\Wow6432Node\Samsung
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\STMicroelectronics
HKLM\SOFTWARE\Wow6432Node\TELINTRANS
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinHTTrack Website Copier
HKLM\SOFTWARE\Wow6432Node\WUW
HKLM\SOFTWARE\Wow6432Node\xampp
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Avanquest
HKCU\SOFTWARE\Babylon =>PUP.Optional.Babylon
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\BugSplat
HKCU\SOFTWARE\Carambis
HKCU\SOFTWARE\Citrix
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\EverestPoker.fr
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel Corporation
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\Mozilla Backup
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\PSPad
HKCU\SOFTWARE\Quadratus
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\redsn0w
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SimonTatham
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Softland
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SourceForge
HKCU\SOFTWARE\SSPrint
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Telintrans
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Vaclav Slavik
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Waves Audio
HKCU\SOFTWARE\WinHTTrack Website Copier
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe

---\\ Contenu des dossiers Programmes (231) - 12s
O43 - CFD: 2014/09/27 12:17:27 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2014/09/27 14:12:06 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2014/12/22 22:10:28 - [0] D -- C:\Program Files (x86)\Avanquest
O43 - CFD: 2014/09/26 18:41:29 - [] D -- C:\Program Files (x86)\AVerMedia
O43 - CFD: 2015/04/12 13:29:39 - [] D -- C:\Program Files (x86)\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/10/02 08:04:40 - [] D -- C:\Program Files (x86)\Battle.net
O43 - CFD: 2015/03/11 09:53:54 - [] D -- C:\Program Files (x86)\BlueStacks
O43 - CFD: 2014/09/29 10:45:12 - [] D -- C:\Program Files (x86)\Ciel
O43 - CFD: 2014/09/30 10:02:42 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 2014/09/30 09:37:14 - [] D -- C:\Program Files (x86)\Citrix
O43 - CFD: 2015/09/10 07:50:13 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/09/08 16:24:49 - [] D -- C:\Program Files (x86)\Complete Website Downloader
O43 - CFD: 2014/10/09 12:55:23 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 2014/09/30 10:28:24 - [] D -- C:\Program Files (x86)\Dell
O43 - CFD: 2015/02/18 09:36:27 - [] D -- C:\Program Files (x86)\Emsisoft Anti-Malware
O43 - CFD: 2015/05/27 15:01:06 - [] D -- C:\Program Files (x86)\Everest Poker.fr
O43 - CFD: 2015/03/02 09:19:27 - [] D -- C:\Program Files (x86)\FileZilla FTP Client
O43 - CFD: 2014/09/26 19:03:34 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/09/30 11:21:15 - [] D -- C:\Program Files (x86)\Hearthstone
O43 - CFD: 2014/09/30 10:02:46 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2014/09/30 10:35:03 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2014/10/03 10:25:24 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/09/27 14:13:31 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2014/09/26 18:43:46 - [] D -- C:\Program Files (x86)\JMicron
O43 - CFD: 2015/02/10 20:53:30 - [0] D -- C:\Program Files (x86)\McAfee Security Scan
O43 - CFD: 2014/09/26 19:47:00 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2014/09/26 19:46:52 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/06/23 16:03:15 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2014/09/26 19:49:33 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2014/09/26 20:14:33 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2014/09/26 19:56:54 - [] D -- C:\Program Files (x86)\MozBackup
O43 - CFD: 2015/01/27 11:54:04 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/02/08 14:10:48 - [0] D -- C:\Program Files (x86)\Mozilla Firefox.bak
O43 - CFD: 2015/10/01 12:45:24 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/10/01 07:54:42 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2014/09/30 10:12:10 - [] D -- C:\Program Files (x86)\Netwaiting
O43 - CFD: 2014/10/29 13:34:43 - [] D -- C:\Program Files (x86)\Notepad++
O43 - CFD: 2014/09/30 10:12:10 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/03/02 10:40:27 - [] D -- C:\Program Files (x86)\Poedit
O43 - CFD: 2015/05/23 15:50:35 - [] D -- C:\Program Files (x86)\PokerStars.FR
O43 - CFD: 2014/10/03 13:19:51 - [] D -- C:\Program Files (x86)\PSPad editor
O43 - CFD: 2014/09/30 10:12:10 - [] D -- C:\Program Files (x86)\QCM20QDriver
O43 - CFD: 2014/09/30 10:02:58 - [] D -- C:\Program Files (x86)\QUALCOMM
O43 - CFD: 2014/09/26 18:43:01 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/02/08 15:05:55 - [] D -- C:\Program Files (x86)\Safari
O43 - CFD: 2014/09/27 13:45:29 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2014/09/27 13:25:41 - [] D -- C:\Program Files (x86)\SamsungPrinterLiveUpdate
O43 - CFD: 2014/09/27 13:17:15 - [] D -- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
O43 - CFD: 2015/09/10 07:50:13 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2014/12/17 12:22:06 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2014/09/26 18:42:07 - [] D -- C:\Program Files (x86)\STMicroelectronics
O43 - CFD: 2014/09/28 11:08:16 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2014/09/26 19:21:04 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2014/10/03 10:25:00 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2014/09/26 22:17:56 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2014/09/26 22:17:56 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2014/09/26 22:17:56 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2014/09/26 22:17:57 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/09/08 16:57:12 - [] D -- C:\Program Files (x86)\WinHTTrack
O43 - CFD: 2014/09/26 17:40:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/04/12 13:29:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/03/31 12:15:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 2015/02/01 19:27:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 60-Second Virus Scanner
O43 - CFD: 2015/03/11 09:53:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 2014/10/09 13:20:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ciel
O43 - CFD: 2015/09/08 16:24:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Complete Website Downloader
O43 - CFD: 2015/04/16 18:38:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 8
O43 - CFD: 2014/09/27 11:28:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Expeditor Inet
O43 - CFD: 2015/03/02 09:19:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 2014/09/26 17:40:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/09/30 10:12:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/03/31 12:26:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
O43 - CFD: 2014/09/30 10:12:14 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/09/10 07:56:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
O43 - CFD: 2014/09/27 14:13:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/09/26 19:50:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2015/06/23 16:03:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2014/09/26 19:56:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup
O43 - CFD: 2014/09/30 10:12:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Netwaiting
O43 - CFD: 2014/10/29 13:34:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 2014/09/30 10:12:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/05/23 15:50:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.FR
O43 - CFD: 2014/10/03 13:19:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor
O43 - CFD: 2014/09/27 13:17:18 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
O43 - CFD: 2015/09/10 07:50:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/02/10 20:53:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2014/12/16 15:20:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2010/11/21 09:16:41 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2014/09/26 19:21:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2014/09/26 20:39:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/06/27 09:24:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP
O43 - CFD: 2014/09/27 14:13:31 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2014/09/27 12:37:30 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/09/27 14:12:04 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2014/09/27 14:12:57 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/09/04 21:23:45 - [] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/03/31 12:07:52 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 2015/01/24 12:35:56 - [] D -- C:\ProgramData\BDLogging
O43 - CFD: 2015/02/01 19:27:51 - [] D -- C:\ProgramData\Bitdefender
O43 - CFD: 2015/03/31 12:15:50 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2015/03/11 09:53:59 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2015/03/11 10:18:43 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2014/09/26 17:44:38 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2014/09/29 10:45:25 - [] D -- C:\ProgramData\Ciel
O43 - CFD: 2014/09/30 09:37:37 - [] D -- C:\ProgramData\Citrix
O43 - CFD: 2014/09/26 19:45:27 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2014/10/07 17:15:09 - [] D -- C:\ProgramData\Dell
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/09/26 18:15:56 - [] D -- C:\ProgramData\Downloaded Installations
O43 - CFD: 2015/02/12 12:44:15 - [] D -- C:\ProgramData\Emsisoft
O43 - CFD: 2014/09/26 17:44:38 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2014/09/30 10:03:29 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2014/09/26 18:16:32 - [] D -- C:\ProgramData\MacheenService
O43 - CFD: 2015/01/24 17:46:09 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/02/08 15:23:36 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2014/09/26 17:44:38 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/09/08 16:25:53 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2014/12/04 13:26:18 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2014/09/26 17:44:38 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2014/09/26 19:47:39 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/06/08 11:10:05 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2014/09/26 18:45:33 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/04/16 18:37:01 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2014/09/26 18:31:01 - [] D -- C:\ProgramData\QUALCOMM
O43 - CFD: 2014/09/26 19:49:25 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/04/16 18:36:50 - [] D -- C:\ProgramData\regid.2008-09.org.wixtoolset
O43 - CFD: 2014/09/27 12:13:44 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 2014/09/27 12:50:18 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 2015/09/08 16:25:02 - [] D -- C:\ProgramData\Save Data
O43 - CFD: 2015/09/10 07:50:15 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/04/16 18:38:12 - [] D -- C:\ProgramData\Softland
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2014/09/27 12:17:31 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2014/09/27 14:12:57 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2014/11/24 10:42:33 - [] D -- C:\Program Files (x86)\Common Files\Avanquest Software
O43 - CFD: 2015/03/31 12:26:45 - [0] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment
O43 - CFD: 2014/10/09 13:20:16 - [] D -- C:\Program Files (x86)\Common Files\Ciel
O43 - CFD: 2014/09/30 10:02:43 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2014/10/01 19:21:59 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2014/10/09 13:20:16 - [] D -- C:\Program Files (x86)\Common Files\MSSoap
O43 - CFD: 2014/09/30 10:35:08 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/09/10 07:50:13 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2014/12/16 15:20:26 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/01/24 12:09:32 - [0] D -- C:\Program Files (x86)\Common Files\SWF Studio
O43 - CFD: 2014/10/03 10:25:28 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/01/24 12:40:35 - [0] SHD -- C:\Users\dell\AppData\Roaming\.#
O43 - CFD: 2015/01/19 17:46:32 - [] D -- C:\Users\dell\AppData\Roaming\Adobe
O43 - CFD: 2015/03/15 17:03:08 - [] D -- C:\Users\dell\AppData\Roaming\Apple Computer
O43 - CFD: 2015/04/12 18:20:05 - [] D -- C:\Users\dell\AppData\Roaming\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/03/31 12:19:03 - [] D -- C:\Users\dell\AppData\Roaming\Battle.net
O43 - CFD: 2014/09/27 12:06:49 - [] D -- C:\Users\dell\AppData\Roaming\Carambis
O43 - CFD: 2015/09/08 16:53:44 - [] D -- C:\Users\dell\AppData\Roaming\Complete Website Downloader
O43 - CFD: 2014/09/26 19:45:35 - [] D -- C:\Users\dell\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2014/09/27 12:56:40 - [] D -- C:\Users\dell\AppData\Roaming\driver
O43 - CFD: 2015/10/01 22:03:42 - [] D -- C:\Users\dell\AppData\Roaming\FileZilla
O43 - CFD: 2014/09/26 17:45:03 - [] D -- C:\Users\dell\AppData\Roaming\Identities
O43 - CFD: 2014/09/26 18:21:27 - [] D -- C:\Users\dell\AppData\Roaming\InstallShield
O43 - CFD: 2014/09/30 10:03:37 - [] D -- C:\Users\dell\AppData\Roaming\Intel
O43 - CFD: 2014/09/26 18:22:50 - [] D -- C:\Users\dell\AppData\Roaming\Intel Corporation
O43 - CFD: 2014/09/27 14:15:28 - [] D -- C:\Users\dell\AppData\Roaming\LolClient
O43 - CFD: 2014/09/26 19:28:42 - [] D -- C:\Users\dell\AppData\Roaming\Macromedia
O43 - CFD: 2010/11/21 09:16:41 - [0] D -- C:\Users\dell\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/09/08 17:58:30 - [] SD -- C:\Users\dell\AppData\Roaming\Microsoft
O43 - CFD: 2015/01/14 10:44:26 - [] D -- C:\Users\dell\AppData\Roaming\Mozilla
O43 - CFD: 2014/10/30 15:18:57 - [] D -- C:\Users\dell\AppData\Roaming\Notepad++
O43 - CFD: 2015/03/02 10:47:55 - [] D -- C:\Users\dell\AppData\Roaming\Poedit
O43 - CFD: 2014/10/03 13:30:11 - [] D -- C:\Users\dell\AppData\Roaming\PSpad
O43 - CFD: 2015/01/24 12:27:31 - [0] D -- C:\Users\dell\AppData\Roaming\QuickScan
O43 - CFD: 2015/01/25 16:20:04 - [] D -- C:\Users\dell\AppData\Roaming\redsn0w
O43 - CFD: 2015/10/02 08:12:42 - [] D -- C:\Users\dell\AppData\Roaming\Skype
O43 - CFD: 2015/04/16 18:39:57 - [] D -- C:\Users\dell\AppData\Roaming\Softland
O43 - CFD: 2014/09/26 19:47:44 - [] D -- C:\Users\dell\AppData\Roaming\Thunderbird
O43 - CFD: 2014/11/24 11:09:16 - [] D -- C:\Users\dell\AppData\Roaming\uTorrent
O43 - CFD: 2015/09/24 08:48:34 - [] D -- C:\Users\dell\AppData\Roaming\vlc
O43 - CFD: 2014/09/26 21:37:35 - [] D -- C:\Users\dell\AppData\Roaming\WinRAR
O43 - CFD: 2015/10/02 08:25:59 - [] D -- C:\Users\dell\AppData\Roaming\ZHP
O43 - CFD: 2015/02/08 15:23:44 - [] D -- C:\Users\dell\AppData\Local\Adobe
O43 - CFD: 2014/09/27 14:12:09 - [] D -- C:\Users\dell\AppData\Local\Apple
O43 - CFD: 2015/03/14 18:20:01 - [] D -- C:\Users\dell\AppData\Local\Apple Computer
O43 - CFD: 2014/09/26 17:44:47 - [0] SHD -- C:\Users\dell\AppData\Local\Application Data
O43 - CFD: 2015/02/17 12:35:11 - [] D -- C:\Users\dell\AppData\Local\Apps
O43 - CFD: 2015/04/12 13:30:27 - [] D -- C:\Users\dell\AppData\Local\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/10/02 08:04:56 - [] D -- C:\Users\dell\AppData\Local\Battle.net
O43 - CFD: 2015/03/31 14:03:18 - [] D -- C:\Users\dell\AppData\Local\Blizzard
O43 - CFD: 2015/03/31 12:16:02 - [] D -- C:\Users\dell\AppData\Local\Blizzard Entertainment
O43 - CFD: 2015/03/11 09:53:20 - [] D -- C:\Users\dell\AppData\Local\Bluestacks
O43 - CFD: 2014/09/26 18:17:34 - [] D -- C:\Users\dell\AppData\Local\BVRP Software
O43 - CFD: 2014/09/30 09:37:11 - [] D -- C:\Users\dell\AppData\Local\Citrix
O43 - CFD: 2014/09/26 18:15:45 - [] D -- C:\Users\dell\AppData\Local\Dell
O43 - CFD: 2015/06/09 09:45:16 - [0] D -- C:\Users\dell\AppData\Local\Deployment
O43 - CFD: 2014/10/27 15:11:26 - [0] D -- C:\Users\dell\AppData\Local\Diagnostics
O43 - CFD: 2015/09/27 10:50:06 - [0] D -- C:\Users\dell\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2014/09/29 10:31:23 - [] D -- C:\Users\dell\AppData\Local\GGEmpire
O43 - CFD: 2015/07/31 15:44:25 - [] D -- C:\Users\dell\AppData\Local\Google
O43 - CFD: 2014/09/26 17:44:47 - [0] SHD -- C:\Users\dell\AppData\Local\Historique
O43 - CFD: 2015/01/22 17:09:11 - [] D -- C:\Users\dell\AppData\Local\Macromedia
O43 - CFD: 2015/06/08 16:37:36 - [] D -- C:\Users\dell\AppData\Local\Microsoft
O43 - CFD: 2014/09/26 19:46:53 - [0] D -- C:\Users\dell\AppData\Local\Microsoft Help
O43 - CFD: 2015/01/14 10:45:23 - [] D -- C:\Users\dell\AppData\Local\Mozilla
O43 - CFD: 2014/09/29 12:36:55 - [] D -- C:\Users\dell\AppData\Local\NetReady
O43 - CFD: 2015/06/04 09:18:34 - [] D -- C:\Users\dell\AppData\Local\PokerStars.FR
O43 - CFD: 2014/09/26 18:56:30 - [] D -- C:\Users\dell\AppData\Local\Programs
O43 - CFD: 2014/09/26 20:23:31 - [] D -- C:\Users\dell\AppData\Local\Skype
O43 - CFD: 2015/04/16 18:46:15 - [] D -- C:\Users\dell\AppData\Local\Startup
O43 - CFD: 2015/10/02 08:26:10 - [] D -- C:\Users\dell\AppData\Local\Temp
O43 - CFD: 2014/09/26 17:44:47 - [0] SHD -- C:\Users\dell\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/09/26 19:47:45 - [] D -- C:\Users\dell\AppData\Local\Thunderbird
O43 - CFD: 2014/09/26 17:44:56 - [0] D -- C:\Users\dell\AppData\Local\VirtualStore
O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/10/03 10:29:00 - [] RD -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/02/08 15:08:57 - [] D -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
O43 - CFD: 2014/09/27 11:28:57 - [0] D -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Expeditor Inet
O43 - CFD: 2015/02/08 15:08:42 - [] D -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/10/29 13:34:41 - [0] D -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 2015/05/23 15:50:22 - [0] D -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PokerStars.FR
O43 - CFD: 2014/10/03 10:29:00 - [] RD -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2014/09/26 20:39:19 - [] D -- C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll ©

---\\ Enumération des clés StartupReg (16) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe ©
O53 - SMSR:HKLM\...\startupreg\Babylon Client [Key] . (.Babylon Software Ltd. - Babylon Information Tool.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Optional.Babylon
O53 - SMSR:HKLM\...\startupreg\BlueStacks Agent [Key] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe ©
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe ©
O53 - SMSR:HKLM\...\startupreg\FreeFallProtection [Key] . (.Copyright (C) 2008 - FF_Protection MFC Application.) -- C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe
O53 - SMSR:HKLM\...\startupreg\GoogleChromeAutoLaunch_9FD5ED0742D873E78F8A54709BF48770 [Key] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O53 - SMSR:HKLM\...\startupreg\IAStorIcon [Key] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe ©
O53 - SMSR:HKLM\...\startupreg\InstallerLauncher [Key] . (...) -- C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\IntelWireless [Key] . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe ©
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe ©
O53 - SMSR:HKLM\...\startupreg\NVHotkey [Key] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- rundll32.exe (.not file.) ©
O53 - SMSR:HKLM\...\startupreg\pdiface [Key] . (...) -- C:\Program Files\Bitdefender\60-Second Virus Scanner\pdiface.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\QuickSet [Key] . (.Dell Inc. - QuickSet.) -- C:\Program Files\Dell\QuickSet\quickset.exe ©
O53 - SMSR:HKLM\...\startupreg\RtHDVBg [Key] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe ©
O53 - SMSR:HKLM\...\startupreg\RTHDVCPL [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe ©
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (.Synaptics Incorporated - .) -- C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) ©

---\\ Liste des pilotes du système (64) - 4s
O58 - SDL:2015/01/26 17:10:27 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\07B03C18.sys [129752] ©
O58 - SDL:2010/08/20 11:05:18 A . (.ST Microelectronics - Accelerometer Port I/O.) -- C:\Windows\System32\drivers\Accelern.sys [27760] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] ©
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2014/10/09 12:55:23 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064] ©
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] ©
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2009/09/17 12:54:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] ©
O58 - SDL:2010/03/03 19:51:40 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [540696] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] ©
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2010/03/26 15:03:20 A . (.JMicron Technology Corporation - JMicron JMB38X Flash Media Controller Drive.) -- C:\Windows\System32\drivers\jmcr.sys [160880] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2014/07/15 10:04:38 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\Windows\System32\drivers\netaapl64.sys [23040] ©
O58 - SDL:2010/05/31 12:05:06 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETw5s64.sys [7689216] ©
O58 - SDL:2013/11/26 13:51:42 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwsw00.sys [11530992] ©
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2010/09/30 21:00:06 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [80384] ©
O58 - SDL:2010/09/30 21:00:06 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [180736] ©
O58 - SDL:2010/11/12 04:40:50 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [155752] ©
O58 - SDL:2010/12/24 08:26:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [13035880] ©
O58 - SDL:2010/11/21 05:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] ©
O58 - SDL:2010/11/21 05:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] ©
O58 - SDL:2010/07/02 03:46:56 A . (.Quanta Computer - Win7 QicFilterDriver-64Bits.) -- C:\Windows\System32\drivers\qicflt.sys [29288]
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2010/06/23 17:10:56 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [344680] ©
O58 - SDL:2011/02/18 17:59:46 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2748520] ©
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2009/07/14 02:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] ©
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2010/12/08 17:36:28 N . (.Samsung Electronics - Port Contention Driver.) -- C:\Windows\System32\drivers\SSPORT.SYS [11576] ©
O58 - SDL:2010/08/20 11:05:12 A . (.ST Microelectronics - Disk Class Filter Driver for Accelerometer.) -- C:\Windows\System32\drivers\stdcfltn.sys [21616] ©
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2010/07/15 17:54:20 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [1381936] ©
O58 - SDL:2009/11/02 12:48:02 A . (...) -- C:\Windows\System32\drivers\TurboB.sys [13784]
O58 - SDL:2014/07/28 14:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 43s
O61 - LFC: 2015/09/24 09:50:17 A . (..) -- C:\Users\dell\AppData\Roaming\Microsoft\UProof\CMAdj.12.bin [14]
O61 - LFC: 2015/10/02 08:15:36 A . (..) -- C:\Users\dell\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\SysWOW64\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (16) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©

---\\ Recherche d'infection sur les navigateurs (1) - 4s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (32) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [680960] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2477536] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ©

---\\ Liste des exceptions du parefeu Windows (13) - 2s
O87 - FAEL: "{00A60D2B-894C-4C6F-AAC6-BD0174651475}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{BD892ACF-A88B-4986-BA73-99F3B4A78B1C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{370E34E5-0545-47B4-B96A-B940FDEE49B8}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{44FDDA4A-73C1-4F1B-AD65-CBB6FF6EF71F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{66934567-86DF-4D2E-BC5C-33078C3550B2}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{F8C19AA9-00F1-4CDD-8718-4171C79245D9}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{B04FC7B7-AE0A-4045-B5F2-8804EBBAFF40}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\dell\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{A06221CF-1FFA-4673-8F48-51605AA98425}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\dell\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "TCP Query User{C7581951-370E-41F6-B85F-67D89717C58F}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" [In-None-P6-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe (.not file.)
O87 - FAEL: "UDP Query User{70BED345-4090-4DC5-A964-4DED400BBF09}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" [In-None-P17-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe (.not file.)
O87 - FAEL: "TCP Query User{75D479E4-9291-4791-9719-46028C929566}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" [In-None-P6-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe (.not file.)
O87 - FAEL: "UDP Query User{CA93E8E7-FE47-41B6-9D24-62DCADC80FFC}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" [In-None-P17-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe (.not file.)
O87 - FAEL: "{71567D86-18A2-4140-A3AF-637807602C0D}" [In-None-P17-TRUE] .(.Copyright (C) 2005 by Achal Dhir - Wireless PAN DHCP and DNS Server.) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (23) - 13s

SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Disabled [2009/11/17 18:14:26] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe ©
SR - Auto [2014/08/28 11:06:06] [ 43336] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe ©
SS - Auto [2015/02/19 14:51:56] [ 409304] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe ©
SS - Disabled [2015/02/19 14:52:30] [ 388824] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe ©
SR - Auto [2015/02/19 14:54:32] [ 794328] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe ©
SS - Disabled [2010/03/05 10:26:38] [ 1425168] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe ©
SS - Auto [2015/08/29 08:37:17] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/08/29 08:37:17] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Disabled [2010/03/03 20:16:06] [ 13336] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
SS - Disabled [2014/09/01 04:47:54] [ 640840] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe ©
SS - Disabled [2010/07/01 12:10:22] [ 325656] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Disabled [2015/09/30 14:45:41] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SS - Disabled [2010/03/05 10:07:58] [ 340240] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
SS - Disabled [2010/12/23 20:10:40] [ 993896] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe ©
SS - Disabled [2010/01/14 07:30:16] [ 330488] Qualcomm Gobi 2000 Download Service (Dell) (QDLService2kDell) . (.QUALCOMM, Inc..) - C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exe
SS - Disabled [2010/03/05 10:06:22] [ 831760] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe ©
SS - Auto [2015/07/09 13:14:04] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SS - Disabled [2014/09/16 23:10:54] [ 569024] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe ©
SS - Disabled [2010/12/23 18:48:02] [ 378984] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©
SS - Disabled [2009/11/02 12:48:18] [ 126352] TurboBoost (TurboBoost) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe ©
SS - Disabled [2010/07/01 12:10:26] [ 2533400] Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Recherche de clés de registre Tracing (1) - 1s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Babylon_RASAPI32 =>PUP.Optional.Babylon

---\\ Scan Additionnel (10) - 0s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKCU\SOFTWARE\Babylon =>PUP.Optional.Babylon
C:\Program Files (x86)\Babylon =>PUP.Optional.Babylon
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Babylon =>PUP.Optional.Babylon
C:\ProgramData\Babylon =>PUP.Optional.Babylon
C:\Users\dell\AppData\Roaming\Babylon =>PUP.Optional.Babylon
C:\Users\dell\AppData\Local\Babylon =>PUP.Optional.Babylon
C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Babylon_RASAPI32 =>PUP.Optional.Babylon

---\\ Récapitulatif des éléments trouvées sur votre station (2) - 0s
http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico

~ End of the scan, 28072 items in 117 seconds (800)(0)()

Publicité


Signaler le contenu de ce document

Publicité