cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.11.9.165 Par Nicolas Coolman (2015/11/09)
~ Démarré par Django (Administrator) (2015/11/10 20:41:01)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Django\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Django\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v46.0.2490.80
MSIE: Internet Explorer v11.0.9600.18059

---\\ Informations sur les produits Windows (10) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : HYRR2
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (3) - 1s
Avast Internet Security v11.1.2241
Malwarebytes Anti-Malware version 2.2.0.1024
Windows Defender W7 (Activate)

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.02

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 19 ActiveX
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8322.724 MB (71% free)
System Restore: Activé (Enable)
System drive C: has 11 GB () free of 63 GB =>Alerte espace disque inférieur à 20 Go

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DJANGO-PC
~ User Name: Django
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 11 GB free of 63 GB (System)
~ Drive G: has 66 GB free of 889 GB

---\\ Etat du Centre de Sécurité Windows (13) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (26) - 1s
[MD5.AC4C51EB24AA95B77F705AB159189E24] - 21/11/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2872320] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] ©
[MD5.BD06D875FB79E92DAF724C91DE743AFA] - 16/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2487808] ©
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] ©
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] ©
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] ©
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] ©
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.FA886682CFC5D36718D3E436AACF10B9] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497152] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] ©
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] ©
[MD5.ACB6782973BD93760D597FC7BB37E692] - 29/09/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] ©
[MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] ©
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] ©
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] ©
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] ©
[MD5.70988118145F5F10EF24720B97F35F65] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] ©
[MD5.DF8126BD41180351A093A3AD2FC8903B] - 25/02/2011 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [296320] ©

---\\ Liste des services NT non Microsoft et non désactivés (15) - 0s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe ©
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - G:\Hamachi\hamachi-2.exe ©
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe ©
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - G:\Malwarebytes Anti-Malware\mbamservice.exe ©
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe ©
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) - C:\Windows\System32\nvvsvc.exe ©
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe (.not file.)
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©

---\\ Tâches planifiées en automatique (44) - 4s
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] ©
[MD5.280A526E8111AC6A5BCC1A059E1E0340] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.D4F602B1F775B5827932D3C5B04A3FD2] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3372032] =>HackTool.AutoKMS
[MD5.8A6D1C082176864414E85ACF6696331D] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1510320] ©
[MD5.9A1F3AEA8D61AA67D90F1B336C00984E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [5496600] ©
[MD5.5168ABDED2C163FEC3699C6BF0723AB2] [APT] [GlaryInitialize 5] (.Glarysoft Ltd.) -- G:\LOGICIELS\Glary Utilities 5\Initialize.exe [118048] ©
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.E1F5833D38EF98EC19C5DE6436A5F969] [APT] [GU5SkipUAC] (.Glarysoft Ltd.) -- G:\LOGICIELS\Glary Utilities 5\Integrator.exe [889632] ©
[MD5.00000000000000000000000000000000] [APT] [klcp_update] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe (.not file.) [0]
[MD5.45ADCD37376140892745F157552A7051] [APT] [SafeZone scheduled Autoupdate 1447182616] (.Avast Software.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [728568] ©
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{2B31EBB7-AFBA-4835-936F-5996490F6166}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.00000000000000000000000000000000] [APT] [{34800D26-8AA1-4C5B-9394-E089DF94C88C}] (...) -- G:\007 Legends\Bond2012PC.exe (.not file.) [0]
[MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{3492F1AC-4225-4C15-A158-D5969AC79452}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044]
[MD5.00000000000000000000000000000000] [APT] [{3C26FBA7-3039-4974-8054-CC0CEBEE81BC}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0]
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{4B8173D8-AC76-40FF-A818-35667D9A0F9A}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{5957CE7A-A474-432A-893D-4F552DE16C19}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.00000000000000000000000000000000] [APT] [{6B9C8B29-75FF-4A39-B953-C199DE765A67}] (...) -- G:\007 Legends\Bond2012PC.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{741ACFC2-53FA-433D-A5AB-A0B9AB142B12}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0]
[MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{763DFE52-2447-41B6-BD93-D205C74CBDC4}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044]
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{7FDCE66E-1098-45E7-948F-45D9BF79EAD6}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{887D0CAD-E8A4-4AE6-81CB-0543DBB901EB}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{8A8A0B6B-6A44-429B-860F-98CDE8AB6BEC}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{9E7C83A5-17EA-40A8-A0B0-ABF792F5691F}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044]
[MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{B0D8D0F6-18FA-4E72-853B-62A3648B3BA1}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] ©
[MD5.00000000000000000000000000000000] [APT] [{BAB54B0E-BE97-4214-A564-2B2B3A81AC9D}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0]
[MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{C879F00D-6B68-4EBF-8DF9-D32C17FF4017}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044]
[MD5.00000000000000000000000000000000] [APT] [{CF24858E-52D0-402F-ADA1-D0DFBE454823}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] ©
[MD5.47517BCEA6249F5C32589003C477BABE] [APT] [ASUS\ASUS Product Register Service] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1134752] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] ©
O39 - APT: AutoKMS - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMS [3490] =>HackTool.AutoKMS
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] ©
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2774] ©
O39 - APT: GlaryInitialize 5 - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GlaryInitialize 5 [3296] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] ©
O39 - APT: GU5SkipUAC - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GU5SkipUAC [2956] ©
O39 - APT: klcp_update - (...) -- C:\Windows\System32\Tasks\klcp_update [3684]
O39 - APT: SafeZone scheduled Autoupdate 1447182616 - (.Avast Software.) -- C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1447182616 [3060] ©

---\\ Processus lancés (17) - 1s
[MD5.945697058B2A6EBB3155FB6BB3399F57] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [109520] [PID.1576] ©
[MD5.199D3FA1AF32FCE46A38E8EB64FFF520] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416] [PID.2000] ©
[MD5.2F722690B624C9AD160EDC24DCA880DF] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376] [PID.1212] ©
[MD5.DF4BCFFB97625D6B44E8554BF83FCCA6] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2820424] [PID.3656] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5144] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5620] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.500] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.1504] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.3312] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5860] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.3672] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5076] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5216] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5412] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.2916] ©
[MD5.186FA9DCE5F1589FCEA9FADEF2A0FEDA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Django\AppData\Roaming\ZHP\ZHPDiag3.exe [1967104] [PID.2784] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.4524] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (8) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] [] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] [] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [haocganpkafanhkfldbbmhcpaelmkejg] [] __MSG_themeName__
G2 - GCE: Preference [User Data\Default] [ldgfbffkinooeloadekpmfoklnobpien] [] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] [] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] [] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pmkffmgahaepmhkhkblhopnpleeikokc] [] Connected Mind

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 0s
P2 - FPN: [HKLM] [@microsoft.com/Lync,version=15.0] - (.Microsoft.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (3) - 0s
0
0

~ Nombre lignes détournées 0

881 (Hosts file redirected)

---\\ Browser Helper Object de navigateur (BHO) (4) - 0s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll ©
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll ©
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL ©
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©

---\\ Applications lancées au démarrage du système (11) - 0s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe ©
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ©
O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- G:\LOGICIELS\Glary Utilities 5\StartupManager.exe ©
O4 - HKCU\..\Run: [weiynlzeh] rundll32 "C:\Users\Django\AppData\Roaming\mlang2.dll",DAKVD (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-528012224-1398060802-104318396-1000\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- G:\LOGICIELS\Glary Utilities 5\StartupManager.exe ©
O4 - HKUS\S-1-5-21-528012224-1398060802-104318396-1000\..\Run: [weiynlzeh] rundll32 "C:\Users\Django\AppData\Roaming\mlang2.dll",DAKVD (.not file.)

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 8.8.8.8
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254

---\\ Protocole additionnel (22) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL ©

---\\ Logiciels installés (101) - 6s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {C788B026-20BD-4E96-B698-533F1D6C5013} ©
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} ©
O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824161310} ©
O42 - Logiciel: Age of Empires III - (.Microsoft Game Studios.) [HKLM][64Bits] -- InstallShield_{485775E8-AEB8-46BD-922B-242879E03DD5} ©
O42 - Logiciel: Age of Empires III - The Asian Dynasties - (.Microsoft Game Studios.) [HKLM][64Bits] -- InstallShield_{C43C1415-3DFC-4089-9A32-0BECF28A6046} ©
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} ©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL ©
O42 - Logiciel: Asmedia USB Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} ©
O42 - Logiciel: Assassin's Creed IV Black Flag - (...) [HKLM][64Bits] -- {E189015C-5812-4648-920E-F4CA6BE4B109}_is1
O42 - Logiciel: ASUS GPU Tweak - (.ASUSTek COMPUTER INC..) [HKLM][64Bits] -- InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1} ©
O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {C87D79F6-F813-4812-B7A9-CCCAAB8B1188} ©
O42 - Logiciel: Audacity 2.0.6 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 ©
O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM][64Bits] -- Avast ©
O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF} ©
O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins ©
O42 - Logiciel: Call of Duty: Modern Warfare 2 - (.Infinity Ward.) [HKLM][64Bits] -- Steam App 10180
O42 - Logiciel: Call of Duty: Modern Warfare 2 - Multiplayer - (.Infinity Ward.) [HKLM][64Bits] -- Steam App 10190
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner ©
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ©
O42 - Logiciel: FEAR - (.Vivendi Universal Games, Inc..) [HKLM][64Bits] -- {2B653229-9854-4989-B780-D978F5F13EAB}
O42 - Logiciel: FL Studio 10 - (.Image-Line.) [HKLM][64Bits] -- FL Studio 10 ©
O42 - Logiciel: Free MP4 Video Converter version 5.0.58.324 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free MP4 Video Converter_is1 ©
O42 - Logiciel: Free Video to MP3 Converter version 5.0.57.301 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free Video to MP3 Converter_is1 ©
O42 - Logiciel: Free YouTube Download version 3.2.58.505 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube Download_is1 ©
O42 - Logiciel: Free YouTube to MP3 Converter version 3.12.56.301 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube to MP3 Converter_is1 ©
O42 - Logiciel: FreeMind - (...) [HKLM][64Bits] -- B991B020-2968-11D8-AF23-444553540000_is1
O42 - Logiciel: Glary Utilities 5.32 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities 5 ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: GPUTweakStreaming - (.ASUS.) [HKLM][64Bits] -- InstallShield_{D2A41AA7-4313-43D5-AA39-7E3FBBE0556D} ©
O42 - Logiciel: HP Photosmart B010 All-In-One Driver 14.0 Rel. 7 - (.HP.) [HKLM][64Bits] -- {81830FEF-866C-4DC0-9435-B6287B1EDD8A} ©
O42 - Logiciel: ICP 9.0 - (...) [HKLM][64Bits] -- ICP install2_is1
O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM][64Bits] -- IL Download Manager ©
O42 - Logiciel: Java 8 Update 40 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218040F0} ©
O42 - Logiciel: L.A. Noire - (.Rockstar Games.) [HKLM][64Bits] -- {915726DF-7891-444A-AA03-0DF1D64F561A} ©
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- {38DAAEA7-903D-4FBF-A5D3-F7EB8F83782A} ©
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- LogMeIn Hamachi ©
O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {E1322B8A-6F66-44ED-95D5-7FEBC50AC814} ©
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: Medieval II Total War - (.SEGA.) [HKLM][64Bits] -- {C0698BDA-0D29-40EE-8570-A31106DF9AB1} ©
O42 - Logiciel: Medieval II Total War : Kingdoms : Americas - (.SEGA.) [HKLM][64Bits] -- {75983B66-804C-40D1-BA13-64DAF652A6F1} ©
O42 - Logiciel: Medieval II Total War : Kingdoms : Britannia - (.SEGA.) [HKLM][64Bits] -- {CEDDEE73-3D36-41C2-AA40-29355D9FBD63} ©
O42 - Logiciel: Medieval II Total War : Kingdoms : Crusades - (.SEGA.) [HKLM][64Bits] -- {02A10468-2F1C-447C-AD8E-4DEDDEA25AE2} ©
O42 - Logiciel: Medieval II Total War : Kingdoms : Teutonic - (.SEGA.) [HKLM][64Bits] -- {7AEE1963-7001-4C37-BC20-2FAEB74AA41C} ©
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {D9C50188-12D5-4D3E-8F00-682346C2AA5F} ©
O42 - Logiciel: Mount & Blade: Warband - (.TaleWorlds Entertainment.) [HKLM][64Bits] -- Steam App 48700 ©
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {AB085680-FE98-11E1-A232-F04DA23A5C58} ©
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D66B7840-6A9B-11E4-8FED-F04DA23A5C58} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: NVIDIA GeForce Experience 2.5.15.54 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6} ©
O42 - Logiciel: NVIDIA Pilote 3D Vision 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision ©
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver ©
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB ©
O42 - Logiciel: NVIDIA Pilote graphique 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo ©
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin ©
O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {DF3A46D9-67B3-44B2-9D01-25C8BA772C8A} ©
O42 - Logiciel: Popcorn Time - (.Popcorn Official.) [HKCU][64Bits] -- Popcorn Time ©
O42 - Logiciel: Portal 2 - (...) [HKLM][64Bits] -- Postal 2_is1
O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc ©
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {627FFC10-CE0A-497F-BA2B-208CAC638010} ©
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Robocraft - (.Freejam.) [HKLM][64Bits] -- Steam App 301520 ©
O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club ©
O42 - Logiciel: SafeZone Stable 1.46.1990.55 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 1.46.1990.55 ©
O42 - Logiciel: Skype™ 7.13 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: Sleeping Dogs - Definitive Edition - (.R.G. Mechanics, markfiter.) [HKLM][64Bits] -- Sleeping Dogs - Definitive Edition_R.G. Mechanics_is1 ©
O42 - Logiciel: Sonic Foundry Preset Manager 1.0 - (.Sonic Foundry.) [HKLM][64Bits] -- {7266C898-F9CB-4122-9452-2AA1DACE245E}
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam ©
O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM][64Bits] -- {B69DD608-60B3-4AA1-B62B-BB7C1287FAA2} ©
O42 - Logiciel: TAP-Windows 9.9.2 - (...) [HKLM][64Bits] -- TAP-Windows
O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850 ©
O42 - Logiciel: Tom Clancy's Rainbow Six 3: Raven Shield - (...) [HKLM][64Bits] -- {AF131494-F5D8-45C5-938C-D5F020CF1B0D}
O42 - Logiciel: Tom Clancy's Rainbow Six Vegas 2 - (.Ubisoft.) [HKLM][64Bits] -- {FD416706-875C-4B0B-A23A-9E740DAE029E} ©
O42 - Logiciel: Trojan Killer 2.0 - (.GridinSoft, Inc..) [HKLM][64Bits] -- {8686D4FE-62EF-46FB-B9FD-00679EB381FF}_is1 ©
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer ©
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker ©
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay ©
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {D2CE062E-6A9B-11E4-A8C6-F04DA23A5C58} ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: Wrye Bash - (.Wrye & Wrye Bash Development Team.) [HKLM][64Bits] -- Wrye Bash
O42 - Logiciel: XviD4PSP 5.10.346.0 - (.Winnydows & fcp team.) [HKLM][64Bits] -- XviD4PSP5_is1 ©

---\\ HKCU & HKLM Software Keys (152) - 6s
HKLM\SOFTWARE\Wow6432Node\activision
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\ASIO4ALL
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Avisynth
HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins
HKLM\SOFTWARE\Wow6432Node\bethesda softworks
HKLM\SOFTWARE\Wow6432Node\bohemia interactive
HKLM\SOFTWARE\Wow6432Node\Capcom
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\CyberGhost
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\ESTsoft
HKLM\SOFTWARE\Wow6432Node\fCoder
HKLM\SOFTWARE\Wow6432Node\FLT
HKLM\SOFTWARE\Wow6432Node\GlarySoft
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\GOG.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Image-Line
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\LogMeIn Hamachi
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Macrovision
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Monolith Productions
HKLM\SOFTWARE\Wow6432Node\mount&blade warband
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\Outsim
HKLM\SOFTWARE\Wow6432Node\PocketSoft
HKLM\SOFTWARE\Wow6432Node\PowerPivot
HKLM\SOFTWARE\Wow6432Node\Propellerhead Software
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Red Storm Entertainment
HKLM\SOFTWARE\Wow6432Node\Rockstar Games
HKLM\SOFTWARE\Wow6432Node\SEGA
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftVoice
HKLM\SOFTWARE\Wow6432Node\Sonic Foundry
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\Ubi Soft
HKLM\SOFTWARE\Wow6432Node\Ubisoft
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VST
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wrye Bash
HKLM\SOFTWARE\Wow6432Node\Even Balance
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Activision
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AnchorFree
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASIO
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\BEAM Team Games
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\DXTransform
HKCU\SOFTWARE\E-Line Media
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\EpmNewsInfo
HKCU\SOFTWARE\ESTsoft
HKCU\SOFTWARE\fCoder
HKCU\SOFTWARE\FLEXlm License Manager
HKCU\SOFTWARE\FLT
HKCU\SOFTWARE\fmqsgijtpm
HKCU\SOFTWARE\Freejam
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\GameTuts
HKCU\SOFTWARE\Glarysoft
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GridinSoft
HKCU\SOFTWARE\GSpot Appliance Corp
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Image-Line
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kkuzpb
HKCU\SOFTWARE\L2j Community Network
HKCU\SOFTWARE\LogMeIn Ignition
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MountAndBladeWarbandKeys
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\paint.net
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\RatioMaster.NET
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\Skidrow
HKCU\SOFTWARE\SKS
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SoftVoice
HKCU\SOFTWARE\Sonic Foundry
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\Steinberg
HKCU\SOFTWARE\The Creative Assembly
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\Wargaming.net
HKCU\SOFTWARE\Winnydows
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (259) - 6s
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 29/03/2015 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\ASIO4ALL v2
O43 - CFD: 31/03/2015 - [] D -- C:\Program Files (x86)\ASM104xUSB3
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files (x86)\AviSynth 2.5
O43 - CFD: 16/06/2015 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 07/10/2015 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\DVDVideoSoft
O43 - CFD: 20/04/2015 - [] D -- C:\Program Files (x86)\ESTsoft
O43 - CFD: 12/05/2015 - [] D -- C:\Program Files (x86)\Free Codec Pack
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\HP
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Image-Line
O43 - CFD: 06/11/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 30/03/2015 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 22/03/2015 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 09/11/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Outsim
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Rockstar Games
O43 - CFD: 07/10/2015 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Sonic Foundry
O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 10/11/2015 - [] D -- C:\Program Files (x86)\SystemRequirementsLab
O43 - CFD: 17/03/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\Ubi Soft
O43 - CFD: 10/04/2015 - [] D -- C:\Program Files (x86)\Ubisoft
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\VstPlugins
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 14/06/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 18/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 17/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent
O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassin's Creed IV Black Flag
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks
O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BioShock Infinite
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 27/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Rising 2
O43 - CFD: 12/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind
O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
O43 - CFD: 08/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft
O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 01/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 04/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories
O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Middle Earth Shadow of Mordor
O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Never Alone
O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 29/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
O43 - CFD: 26/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Storm Entertainment
O43 - CFD: 04/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA
O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
O43 - CFD: 07/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonic Foundry
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 20/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Valve
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 19/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XviD4PSP 5
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 01/07/2015 - [] D -- C:\ProgramData\Age of Empires 3
O43 - CFD: 29/03/2015 - [] D -- C:\ProgramData\Apple
O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 09/05/2015 - [] D -- C:\ProgramData\Bohemia Interactive
O43 - CFD: 01/07/2015 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\EA Core
O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\EA Logs
O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\Electronic Arts
O43 - CFD: 18/04/2015 - [] D -- C:\ProgramData\ESTsoft
O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\FLEXnet
O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\GlarySoft
O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\HP
O43 - CFD: 02/07/2015 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 17/03/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 06/05/2015 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 10/04/2015 - [] D -- C:\ProgramData\Orbit
O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\Origin
O43 - CFD: 09/05/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 13/07/2015 - [] D -- C:\ProgramData\RELOADED
O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\Rockstar Games
O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Sony
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 20/05/2015 - [] D -- C:\ProgramData\Steam
O43 - CFD: 03/04/2015 - [] D -- C:\ProgramData\Steinberg
O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Sun
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Ubisoft
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 29/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 09/05/2015 - [] D -- C:\Program Files (x86)\Common Files\BattlEye
O43 - CFD: 12/05/2015 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 03/11/2015 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\Common Files\HP
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 30/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 07/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 13/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Games
O43 - CFD: 19/03/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 07/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 03/04/2015 - [0] D -- C:\Program Files (x86)\Common Files\VST3
O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Wrye Bash
O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\.mono
O43 - CFD: 25/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\ACAMPREF
O43 - CFD: 18/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\Adobe
O43 - CFD: 30/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Apple Computer
O43 - CFD: 13/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\Audacity
O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\AVAST Software
O43 - CFD: 30/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 18/08/2015 - [0] D -- C:\Users\Django\AppData\Roaming\DiskDefrag
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Django\AppData\Roaming\dvdcss
O43 - CFD: 12/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\DVDVideoSoft
O43 - CFD: 20/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\ESTsoft
O43 - CFD: 08/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\GlarySoft
O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Identities
O43 - CFD: 04/06/2015 - [] D -- C:\Users\Django\AppData\Roaming\InstallShield
O43 - CFD: 22/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\LucasArts
O43 - CFD: 04/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Macromedia
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\Django\AppData\Roaming\Media Center Programs
O43 - CFD: 13/10/2015 - [] SD -- C:\Users\Django\AppData\Roaming\Microsoft
O43 - CFD: 20/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Mount&Blade Warband
O43 - CFD: 06/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\Mozilla
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\NVIDIA
O43 - CFD: 02/06/2015 - [] D -- C:\Users\Django\AppData\Roaming\Origin
O43 - CFD: 01/07/2015 - [] D -- C:\Users\Django\AppData\Roaming\PowerISO
O43 - CFD: 21/03/2015 - [0] D -- C:\Users\Django\AppData\Roaming\Publish Providers
O43 - CFD: 08/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\Skype
O43 - CFD: 29/07/2015 - [] D -- C:\Users\Django\AppData\Roaming\Sleeping Dogs - Definitive Edition
O43 - CFD: 30/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Sony
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Sony Creative Software Inc
O43 - CFD: 20/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\Steam
O43 - CFD: 03/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Steinberg
O43 - CFD: 29/06/2015 - [] D -- C:\Users\Django\AppData\Roaming\Teeworlds
O43 - CFD: 23/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\The Creative Assembly
O43 - CFD: 07/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Toon Boom Animation
O43 - CFD: 27/07/2015 - [] D -- C:\Users\Django\AppData\Roaming\Tunngle
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Unity
O43 - CFD: 03/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\uTorrent
O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\vlc
O43 - CFD: 03/04/2015 - [0] D -- C:\Users\Django\AppData\Roaming\VST3 Presets
O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\WinRAR
O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\ZHP
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Local\5D515C96_stp
O43 - CFD: 26/06/2015 - [] D -- C:\Users\Django\AppData\Local\Activision
O43 - CFD: 04/11/2015 - [] D -- C:\Users\Django\AppData\Local\Adobe
O43 - CFD: 29/03/2015 - [] D -- C:\Users\Django\AppData\Local\Apple
O43 - CFD: 26/06/2015 - [] D -- C:\Users\Django\AppData\Local\Apple Computer
O43 - CFD: 17/03/2015 - [0] SHD -- C:\Users\Django\AppData\Local\Application Data
O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Local\Arma 3
O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Local\Arma 3 Launcher
O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Local\Bohemia_Interactive
O43 - CFD: 19/08/2015 - [] D -- C:\Users\Django\AppData\Local\CEF
O43 - CFD: 24/07/2015 - [] D -- C:\Users\Django\AppData\Local\Chromium
O43 - CFD: 05/11/2015 - [] D -- C:\Users\Django\AppData\Local\Diagnostics
O43 - CFD: 13/05/2015 - [0] D -- C:\Users\Django\AppData\Local\ElevatedDiagnostics
O43 - CFD: 19/06/2015 - [0] SHD -- C:\Users\Django\AppData\Local\EmieBrowserModeList
O43 - CFD: 19/06/2015 - [0] SHD -- C:\Users\Django\AppData\Local\EmieSiteList
O43 - CFD: 19/06/2015 - [0] SHD -- C:\Users\Django\AppData\Local\EmieUserList
O43 - CFD: 15/04/2015 - [] D -- C:\Users\Django\AppData\Local\ESN
O43 - CFD: 29/04/2015 - [] D -- C:\Users\Django\AppData\Local\Flying_Castle_Entertainme
O43 - CFD: 01/11/2015 - [] D -- C:\Users\Django\AppData\Local\Google
O43 - CFD: 17/03/2015 - [0] SHD -- C:\Users\Django\AppData\Local\Historique
O43 - CFD: 02/07/2015 - [] D -- C:\Users\Django\AppData\Local\LogMeIn
O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Local\LogMeIn Hamachi
O43 - CFD: 10/04/2015 - [] D -- C:\Users\Django\AppData\Local\LogMeInIgnition
O43 - CFD: 08/10/2015 - [] D -- C:\Users\Django\AppData\Local\Microsoft
O43 - CFD: 17/03/2015 - [0] D -- C:\Users\Django\AppData\Local\Microsoft Help
O43 - CFD: 06/05/2015 - [] D -- C:\Users\Django\AppData\Local\Mozilla
O43 - CFD: 15/05/2015 - [0] D -- C:\Users\Django\AppData\Local\My Games
O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Local\NVIDIA
O43 - CFD: 22/06/2015 - [] D -- C:\Users\Django\AppData\Local\NVIDIA Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\Users\Django\AppData\Local\Origin
O43 - CFD: 25/03/2015 - [] D -- C:\Users\Django\AppData\Local\paint.net
O43 - CFD: 17/05/2015 - [] D -- C:\Users\Django\AppData\Local\Popcorn Time
O43 - CFD: 15/06/2015 - [] D -- C:\Users\Django\AppData\Local\Popcorn-Time
O43 - CFD: 18/03/2015 - [] D -- C:\Users\Django\AppData\Local\Programs
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Local\PunkBuster
O43 - CFD: 17/08/2015 - [] D -- C:\Users\Django\AppData\Local\SKIDROW
O43 - CFD: 19/03/2015 - [] D -- C:\Users\Django\AppData\Local\Skype
O43 - CFD: 05/05/2015 - [] D -- C:\Users\Django\AppData\Local\Skyrim
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Local\Sony
O43 - CFD: 20/03/2015 - [] D -- C:\Users\Django\AppData\Local\Steam
O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Local\Temp
O43 - CFD: 17/03/2015 - [0] SHD -- C:\Users\Django\AppData\Local\Temporary Internet Files
O43 - CFD: 30/06/2015 - [] D -- C:\Users\Django\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Local\Unity
O43 - CFD: 07/04/2015 - [] D -- C:\Users\Django\AppData\Local\VirtualStore
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 15/10/2015 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
O43 - CFD: 17/03/2015 - [0] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 26/09/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 13/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 17/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
O43 - CFD: 08/11/2015 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 08/11/2015 - [] HD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
O43 - CFD: 10/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 25/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 29/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wrye Bash

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL ©
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll ©
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll ©

---\\ Enumération des clés StartupReg (17) - 0s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe ©
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (...) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe ©
O53 - SMSR:HKLM\...\startupreg\cacaoweb [Key] . (...) -- C:\Users\Django\AppData\Roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe ©
O53 - SMSR:HKLM\...\startupreg\CyberGhost [Key] . (...) -- C:\Program Files\CyberGhost 5\CyberGhost.EXE (.not file.)
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- G:\DAEMON Tools Lite\DTLite.exe ©
O53 - SMSR:HKLM\...\startupreg\GUDelayStartup [Key] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- G:\LOGICIELS\Glary Utilities 5\StartupManager.exe ©
O53 - SMSR:HKLM\...\startupreg\LogMeIn GUI [Key] . (...) -- G:\Hamachi\x64\LogMeInSystray.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\LogMeIn Hamachi Ui [Key] . (.LogMeIn Inc. - Hamachi Client Application.) -- G:\Hamachi\hamachi-2-ui.exe ©
O53 - SMSR:HKLM\...\startupreg\NvBackend [Key] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ©
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- G:\QuickTime\QTTask.exe ©
O53 - SMSR:HKLM\...\startupreg\ShadowPlay [Key] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ©
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©
O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- G:\Steam\Steam.exe ©
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ©
O53 - SMSR:HKLM\...\startupreg\XboxStat [Key] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe ©

---\\ Liste des pilotes du système (74) - 2s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2010/11/21 04:23:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] ©
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2010/11/21 04:23:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2015/01/05 13:23:52 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\Windows\System32\drivers\asmthub3.sys [139480] ©
O58 - SDL:2015/01/05 13:23:52 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\Windows\System32\drivers\asmtxhci.sys [430808] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] ©
O58 - SDL:2015/11/10 19:47:48 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [28144] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [97648] ©
O58 - SDL:2015/11/10 19:47:46 A . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdisFlt.sys [466400] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] ©
O58 - SDL:2015/11/10 19:47:48 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1059656] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [449992] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [154256] ©
O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [273784] ©
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2015/03/19 15:27:26 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064] ©
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2015/08/18 13:48:53 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\Windows\System32\drivers\GUBootStartup.sys [20160] ©
O58 - SDL:2015/03/30 14:25:00 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [33856] ©
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2013/01/11 19:02:34 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [64624] ©
O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] ©
O58 - SDL:2010/11/21 04:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] ©
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2015/02/16 16:58:56 A . (.LogMeIn, Inc. - LogMeIn Mirror Miniport Driver.) -- C:\Windows\System32\drivers\lmimirr.sys [11552] ©
O58 - SDL:2015/02/16 16:59:14 A . (.LogMeIn, Inc. - LogMeIn Rfs Drivemap Driver.) -- C:\Windows\System32\drivers\LMIRfsDriver.sys [72216] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] ©
O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] ©
O58 - SDL:2015/11/10 20:22:26 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2015/10/05 09:50:18 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] ©
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2011/08/17 09:04:28 A . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\drivers\nmwcdnsucx64.sys [12800] ©
O58 - SDL:2011/08/17 09:04:34 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\nmwcdnsux64.sys [171008] ©
O58 - SDL:2015/11/02 23:48:25 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [205456] ©
O58 - SDL:2015/11/05 18:13:38 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11130488] ©
O58 - SDL:2010/11/21 04:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] ©
O58 - SDL:2010/11/21 04:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] ©
O58 - SDL:2015/08/11 05:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [50472] ©
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2013/08/27 07:08:42 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [883928] ©
O58 - SDL:2013/10/22 13:38:24 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3692632] ©
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Europe Ltd - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2013/08/03 14:06:00 A . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [31232] ©
O58 - SDL:2009/09/16 06:02:42 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901t.sys [31232]
O58 - SDL:2015/06/04 00:04:50 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\drivers\taphss6.sys [42088] ©
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ©
O58 - SDL:2015/10/26 11:15:46 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [34720] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (13) - 1s
O61 - LFC: 2015/11/04 18:04:33 A . (..) -- C:\Users\Django\Documents\My Games\Ubisoft\R6Vegas2\R6GameConfig.bin [762]
O61 - LFC: 2015/11/05 17:29:53 RASH . (..) -- C:\Users\Django\AppData\Roaming\mlang2.dll [569344]
O61 - LFC: 2015/11/09 17:55:35 A . (..) -- C:\Users\Django\AppData\Roaming\Microsoft\UProof\CMAdj.12.bin [232]
O61 - LFC: 2015/11/08 17:26:20 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\pbcl.dll [1017232]
O61 - LFC: 2015/11/08 17:22:20 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\pbclold.dll [1017232]
O61 - LFC: 2015/11/08 17:26:20 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\PnkBstrB.exe [348360]
O61 - LFC: 2015/11/08 17:26:33 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\PnkBstrK.sys [138816]
O61 - LFC: 2015/11/10 18:27:53 A . (..) -- C:\Users\Django\AppData\Local\NVIDIA\NvBackend\Packages\00008285\DAO.20155488.exe [6807000]
O61 - LFC: 2015/11/10 18:27:45 A . (..) -- C:\Users\Django\AppData\Local\NVIDIA\NvBackend\Packages\00008245\DRS update.20141141.exe [354416]
O61 - LFC: 2015/11/05 23:34:04 A . (..) -- C:\Users\Django\AppData\Local\NVIDIA\NvBackend\drs\update.bin [1311428]
O61 - LFC: 2015/11/10 20:33:30 A . (..) -- C:\Users\Django\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2015/11/08 22:21:24 A . (..) -- C:\Users\Django\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [99509]
O61 - LFC: 2015/11/03 20:51:40 A . (..) -- C:\Users\Django\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [132909]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- c:\program files\internet explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe ©

---\\ Recherche d'infection sur les navigateurs (3) - 1s
O69 - SBI: prefs.js [Django - 16omjl5e.default] user_pref("extensions.xpiState", "{\"app-profile\":{\"cacaoweb@cacaoweb.org\":{\"d\":\"C:\\\\Users\\\\Django\\\\AppData\\\\Roaming[...] =>PUP.Optional.CacaoWeb
O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - http://search.live.com/
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (33) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [859648] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680960] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2607104] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ©

---\\ Liste des exceptions du parefeu Windows (28) - 2s
O87 - FAEL: "{07A0C929-04A6-4B89-999C-6D76552B02A4}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Django\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{8705EA03-786F-487E-948D-BE4B70A0ECBF}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Django\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "TCP Query User{DCCD38A0-C02F-4790-940A-65FBF8AB2DF0}C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{1466F2C6-26CA-4572-94A0-AFC9779E8709}C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "{30C5870F-2B44-462A-B6B9-96B6DD771CE7}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{11CC5004-65FD-4025-82B7-37F9A10251CB}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{0CEB6041-BF9F-4909-93B7-92AE7E23E899}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{203DC6FD-45DA-4969-BBF4-F6C09B77AFE6}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "TCP Query User{6890FBF1-449C-4BCC-ABD4-53BC95974354}C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P6-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe
O87 - FAEL: "UDP Query User{4AEE739F-BCD4-4F37-BE32-2DD61CF64DD0}C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P17-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe
O87 - FAEL: "{B9DB9955-F014-4BE9-9B69-D3F3513C924B}" [In-None-P17-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe
O87 - FAEL: "{2C4718E9-4763-4192-81FF-AF68C13B21B1}" [In-None-P6-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe
O87 - FAEL: "{0FAB6513-BAAC-4271-890A-F7D4A1700ACF}" [In-None-P6-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4sp.exe
O87 - FAEL: "{EA5CA1D8-49D2-4447-8399-6CE5272B764E}" [In-None-P17-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4sp.exe
O87 - FAEL: "{26E438BE-961F-4697-8FD2-F39102E37F63}" [In-None-P6-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe
O87 - FAEL: "{B03D5981-2C2A-4630-BD6E-C7F3EA1589F7}" [In-None-P17-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe
O87 - FAEL: "TCP Query User{B7CDDCE8-865B-41E7-BF16-64605D98C862}G:\jeux videos\portal 2\portal2.exe" [In-None-P6-FALSE] .(...) -- G:\jeux videos\portal 2\portal2.exe
O87 - FAEL: "UDP Query User{AA4CC527-5BEE-42A3-AA82-09491DC225DA}G:\jeux videos\portal 2\portal2.exe" [In-None-P17-FALSE] .(...) -- G:\jeux videos\portal 2\portal2.exe
O87 - FAEL: "TCP Query User{B9145484-E5AA-4595-81A0-D2A9DFD7D144}G:\jeux videos\portal 2\portal2.exe" [In-None-P6-TRUE] .(...) -- G:\jeux videos\portal 2\portal2.exe
O87 - FAEL: "UDP Query User{D264DE02-38A3-4820-B0FA-A848CF458964}G:\jeux videos\portal 2\portal2.exe" [In-None-P17-TRUE] .(...) -- G:\jeux videos\portal 2\portal2.exe
O87 - FAEL: "{B5DE3232-7A8D-4D4A-B8BA-7427816CCF34}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{79956972-20F6-4D3A-80A6-89D79F3BD667}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{ED07D69F-EAF9-4EB6-B4C5-AFA0D4C27361}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{9FD03FF8-052B-430E-B063-FFFD6B10F1E3}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{75648B45-822D-4CDF-B365-6EDF688C61E2}" [In-None-P6-TRUE] .(...) -- G:\JEUX VIDEOS\Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe
O87 - FAEL: "{B3B42CDC-8361-4BD5-B21A-44FEBCD5DF6E}" [In-None-P17-TRUE] .(...) -- G:\JEUX VIDEOS\Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe
O87 - FAEL: "{C27E5D4E-BD76-4FE8-8961-65B91D9EDCE7}" [In-None-P6-TRUE] .(.Monolith Productions, Inc. - F.E.A.R..) -- G:\JEUX VIDEOS\FEAR\FEAR.exe
O87 - FAEL: "{2FA4530C-EE3C-4D6F-90A3-8A688AC2F147}" [In-None-P17-TRUE] .(.Monolith Productions, Inc. - F.E.A.R..) -- G:\JEUX VIDEOS\FEAR\FEAR.exe

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 10s

SS - Auto [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [10/11/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SS - Auto [17/01/2012] [ 55296] ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe
SR - Auto [10/11/2015] [ 174416] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
SR - Auto [10/11/2015] [ 109520] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe ©
SS - Demand [08/05/2015] [ 441216] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
SS - Demand [07/04/2015] [ 651720] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe ©
SS - Auto [12/10/2015] [ 1156384] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
SS - Auto [07/10/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [07/10/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Auto [26/10/2015] [ 2546184] LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc..) - G:\Hamachi\hamachi-2.exe ©
SS - Demand [03/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe ©
SR - Auto [15/10/2014] [ 2820424] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe ©
SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - G:\Malwarebytes Anti-Malware\mbamservice.exe ©
SS - Auto [12/10/2015] [ 1873696] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
SS - Auto [12/10/2015] [ 5568288] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe ©
SS - Auto [05/11/2015] [ 938616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe ©
SS - Demand [03/11/2015] [ 2099208] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - G:\Origin\OriginClientService.exe ©
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SS - Demand [14/10/2015] [ 838224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe ©
SS - Auto [05/11/2015] [ 417584] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©

---\\ Scan Additionnel (3) - 0s
C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS
C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS

---\\ Récapitulatif des éléments trouvées sur votre station (2) - 0s
http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb

~ End of the scan, 29161 items in 43 seconds (998)(0)

Publicité


Signaler le contenu de ce document

Publicité