cjoint

Publicité


Publicité

Commentaire : Diag

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.2.4.26 Par Nicolas Coolman (2016/02/04)
~ Démarré par Papa (Administrator) (2016/02/07 17:17:38)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Papa\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Papa\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows VISTA, 32-bit Service Pack 2 (Build 6002)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v48.0.2564.103
MFIE: Mozilla Firefox 43.0.4 (x86 fr)
MSIE: Internet Explorer v9.0.8112.16421

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (1) - 0s
Avast Free Antivirus v11.1.2245

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 20 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 11, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3406.48 MB (44% free)
System Restore: Activé (Enable)
System drive C: has 58 GB () free of 233 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DESTOUCHES
~ User Name: Papa
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 58 GB free of 233 GB (System)
~ Drive D: has 163 GB free of 233 GB

---\\ Etat du Centre de Sécurité Windows (12) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 1s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation
[MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - 19/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation
[MD5.0FDC7765BA35C95C66C2F2B41A21BB08] - 15/12/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1129472] =>.Microsoft Corporation
[MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation
[MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation
[MD5.95F5FF73B076576C41740F1A842B9B57] - 19/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows®
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 19/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation
[MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 19/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation
[MD5.8793643A67B42CEC66490B2A0CF92D68] - 19/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows®
[MD5.8A79FDF04A73428597E2CAF9D0D67850] - 19/01/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 19/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation
[MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [242688] =>.Microsoft Corporation
[MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation
[MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation
[MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (14) - 1s
O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006 - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe =>.ATI Technologies Inc.
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: AVG Anti-Spyware Guard (AVG Anti-Spyware Guard) . (.GRISOFT s.r.o. - AVG Anti-Spyware guard.) - C:\Users\Céline\Desktop\Anti virus\AVG\AVG Anti-Spyware 7.5\guard.exe {67BF2128CC4054D80BAC9E9D79B55372}
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) . (...) - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (.not file.)
O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.®
O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc.
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Google Software Updater (gusvc) . (.Google - gusvc.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company
O23 - Service: Process Monitor (LVPrcSrv) . (.Logitech Inc. - Logitech LVPrcSrv Module..) - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe =>.Logitech Inc®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
O23 - Service: WlanWpsSvc (WlanWpsSvc) . (.Copyright (C) 2008 - WlanSvc Application.) - C:\Program Files\TRENDnet\TEW-648UBM\WlanWpsSvc.exe

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (18) - 51s

SR - Auto [29/12/2006] [ 28672] ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
SS - Demand [20/01/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [28/07/2007] [ 610304] (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe =>.ATI Technologies Inc.
SR - Auto [09/01/2016] [ 226440] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Auto [30/05/2007] [ 312880] AVG Anti-Spyware Guard (AVG Anti-Spyware Guard) . (.GRISOFT s.r.o..) - C:\Users\Céline\Desktop\Anti virus\AVG\AVG Anti-Spyware 7.5\guard.exe {67BF2128CC4054D80BAC9E9D79B55372}
SR - Auto [06/02/2007] [ 457512] eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.®
SR - Auto [31/01/2007] [ 53248] eRecovery Service (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc.
SS - Auto [31/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [31/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Auto [25/09/2011] [ 194104] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SR - Auto [14/12/2006] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company
SR - Auto [16/12/2008] [ 150040] Process Monitor (LVPrcSrv) . (.Logitech Inc..) - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe =>.Logitech Inc®
SS - Demand [08/01/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [07/04/2008] [ 430592] ServiceLayer (ServiceLayer) . (.Nokia..) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe =>.Nokia.
SS - Auto [03/06/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [13/07/2015] [ 93040] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
SR - Auto [26/06/2008] [ 167936] WlanWpsSvc (WlanWpsSvc) . (.Copyright (C) 2008.) - C:\Program Files\TRENDnet\TEW-648UBM\WlanWpsSvc.exe

---\\ Tâches planifiées en automatique (26) - 6s
[MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Weekly)] (...) -- C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) [0]
[MD5.295A5BFCE8D225D014DB4E6E69336279] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated®
[MD5.6864894A47B6D2BE8995D07FDFFCCD7E] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1482040] =>.AVAST Software a.s.®
[MD5.56CF1B5E7C0D68F1119CCA74218E65F0] [APT] [GlaryInitialize 4] (.Glarysoft Ltd.) -- C:\Program Files\Glary Utilities 4\Initialize.exe [101152] =>.Glarysoft Ltd®
[MD5.408DDD80EEDE47175F6844817B90213E] [APT] [Google Software Updater] (.Google.) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [194104] =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.369AA0C7DA802B6A27690B6C3513E96C] [APT] [GU4SkipUAC] (.Glarysoft Ltd.) -- C:\Program Files\Glary Utilities 4\Integrator.exe [780064] =>.Glarysoft Ltd®
[MD5.00000000000000000000000000000000] [APT] [SafeZone scheduled Autoupdate 1452353718] (...) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe (.not file.) [0]
[MD5.1103DF442ACE5870CAFE6977EF192CA5] [APT] [{15406F8A-7903-4848-9E3F-4724AF438895}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [392136] =>.Mozilla Corporation®
[MD5.39C916CE6AEB744BAF6096F2D0BD74B8] [APT] [{2F6CD19D-B46D-4629-B931-403202F17E64}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe [53282944] =>.Skype Software Sarl®
O39 - APT: Ad-Aware Update (Weekly) - (...) -- C:\Windows\Tasks\Ad-Aware Update (Weekly).job [384] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated
O39 - APT: GlaryInitialize 4 - (.Glarysoft Ltd.) -- C:\Windows\Tasks\GlaryInitialize 4.job [318] =>.Glarysoft Ltd
O39 - APT: Google Software Updater - (.Google.) -- C:\Windows\Tasks\Google Software Updater.job [1000] =>.Google
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056] =>.Google Inc.
O39 - APT: Ad-Aware Update (Weekly) - (...) -- C:\Windows\System32\Tasks\Ad-Aware Update (Weekly) [3250] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854] =>.Adobe Systems Incorporated
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] =>.AVAST Software
O39 - APT: GlaryInitialize 4 - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GlaryInitialize 4 [2616] =>.Glarysoft Ltd
O39 - APT: Google Software Updater - (.Google.) -- C:\Windows\System32\Tasks\Google Software Updater [4106] =>.Google
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3800] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4052] =>.Google Inc.
O39 - APT: GU4SkipUAC - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GU4SkipUAC [2962] =>.Glarysoft Ltd
O39 - APT: SafeZone scheduled Autoupdate 1452353718 - (...) -- C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1452353718 [3112] (.Orphean.) =>.Superfluous.Orphean

---\\ Processus lancés (31) - 3s
[MD5.581B9BE9E92A0F3856CC85EC011EDC6F] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [610304] [PID.1096] =>.ATI Technologies Inc.
[MD5.F5CB8703A4F51EE30E5C090C78073AA4] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440] [PID.1620] =>.AVAST Software a.s.®
[MD5.581B9BE9E92A0F3856CC85EC011EDC6F] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [610304] [PID.1800] =>.ATI Technologies Inc.
[MD5.509980831739ED65E173EC6CAB056B5B] - (.Copyright © 2006 - MemCheck.Service.) -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe [28672] [PID.572]
[MD5.5DCD235C061022BCDA9AA48670B64211] - (.GRISOFT s.r.o. - AVG Anti-Spyware guard.) -- C:\Users\Céline\Desktop\Anti virus\AVG\AVG Anti-Spyware 7.5\guard.exe [312880] [PID.668] {67BF2128CC4054D80BAC9E9D79B55372}
[MD5.F87DDE13D57062DA8EBA2368667D8130] - (.HiTRSUT - eDataSecurity Service.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe [457512] [PID.992] =>.HiTRUST Inc.®
[MD5.559C9B7800FAC92FC515CD0003D7C631] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2072] =>.Hewlett-Packard Company
[MD5.FF23862146A682FCC3DBAA002E22F958] - (.Logitech Inc. - Logitech LVPrcSrv Module..) -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [150040] [PID.2124] =>.Logitech Inc®
[MD5.0FE2FC59C0B9A3CA3EC2B18E1CCCF2DD] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.2656] =>.TomTom International BV®
[MD5.C71EE856C4F5B52E2D094F494CEE4936] - (.Copyright (C) 2008 - WlanSvc Application.) -- C:\Program Files\TRENDnet\TEW-648UBM\WlanWpsSvc.exe [167936] [PID.2716]
[MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.2796] =>.Microsoft Corporation®
[MD5.A2580C15D2664D18C3E140C7F98B366C] - (.Acer Inc. - eRecoveryService.) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [53248] [PID.2856] =>.Acer Inc.
[MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.2904] =>.Microsoft Corporation®
[MD5.369AA0C7DA802B6A27690B6C3513E96C] - (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe [780064] [PID.5260] =>.Glarysoft Ltd®
[MD5.4022BC4ABCE309F433101911BE83C61C] - (...) -- C:\Program Files\Logitech\QuickCam\Quickcam.exe [2656528] [PID.5948] =>.Logitech Inc®
[MD5.7C98599DC1B7C7103A52B2C0BF462C56] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152] [PID.4984] =>.Advanced Micro Devices Inc.
[MD5.8A312D5764B4FC4C55CEDDEED4652CF1] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880] [PID.3132] =>.AVAST Software a.s.®
[MD5.4F9DD96AECDC12373D4203253D665C6D] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896] [PID.4740] =>.Oracle America, Inc.®
[MD5.CC6BC45DD5A58158645E7FB2953604FE] - (.GRISOFT s.r.o. - AVG Anti-Spyware.) -- C:\Users\Céline\Desktop\Anti virus\AVG\AVG Anti-Spyware 7.5\avgas.exe [6731312] [PID.5272] {67BF2128CC4054D80BAC9E9D79B55372}
[MD5.BE9A6C91999C1FB796F980C794E7DB9C] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152] [PID.4232] =>.ATI Technologies Inc.
[MD5.E698235FE26505F2B0F4A60CBBE7A27A] - (...) -- C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe [558864] [PID.4220] =>.Logitech Inc®
[MD5.AD24274F3E6EB5C91A80A473AF78FC06] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe [1058352] [PID.868] =>.Oracle America, Inc.®
[MD5.DC35217E5F49C2FE2D5EBC7CB52FEC65] - (.Copyright (C) 2007 - WlanCU MFC Application.) -- C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe [434176] [PID.3364]
[MD5.7F73B83E2C975B5057D36625FA3D1A71] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\System32\Defrag.exe [226816] [PID.2596] =>.Microsoft Corp.
[MD5.5C58F73D55DB850C47A1A8B193BDBF1B] - (.Microsoft Corp. - Module NTFS du défragmenteur de disque.) -- C:\Windows\System32\DfrgNtfs.exe [163840] [PID.6824] =>.Microsoft Corp.
[MD5.2FBDC69E68D2B895276E460905E3FA78] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4492] =>.Google Inc®
[MD5.2FBDC69E68D2B895276E460905E3FA78] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.5452] =>.Google Inc®
[MD5.2FBDC69E68D2B895276E460905E3FA78] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.6584] =>.Google Inc®
[MD5.2FBDC69E68D2B895276E460905E3FA78] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4576] =>.Google Inc®
[MD5.2FBDC69E68D2B895276E460905E3FA78] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.7140] =>.Google Inc®
[MD5.D6F989FE71CB682FBFAC834C35EA61F4] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Papa\Downloads\ZHPDiag3.exe [2111488] [PID.5832] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (9) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.delta-search.com/ =>Toolbar.DeltaSearch
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.searchgol.com/ =>PUP.Optional.SearchGol
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (11) - 2s
M0 - MFSP: prefs.js [Papa - dxddji8q.default] https://www.google.com
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\WMP Firefox Plugin License.rtf
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\WMP Firefox Plugin RelNotes.txt
P2 - EXT FILE: (...) -- C:\Users\Papa\AppData\Roaming\Mozilla\Firefox\Profiles\dxddji8q.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Papa\AppData\Roaming\Mozilla\Firefox\Profiles\dxddji8q.default\searchplugins\yahoo-avast.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.Google Inc. - Google Toolbar for Firefox.) -- C:\Users\Papa\AppData\Roaming\Mozilla\Firefox\Profiles\dxddji8q.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} =>.Google Inc.
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_286.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (7) - 0s
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://home.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} Orphean
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (8) - 0s
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated®
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin for I.) -- C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll {24E4D16CF2DDC2F0AA04743B87515989} =>.RealPlayer
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.®
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll =>.Skype Technologies SA®
O2 - BHO: (no name) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Orphean)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Applications lancées au démarrage du système (13) - 1s
O4 - HKLM\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] . (...) -- C:\Program Files\Logitech\QuickCam\Quickcam.exe =>.Logitech Inc®
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Run: [!AVG Anti-Spyware] . (.GRISOFT s.r.o. - AVG Anti-Spyware.) -- C:\Users\Céline\Desktop\Anti virus\AVG\AVG Anti-Spyware 7.5\avgas.exe {67BF2128CC4054D80BAC9E9D79B55372}
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [Driver Detective] C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe (.not file.) =>.Superfluous.PCDriversHeadQuarters
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3927418576-3270679899-2337443720-1001\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3927418576-3270679899-2337443720-1001\..\Run: [Driver Detective] C:\Program Files\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe (.not file.) =>.Superfluous.PCDriversHeadQuarters

---\\ Raccourcis Global Startup (38) - 4s
O4 - GS\Desktop [Administrateur]: Architecte 3D Platinium.lnk . (.Punch! Software - P!3DHome.) C:\Program Files\Architecte_3D_Platinium\PunchHomeAS5000.exe
O4 - GS\Desktop [Administrateur]: monAlbumPhoto.lnk . (.monAlbumPhoto - monAlbumPhoto.) C:\Program Files\monAlbumPhoto\monAlbumphoto.exe =>.monAlbumPhoto
O4 - GS\Desktop [Administrateur]: Téléchargement.lnk . (...) C:\Users\Papa\Downloads
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Papa\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) C:\Program Files\Glary Utilities 4\Integrator.exe =>.Glarysoft Ltd®
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: monAlbumPhoto.lnk . (.monAlbumPhoto - monAlbumPhoto.) C:\Program Files\monAlbumPhoto\monAlbumphoto.exe =>.monAlbumPhoto
O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\Desktop [Maman]: Architecte 3D Platinium.lnk . (.Punch! Software - P!3DHome.) C:\Program Files\Architecte_3D_Platinium\PunchHomeAS5000.exe
O4 - GS\Desktop [Maman]: monAlbumPhoto.lnk . (.monAlbumPhoto - monAlbumPhoto.) C:\Program Files\monAlbumPhoto\monAlbumphoto.exe =>.monAlbumPhoto
O4 - GS\Desktop [Maman]: Téléchargement.lnk . (...) C:\Users\Papa\Downloads
O4 - GS\Desktop [Maman]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Papa\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Maman]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) C:\Program Files\Glary Utilities 4\Integrator.exe =>.Glarysoft Ltd®
O4 - GS\Quicklaunch [Maman]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Maman]: monAlbumPhoto.lnk . (.monAlbumPhoto - monAlbumPhoto.) C:\Program Files\monAlbumPhoto\monAlbumphoto.exe =>.monAlbumPhoto
O4 - GS\Quicklaunch [Maman]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\sendTo [Maman]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\Desktop [Papa]: Architecte 3D Platinium.lnk . (.Punch! Software - P!3DHome.) C:\Program Files\Architecte_3D_Platinium\PunchHomeAS5000.exe
O4 - GS\Desktop [Papa]: monAlbumPhoto.lnk . (.monAlbumPhoto - monAlbumPhoto.) C:\Program Files\monAlbumPhoto\monAlbumphoto.exe =>.monAlbumPhoto
O4 - GS\Desktop [Papa]: Téléchargement.lnk . (...) C:\Users\Papa\Downloads
O4 - GS\Desktop [Papa]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Papa\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Papa]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) C:\Program Files\Glary Utilities 4\Integrator.exe =>.Glarysoft Ltd®
O4 - GS\Quicklaunch [Papa]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Papa]: monAlbumPhoto.lnk . (.monAlbumPhoto - monAlbumPhoto.) C:\Program Files\monAlbumPhoto\monAlbumphoto.exe =>.monAlbumPhoto
O4 - GS\Quicklaunch [Papa]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\sendTo [Papa]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.5.) C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Avast Free Antivirus.lnk . (.AVAST Software - avast! Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - GS\CommonDesktop [Public]: GIMP 2.lnk . (...) C:\Program Files\GIMP-2.0\bin\gimp-2.6.exe {04506E}
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Logitech QuickCam.lnk . (...) C:\Program Files\Logitech\QuickCam\Quickcam.exe =>.Logitech Inc®
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: NTI CD & DVD-Maker 7.lnk . (.NewTech Infosystems, Inc. - NTI CD&DVD Maker.) C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\Cdmkr32.exe =>.NewTech InfoSystems, Inc.
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: TomTom MyDrive Connect.lnk . (.TomTom - TomTom MyDrive Connect.) C:\Users\Papa\Desktop\MyDrive Connect\TomTom MyDrive Connect.exe =>.TomTom International BV®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{169CEE27-4969-46D2-AB0F-0C9722446995}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{21F865CA-E590-49D5-8BFD-17B505DC0848}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2266E436-1B6A-43FA-AB9C-B16A7CBD5ABC}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (27) - 2s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation
O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\Program Files\Common Files\microsoft shared\Web Components\10\OWC10.DLL =>.Microsoft Corporation®
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll =>.Skype Technologies SA®
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (29) - 11s
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast =>.AVAST Software a.s.®
O42 - Logiciel: DMUninstaller - (...) [HKLM] -- DMUninstaller
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM] -- {EF61675D-9BBC-4EC7-B906-F13BE8D3BD20} =>.Google, Inc.
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc.
O42 - Logiciel: Java 7 Update 80 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F03217080FF} =>.Oracle
O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 43.0.4 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 43.0.4 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: MyDriveConnect 4.0.4.2260 - (.TomTom.) [HKLM] -- MyDriveConnect =>.TomTom International BV®
O42 - Logiciel: MyTomTom 3.2.0.700 - (.TomTom.) [HKLM] -- MyTomTom =>.TomTom
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0) - (.Nokia.) [HKLM] -- 3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F =>.Microsoft Windows Component Publisher®
O42 - Logiciel: Realtek High Definition Audio Driver - (...) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM] -- {69F300CB-D6BF-41DD-B7CC-983BAFF4EE15} =>.Skype Technologies S.A.
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A.
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM] -- {5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM] -- {7A2BB1C8-903D-4585-9F3B-CADD67D07D37}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} =>.TomTom International B.V.
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790} =>.TomTom International B.V.
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corp

---\\ HKCU & HKLM Software Keys (129) - 11s
HKLM\SOFTWARE\Acer
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\afplanet
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\anset
HKLM\SOFTWARE\ATI
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\AVS
HKLM\SOFTWARE\BitTorrent
HKLM\SOFTWARE\Buena Vista Games
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Canon_Inc_IC
HKLM\SOFTWARE\CCleaner
HKLM\SOFTWARE\Common Toolkit Suite
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\Data Fellows
HKLM\SOFTWARE\emme
HKLM\SOFTWARE\emmegroups
HKLM\SOFTWARE\ewido
HKLM\SOFTWARE\GlarySoft
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Grisoft
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Lavasoft
HKLM\SOFTWARE\LightScribe
HKLM\SOFTWARE\LogiShrd
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\MarkAny
HKLM\SOFTWARE\MCCI
HKLM\SOFTWARE\MicroQuill
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\MusicNet
HKLM\SOFTWARE\muvee Technologies
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Nero ShowTime
HKLM\SOFTWARE\NewTech Infosystems
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\PC Connectivity Solution
HKLM\SOFTWARE\PCSuite
HKLM\SOFTWARE\PDF995
HKLM\SOFTWARE\Preclick
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\ReviverSoft
HKLM\SOFTWARE\RichFX
HKLM\SOFTWARE\RtWLan
HKLM\SOFTWARE\Samsung
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SkypeWebPlugin
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SONIX
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\The Silicon Realms Toolworks
HKLM\SOFTWARE\TomTom
HKLM\SOFTWARE\Toolbar Cleaner =>PUP.Optional.ToolbarCleaner
HKLM\SOFTWARE\Trad-FR
HKLM\SOFTWARE\Via4in1Driver
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\VirtualDub 1.6.9 Fr
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\WebSupergoo
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Xerox
HKLM\SOFTWARE\Xing Technology Corp.
HKLM\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\acer
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\ALWIL Software
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\ATI Technologies Inc.
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\AVS
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Distromatic
HKCU\SOFTWARE\EasyBits
HKCU\SOFTWARE\eMule
HKCU\SOFTWARE\eSobi
HKCU\SOFTWARE\Freeware
HKCU\SOFTWARE\Glarysoft
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Lavasoft
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Logishrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magnet
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Mobileleader
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewTech Infosystems
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\MarkAny
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contenu des dossiers Programmes (515) - 42s
O43 - CFD: 08/09/2013 - [] D -- C:\Program Files\a-squared Free
O43 - CFD: 12/01/2011 - [] D -- C:\Program Files\Acer Arcade Live
O43 - CFD: 22/09/2007 - [] D -- C:\Program Files\Acer Inc
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD: 12/01/2012 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 27/06/2014 - [] D -- C:\Program Files\Advanced System Protector {59F8D19475E75F9338DF32A94183402F} =>PUP.Optional.AdvancedSystemProtector
O43 - CFD: 30/05/2008 - [] D -- C:\Program Files\AnglaisFacile.com
O43 - CFD: 22/01/2010 - [] D -- C:\Program Files\Architecte_3D_Platinium
O43 - CFD: 22/09/2007 - [] D -- C:\Program Files\ATI =>.ATI Technologies, Inc®
O43 - CFD: 23/12/2007 - [] D -- C:\Program Files\ATI Technologies
O43 - CFD: 01/02/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.®
O43 - CFD: 23/12/2007 - [] D -- C:\Program Files\AvRack
O43 - CFD: 04/04/2008 - [] D -- C:\Program Files\AVSMedia
O43 - CFD: 27/01/2012 - [] D -- C:\Program Files\BitComet
O43 - CFD: 31/05/2008 - [] D -- C:\Program Files\Buena Vista Games
O43 - CFD: 11/04/2008 - [] D -- C:\Program Files\Canal
O43 - CFD: 16/02/2008 - [] D -- C:\Program Files\CCleaner {6ABDC0279582197202B3C1E1BD6AA11A}
O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\CyberLink
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows Component Publisher®
O43 - CFD: 10/05/2008 - [] D -- C:\Program Files\DNA {68F0D3AE62D911B2B5843D297C166380}
O43 - CFD: 07/02/2016 - [0] D -- C:\Program Files\DVD Shrink
O43 - CFD: 01/02/2009 - [] D -- C:\Program Files\DVDFab 5
O43 - CFD: 21/12/2012 - [0] D -- C:\Program Files\eSobi
O43 - CFD: 24/05/2008 - [] D -- C:\Program Files\ewido anti-malware
O43 - CFD: 21/12/2007 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 02/07/2009 - [] D -- C:\Program Files\GIMP-2.0 {03CA1E}
O43 - CFD: 07/02/2016 - [] D -- C:\Program Files\Glary Utilities 4 =>.Glarysoft Ltd®
O43 - CFD: 03/06/2015 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 20/04/2008 - [0] D -- C:\Program Files\Hewlett-Packard
O43 - CFD: 20/04/2008 - [] D -- C:\Program Files\HP
O43 - CFD: 24/03/2014 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 22/07/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 27/01/2012 - [] D -- C:\Program Files\Lavasoft
O43 - CFD: 23/05/2009 - [] D -- C:\Program Files\Logitech {0EA76864381E1095E1330FF7DF7A1BDD}
O43 - CFD: 18/02/2014 - [] D -- C:\Program Files\Malwarebytes' Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 22/10/2010 - [] D -- C:\Program Files\MarkAny
O43 - CFD: 22/10/2010 - [] D -- C:\Program Files\MarkAnyContentSAFER
O43 - CFD: 23/12/2007 - [] D -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 03/02/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 25/04/2009 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 16/10/2009 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 27/06/2010 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Mobogenie =>PUP.Optional.Mobogenie
O43 - CFD: 21/12/2012 - [] D -- C:\Program Files\monAlbumPhoto
O43 - CFD: 27/08/2010 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 09/01/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 09/01/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 14/03/2011 - [] D -- C:\Program Files\MSECache
O43 - CFD: 21/12/2007 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 16/09/2015 - [] D -- C:\Program Files\MyTomTom 3 =>.TomTom International BV®
O43 - CFD: 04/04/2008 - [] D -- C:\Program Files\Nero
O43 - CFD: 04/04/2008 - [0] D -- C:\Program Files\NeroInstall.bak
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\NewTech Infosystems
O43 - CFD: 15/02/2012 - [] D -- C:\Program Files\OpenOffice.org 3
O43 - CFD: 05/09/2008 - [] D -- C:\Program Files\Pack Securite
O43 - CFD: 22/10/2010 - [] D -- C:\Program Files\PC Connectivity Solution =>.Microsoft Windows Component Publisher®
O43 - CFD: 09/04/2012 - [] D -- C:\Program Files\PC Drivers HeadQuarters =>.Superfluous.PCDriversHeadQuarters
O43 - CFD: 30/01/2008 - [] D -- C:\Program Files\pdf995 {06C7BA010F5927CA878EA89379A29959}
O43 - CFD: 03/02/2014 - [0] D -- C:\Program Files\predm =>PUP.Optional.Downware
O43 - CFD: 01/04/2008 - [] D -- C:\Program Files\Real
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Realtek
O43 - CFD: 23/12/2007 - [0] D -- C:\Program Files\Realtek Sound Manager
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 24/11/2010 - [] D -- C:\Program Files\ReviverSoft {32B433AEF06DE4646ADEAF1EB3852EF0}
O43 - CFD: 06/12/2011 - [] D -- C:\Program Files\Samsung
O43 - CFD: 19/07/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl®
O43 - CFD: 01/10/2014 - [] D -- C:\Program Files\SkypeWebPlugin =>.Skype Software Sarl®
O43 - CFD: 04/04/2008 - [] D -- C:\Program Files\SuperCopier2
O43 - CFD: 08/02/2008 - [0] D -- C:\Program Files\TomTom HOME
O43 - CFD: 15/09/2015 - [] D -- C:\Program Files\TomTom HOME 2 =>.TomTom International BV®
O43 - CFD: 08/08/2012 - [] D -- C:\Program Files\TomTom International B.V
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Tomtomax Maxi-Box
O43 - CFD: 27/01/2012 - [] D -- C:\Program Files\Toolbar Cleaner =>.Lavasoft Limited®
O43 - CFD: 24/03/2014 - [] D -- C:\Program Files\TRENDnet
O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 07/03/2014 - [] D -- C:\Program Files\Uninstaller =>PUP.Optional.Generic
O43 - CFD: 23/12/2007 - [] D -- C:\Program Files\VIA Technologies, Inc
O43 - CFD: 30/12/2007 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 23/12/2007 - [] D -- C:\Program Files\Winbond
O43 - CFD: 18/10/2009 - [] D -- C:\Program Files\Windows Calendar
O43 - CFD: 18/10/2009 - [] D -- C:\Program Files\Windows Collaboration
O43 - CFD: 18/10/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows®
O43 - CFD: 18/11/2015 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 17/05/2013 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation®
O43 - CFD: 12/04/2012 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 11/06/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 21/12/2007 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 18/10/2009 - [] D -- C:\Program Files\Windows Photo Gallery
O43 - CFD: 18/11/2009 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 30/08/2011 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 28/08/2014 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 01/02/2016 - [] D -- C:\Program Files\Yahoo! =>.Yahoo! Inc.®
O43 - CFD: 24/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 24/04/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Live
O43 - CFD: 22/09/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Empowering Technology
O43 - CFD: 24/04/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem
O43 - CFD: 24/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 30/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnglaisFacile.com
O43 - CFD: 22/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Architecte 3D Platinium
O43 - CFD: 23/12/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ATI HydraVision
O43 - CFD: 08/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Anti-Spyware 7.5
O43 - CFD: 04/04/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS Media
O43 - CFD: 31/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Buena Vista Games
O43 - CFD: 22/09/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 21/12/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Install Manager
O43 - CFD: 22/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emme
O43 - CFD: 05/04/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 05/04/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 02/07/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP
O43 - CFD: 21/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 4
O43 - CFD: 05/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
O43 - CFD: 04/04/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 22/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 23/05/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 18/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
O43 - CFD: 15/07/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 10/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
O43 - CFD: 24/04/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup NOW! 4.7
O43 - CFD: 24/04/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI CD & DVD-Maker 7
O43 - CFD: 25/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outil de mise à jour Google
O43 - CFD: 01/04/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real
O43 - CFD: 23/12/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek Sound Manager
O43 - CFD: 24/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft
O43 - CFD: 22/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung New PC Studio
O43 - CFD: 08/09/2013 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shareaza
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 09/11/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software995
O43 - CFD: 06/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 03/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
O43 - CFD: 04/04/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SuperCopier2
O43 - CFD: 02/11/2006 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 10/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 12/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tomtomax Maxi-Box
O43 - CFD: 24/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TRENDnet
O43 - CFD: 04/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 23/12/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winbond HWDoctor
O43 - CFD: 24/06/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 19/03/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 12/01/2012 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 22/05/2013 - [] D -- C:\ProgramData\albumphoto
O43 - CFD: 07/02/2016 - [0] D -- C:\ProgramData\APN =>Toolbar.Ask
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 20/04/2013 - [] D -- C:\ProgramData\Ask
O43 - CFD: 22/09/2007 - [] D -- C:\ProgramData\ATI
O43 - CFD: 01/02/2016 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 04/04/2008 - [] D -- C:\ProgramData\AVS4YOU
O43 - CFD: 21/12/2007 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 10/09/2008 - [] D -- C:\ProgramData\DVD Shrink
O43 - CFD: 31/01/2010 - [0] D -- C:\ProgramData\eMule
O43 - CFD: 23/12/2007 - [] D -- C:\ProgramData\eSobi
O43 - CFD: 05/09/2008 - [] D -- C:\ProgramData\F-Secure
O43 - CFD: 21/12/2007 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 26/08/2008 - [] D -- C:\ProgramData\fssg
O43 - CFD: 03/02/2014 - [] D -- C:\ProgramData\GlarySoft
O43 - CFD: 21/12/2007 - [] D -- C:\ProgramData\Google
O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\Google Updater
O43 - CFD: 22/05/2008 - [] D -- C:\ProgramData\Grisoft
O43 - CFD: 20/04/2008 - [] D -- C:\ProgramData\HP
O43 - CFD: 16/01/2009 - [] D -- C:\ProgramData\HP Product Assistant
O43 - CFD: 20/04/2008 - [0] D -- C:\ProgramData\HPSSUPPLY
O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Lavasoft
O43 - CFD: 04/04/2008 - [] D -- C:\ProgramData\LightScribe
O43 - CFD: 23/05/2009 - [] D -- C:\ProgramData\LogiShrd
O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 21/12/2007 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 10/12/2014 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 07/03/2008 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 21/12/2007 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 07/05/2012 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 05/04/2008 - [] D -- C:\ProgramData\Nero
O43 - CFD: 09/10/2009 - [] D -- C:\ProgramData\Office Genuine Advantage
O43 - CFD: 22/07/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 03/03/2010 - [] D -- C:\ProgramData\PC Suite
O43 - CFD: 27/09/2012 - [] D -- C:\ProgramData\pdf995
O43 - CFD: 30/09/2012 - [] D -- C:\ProgramData\Real
O43 - CFD: 24/11/2010 - [] D -- C:\ProgramData\ReviverSoft
O43 - CFD: 22/03/2014 - [] D -- C:\ProgramData\RTLLog
O43 - CFD: 28/08/2013 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 01/12/2010 - [] D -- C:\ProgramData\Sun
O43 - CFD: 23/12/2007 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 07/02/2016 - [0] D -- C:\ProgramData\Systweak =>.Superfluous.Systweak
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 12/11/2008 - [] D -- C:\ProgramData\TomTom
O43 - CFD: 20/04/2008 - [] D -- C:\ProgramData\WEBREG
O43 - CFD: 22/05/2009 - [] D -- C:\ProgramData\WindowsSearch
O43 - CFD: 23/12/2007 - [] D -- C:\ProgramData\WLInstaller
O43 - CFD: 18/02/2014 - [] D -- C:\ProgramData\WPM =>PUP.Optional.WpManager
O43 - CFD: 18/02/2008 - [] D -- C:\ProgramData\Xerox
O43 - CFD: 24/04/2007 - [] D -- C:\ProgramData\{623D32E9-0C62-4453-AD44-98B31F52A5E1}
O43 - CFD: 12/01/2012 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 19/07/2015 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 04/04/2008 - [] D -- C:\Program Files\Common Files\AVSMedia
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 20/04/2008 - [] D -- C:\Program Files\Common Files\Hewlett-Packard
O43 - CFD: 20/04/2008 - [] D -- C:\Program Files\Common Files\HP
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 22/07/2015 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Common Files\Lavasoft
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Common Files\LightScribe
O43 - CFD: 23/05/2009 - [] D -- C:\Program Files\Common Files\LogiShrd
O43 - CFD: 24/10/2010 - [] D -- C:\Program Files\Common Files\Logitech
O43 - CFD: 24/06/2012 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 05/04/2008 - [] D -- C:\Program Files\Common Files\Nero
O43 - CFD: 24/04/2007 - [] D -- C:\Program Files\Common Files\NewTech Infosystems
O43 - CFD: 01/04/2008 - [] D -- C:\Program Files\Common Files\Real
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 06/10/2014 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 23/12/2007 - [] D -- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 24/06/2012 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 25/04/2009 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 23/12/2007 - [] SHDC -- C:\Program Files\Common Files\WindowsLiveInstaller
O43 - CFD: 01/04/2008 - [] D -- C:\Program Files\Common Files\xing shared
O43 - CFD: 13/04/2008 - [] D -- C:\Users\Papa\AppData\Roaming\Adobe
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Roaming\ATI
O43 - CFD: 29/11/2013 - [] D -- C:\Users\Papa\AppData\Roaming\AVAST Software
O43 - CFD: 23/12/2014 - [] D -- C:\Users\Papa\AppData\Roaming\dvdcss
O43 - CFD: 03/02/2014 - [] D -- C:\Users\Papa\AppData\Roaming\GlarySoft
O43 - CFD: 19/08/2008 - [] D -- C:\Users\Papa\AppData\Roaming\Google
O43 - CFD: 22/05/2008 - [] D -- C:\Users\Papa\AppData\Roaming\Grisoft
O43 - CFD: 23/06/2011 - [] D -- C:\Users\Papa\AppData\Roaming\gtk-2.0
O43 - CFD: 17/01/2009 - [] D -- C:\Users\Papa\AppData\Roaming\HP
O43 - CFD: 11/04/2011 - [] D -- C:\Users\Papa\AppData\Roaming\HpUpdate
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Roaming\Identities
O43 - CFD: 15/06/2014 - [] D -- C:\Users\Papa\AppData\Roaming\Image Zone Express
O43 - CFD: 24/03/2014 - [] D -- C:\Users\Papa\AppData\Roaming\InstallShield
O43 - CFD: 14/04/2008 - [] D -- C:\Users\Papa\AppData\Roaming\Lavasoft
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Roaming\Macromedia
O43 - CFD: 30/07/2013 - [] D -- C:\Users\Papa\AppData\Roaming\main
O43 - CFD: 18/02/2014 - [] D -- C:\Users\Papa\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - [0] D -- C:\Users\Papa\AppData\Roaming\Media Center Programs
O43 - CFD: 09/10/2015 - [] SD -- C:\Users\Papa\AppData\Roaming\Microsoft
O43 - CFD: 19/09/2008 - [] D -- C:\Users\Papa\AppData\Roaming\Mozilla
O43 - CFD: 15/02/2012 - [] D -- C:\Users\Papa\AppData\Roaming\OpenOffice.org
O43 - CFD: 03/03/2010 - [] D -- C:\Users\Papa\AppData\Roaming\PC Suite
O43 - CFD: 30/01/2008 - [] D -- C:\Users\Papa\AppData\Roaming\pdf995
O43 - CFD: 21/03/2014 - [0] D -- C:\Users\Papa\AppData\Roaming\PeerNetworking
O43 - CFD: 10/05/2008 - [] D -- C:\Users\Papa\AppData\Roaming\Printer Info Cache
O43 - CFD: 19/05/2012 - [] D -- C:\Users\Papa\AppData\Roaming\Real
O43 - CFD: 28/08/2013 - [] D -- C:\Users\Papa\AppData\Roaming\Samsung
O43 - CFD: 30/05/2010 - [] D -- C:\Users\Papa\AppData\Roaming\Shareaza
O43 - CFD: 30/09/2015 - [] D -- C:\Users\Papa\AppData\Roaming\Skype
O43 - CFD: 07/10/2011 - [] D -- C:\Users\Papa\AppData\Roaming\skypePM
O43 - CFD: 07/02/2016 - [0] D -- C:\Users\Papa\AppData\Roaming\Systweak =>.Superfluous.Systweak
O43 - CFD: 10/12/2011 - [] D -- C:\Users\Papa\AppData\Roaming\Temp
O43 - CFD: 12/11/2008 - [] D -- C:\Users\Papa\AppData\Roaming\TomTom
O43 - CFD: 23/10/2009 - [0] D -- C:\Users\Papa\AppData\Roaming\U3
O43 - CFD: 15/12/2015 - [] D -- C:\Users\Papa\AppData\Roaming\vlc
O43 - CFD: 10/08/2012 - [0] D -- C:\Users\Papa\AppData\Roaming\Windows Live Writer
O43 - CFD: 08/04/2008 - [0] D -- C:\Users\Papa\AppData\Roaming\WinRAR
O43 - CFD: 07/02/2016 - [] D -- C:\Users\Papa\AppData\Roaming\ZHP
O43 - CFD: 12/06/2010 - [] D -- C:\Users\Papa\AppData\Local\Adobe
O43 - CFD: 21/12/2007 - [0] SHD -- C:\Users\Papa\AppData\Local\Application Data
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Local\ATI
O43 - CFD: 03/02/2014 - [0] D -- C:\Users\Papa\AppData\Local\cache
O43 - CFD: 15/09/2015 - [] D -- C:\Users\Papa\AppData\Local\Downloaded Installations
O43 - CFD: 07/03/2014 - [0] D -- C:\Users\Papa\AppData\Local\genienext =>PUP.Optional.NextLive
O43 - CFD: 09/12/2015 - [] D -- C:\Users\Papa\AppData\Local\Google
O43 - CFD: 21/12/2007 - [0] SHD -- C:\Users\Papa\AppData\Local\Historique
O43 - CFD: 07/08/2012 - [] D -- C:\Users\Papa\AppData\Local\Macromedia
O43 - CFD: 16/07/2013 - [] D -- C:\Users\Papa\AppData\Local\Microsoft
O43 - CFD: 11/11/2011 - [] D -- C:\Users\Papa\AppData\Local\Microsoft Games
O43 - CFD: 28/12/2007 - [0] D -- C:\Users\Papa\AppData\Local\Microsoft Help
O43 - CFD: 03/02/2014 - [] D -- C:\Users\Papa\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Local\Mozilla
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Local\PowerCinema
O43 - CFD: 16/11/2011 - [] D -- C:\Users\Papa\AppData\Local\Punch! Software
O43 - CFD: 10/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\Samsung
O43 - CFD: 30/05/2010 - [] D -- C:\Users\Papa\AppData\Local\Shareaza
O43 - CFD: 06/10/2014 - [] D -- C:\Users\Papa\AppData\Local\Skype
O43 - CFD: 01/10/2014 - [] D -- C:\Users\Papa\AppData\Local\SkypeWebPlugin
O43 - CFD: 07/02/2016 - [] D -- C:\Users\Papa\AppData\Local\Temp
O43 - CFD: 21/12/2007 - [0] SHD -- C:\Users\Papa\AppData\Local\Temporary Internet Files
O43 - CFD: 08/08/2012 - [] D -- C:\Users\Papa\AppData\Local\TomTom
O43 - CFD: 21/12/2007 - [] D -- C:\Users\Papa\AppData\Local\VirtualStore
O43 - CFD: 17/03/2013 - [] D -- C:\Users\Papa\AppData\Local\Windows Live
O43 - CFD: 10/08/2012 - [] D -- C:\Users\Papa\AppData\Local\Windows Live Writer
O43 - CFD: 23/07/2015 - [] D -- C:\Users\Papa\AppData\Local\YSearchUtil =>.Superfluous.YahooSearch
O43 - CFD: 13/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{01812C16-4A1F-413D-AD89-EEDB59580126} =>.Empty
O43 - CFD: 21/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{022F4C78-7BBF-4A76-A348-FF23C34A2889} =>.Empty
O43 - CFD: 20/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{027CB5DF-93EF-4ED0-B683-C94C26E62662} =>.Empty
O43 - CFD: 29/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{049D918D-521E-48C6-9179-92B68E2C0D84} =>.Empty
O43 - CFD: 07/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{04BACC57-A8B0-4B4A-A034-26FD79D54E42} =>.Empty
O43 - CFD: 30/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{061635E8-B78B-489D-AB85-09CE4F5A52FE} =>.Empty
O43 - CFD: 15/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{07CA2C28-05E0-4277-9293-1DAF22F5F705} =>.Empty
O43 - CFD: 14/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{086BB19C-7F8B-4A48-9036-218076F6AC00} =>.Empty
O43 - CFD: 03/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{0895D939-5465-4279-B07E-144F680AE5D2} =>.Empty
O43 - CFD: 18/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{0B845972-32E5-4B08-AAE5-BE7E3938F427} =>.Empty
O43 - CFD: 13/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{0C393BE3-D47D-43CA-B78E-4383F900957D} =>.Empty
O43 - CFD: 19/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{0FF896C2-D29A-49CF-A346-744487753972} =>.Empty
O43 - CFD: 25/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{1103632C-0CD0-48BB-8553-2DC209C09EA9} =>.Empty
O43 - CFD: 15/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{11764805-1C93-4B1A-A9B1-D2495B965825} =>.Empty
O43 - CFD: 07/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{13AD97FD-9D67-4CC9-834A-F5568E52D160} =>.Empty
O43 - CFD: 14/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{15BCEB60-692E-44FD-90CF-D7DBEE2DC267} =>.Empty
O43 - CFD: 15/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{182D2F31-D7D7-4C03-BB30-1BC548BB7A51} =>.Empty
O43 - CFD: 12/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{186A469B-272C-495D-A1AB-1FE2DB3AD664} =>.Empty
O43 - CFD: 09/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{1B56CAFE-0913-4D48-A10E-0DA9AC6C3C09} =>.Empty
O43 - CFD: 21/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{1E159B8D-92DB-4A4E-AA41-AD77972CA790} =>.Empty
O43 - CFD: 16/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{1E51F0F6-12E1-40C8-82DE-2908B33E51EF} =>.Empty
O43 - CFD: 01/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{222427F1-FCD0-44E7-A6D5-D8E635D404BE} =>.Empty
O43 - CFD: 18/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{2403EC97-19EB-4D3B-8E8C-07B25623B328} =>.Empty
O43 - CFD: 04/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{255D79CD-F448-49BF-9A15-815442D76FE4} =>.Empty
O43 - CFD: 29/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{278CF71A-B84C-464F-924E-DC0B5DE925DF} =>.Empty
O43 - CFD: 23/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{28BD9FFB-21EB-4B42-A9C1-ED52977BEF36} =>.Empty
O43 - CFD: 09/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{29033B92-8F31-473C-8ED2-939D758E1EED} =>.Empty
O43 - CFD: 21/10/2014 - [0] D -- C:\Users\Papa\AppData\Local\{2B1739C6-51FF-4E84-A48D-F70EEB35959E} =>.Empty
O43 - CFD: 05/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{2B3E9EA5-1ABE-4052-9FD1-3BFE1D4D6712} =>.Empty
O43 - CFD: 20/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{2BB38804-4C76-435D-95E6-384478445243} =>.Empty
O43 - CFD: 17/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{2BE854B7-8670-4E8F-B649-F346767AD679} =>.Empty
O43 - CFD: 16/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{2CFDDD91-69D3-4879-8ACB-AB74A6B148CC} =>.Empty
O43 - CFD: 10/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{2DAE1856-4716-4C02-81ED-C853AA1145C8} =>.Empty
O43 - CFD: 26/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{2E72EA1F-DA55-4C10-8645-F02F72B7513D} =>.Empty
O43 - CFD: 14/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{301A7217-46CC-4144-949F-3CBA961E00A7} =>.Empty
O43 - CFD: 21/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{304E9A10-3DC7-4884-AE1A-C16B4DFAAED9} =>.Empty
O43 - CFD: 27/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{30E596A5-7B08-4989-A948-0415D7CF621E} =>.Empty
O43 - CFD: 17/04/2014 - [0] D -- C:\Users\Papa\AppData\Local\{322BEFE5-A862-4C70-9F5D-FDF831AC4D21} =>.Empty
O43 - CFD: 17/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{328A245D-ACC0-4D5E-B2C9-B499D9BF4094} =>.Empty
O43 - CFD: 21/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{33AD7066-B948-4935-A3E4-3657E59D5957} =>.Empty
O43 - CFD: 27/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{350624D3-21E2-417D-BEE2-B5AB2CA799C1} =>.Empty
O43 - CFD: 16/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{355A22C0-2C8A-4294-B47B-AD7B606A0515} =>.Empty
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{35DF73FC-1990-4F21-9A12-C4848F0C8102} =>.Empty
O43 - CFD: 09/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{35E2590E-3766-4715-9F60-82F8122EF5E9} =>.Empty
O43 - CFD: 22/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{387E466B-96EE-410F-A4AF-193B3905EC1E} =>.Empty
O43 - CFD: 29/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{38FC93B5-8A8D-4880-8B58-6D7CDF2E5C82} =>.Empty
O43 - CFD: 29/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{3A37BC4D-19CB-485A-A409-91914DD06863} =>.Empty
O43 - CFD: 08/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{3AAA3547-45A3-4C6B-B453-01738124195E} =>.Empty
O43 - CFD: 09/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{3B93144A-4008-4A85-B02B-74293043A93A} =>.Empty
O43 - CFD: 08/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{3B9DAF5E-A3D6-48AE-871C-D29D4F21205E} =>.Empty
O43 - CFD: 20/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{3BB4A6AE-54E3-4E53-946D-9AB26CF81B8A} =>.Empty
O43 - CFD: 01/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{3C272AAB-C998-4F2F-9788-84722FE52BF4} =>.Empty
O43 - CFD: 18/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{3C4D1109-36F5-48D3-9193-24BE87537E26} =>.Empty
O43 - CFD: 21/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{3CA26215-3AAF-448D-944C-F96ABAF00B19} =>.Empty
O43 - CFD: 15/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{3CE3AF5A-8C1F-4305-9A63-F8BD2C592D13} =>.Empty
O43 - CFD: 19/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{3EAAF8CD-3766-4E17-8434-CBA8D4310B2A} =>.Empty
O43 - CFD: 01/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{40DB3B2C-85B2-4E73-8BE2-79E5ABAF42D1} =>.Empty
O43 - CFD: 10/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{41958A9F-5C1A-4A46-8628-D3D31BB81152} =>.Empty
O43 - CFD: 15/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{43CD90A3-65A7-4E40-BAD9-304B3716B721} =>.Empty
O43 - CFD: 23/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{4445143C-3096-4DD5-A44C-527897C82EF1} =>.Empty
O43 - CFD: 11/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{456056EF-889E-4CE3-AA8E-83178FD86213} =>.Empty
O43 - CFD: 14/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{46833C39-FCA2-4DB9-92B5-78C9A6B9FD6D} =>.Empty
O43 - CFD: 07/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{468990CA-832E-4906-8CD9-C8237BCEC1DE} =>.Empty
O43 - CFD: 21/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{4CEED0A6-4714-419C-BB8A-AE0340AC8D27} =>.Empty
O43 - CFD: 22/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{4DC81385-2210-47BC-A284-CDB1C777713F} =>.Empty
O43 - CFD: 22/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{528FB1CE-7D4D-4F18-978A-9BD945F8547D} =>.Empty
O43 - CFD: 16/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{5384A0A3-6FDD-494E-BFF1-08C4EC4D4C6A} =>.Empty
O43 - CFD: 10/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{53D9054E-06C1-4CB5-84FA-B3BF73C0D613} =>.Empty
O43 - CFD: 03/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{5482EE55-4381-4CF5-BE83-D10753C21A70} =>.Empty
O43 - CFD: 17/04/2014 - [0] D -- C:\Users\Papa\AppData\Local\{56697787-9C80-4697-943D-0015EAF2D40E} =>.Empty
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{56A86930-D9FB-41F5-B221-D412FD02ACBC} =>.Empty
O43 - CFD: 25/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{580CF227-F072-4E93-954E-783BE2D4B2C0} =>.Empty
O43 - CFD: 02/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{58E8196E-8F41-4976-A05B-0CE276735EC3} =>.Empty
O43 - CFD: 28/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{590E2D39-235D-45EA-9FE5-9E6058892F77} =>.Empty
O43 - CFD: 30/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{5AD98EF6-4713-447C-B643-8483593592BB} =>.Empty
O43 - CFD: 23/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{5B4411DE-29D3-4259-B57B-EE5314DFCCEE} =>.Empty
O43 - CFD: 19/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{5C3906EC-8DE9-46BE-845E-DEA134CADA89} =>.Empty
O43 - CFD: 26/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{5E080DAE-625A-4367-8AAC-2286AA23AA3D} =>.Empty
O43 - CFD: 05/12/2014 - [0] D -- C:\Users\Papa\AppData\Local\{5E50A203-5AE8-4829-BB74-58E6AFA927A0} =>.Empty
O43 - CFD: 18/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{60C21B4D-9D57-404F-B9F1-7A0A83C59D93} =>.Empty
O43 - CFD: 16/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{6166469B-D785-4328-A06F-1868B5B9FEBF} =>.Empty
O43 - CFD: 17/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{624B0DCF-DB0B-4358-9E51-FE981C86295F} =>.Empty
O43 - CFD: 28/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{641C0939-971D-4D7E-A92B-5EE1076271B5} =>.Empty
O43 - CFD: 06/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{642CF3CC-2755-4C07-BFD2-4ED138723AA6} =>.Empty
O43 - CFD: 10/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{6494CB5C-6700-4FAF-936E-916F88A9BB19} =>.Empty
O43 - CFD: 07/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{666E30E0-7C38-44F7-AD1C-7CA8CB304874} =>.Empty
O43 - CFD: 23/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{66DBEF4F-B516-4E99-9CBC-23BC26C9CCE3} =>.Empty
O43 - CFD: 17/03/2014 - [0] D -- C:\Users\Papa\AppData\Local\{67E41BC9-9E8B-449C-8618-18BD54E3317F} =>.Empty
O43 - CFD: 12/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{67E93446-11AC-4A09-A601-1D73655C0789} =>.Empty
O43 - CFD: 11/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{6A1F3519-F05C-4AA8-8BE5-6E8C77321E9A} =>.Empty
O43 - CFD: 25/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{6BD65192-676A-406A-836E-A4BBE9F48133} =>.Empty
O43 - CFD: 21/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{6D051B9F-CDF1-4F9F-9423-9575A12052B5} =>.Empty
O43 - CFD: 07/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{6E83011D-4A36-40DC-8CF1-5F65186759CD} =>.Empty
O43 - CFD: 20/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{72DCD1AB-B226-4F8B-8B90-63E1BF1F9D0D} =>.Empty
O43 - CFD: 05/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{733DB414-2D3D-4300-A436-AFDC5A964339} =>.Empty
O43 - CFD: 20/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{735D9E4F-A291-49D4-90D8-1CD22F80303D} =>.Empty
O43 - CFD: 20/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7497766A-1DCB-4D43-883D-C0EB0FC8F127} =>.Empty
O43 - CFD: 18/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{74EC276A-2E5C-4973-AB20-D2B9C102AF4E} =>.Empty
O43 - CFD: 16/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{760AD7D1-33CD-4F05-ACD7-61889C8B9078} =>.Empty
O43 - CFD: 09/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{77049DD5-E6FA-41DB-8485-EBA89B2BDD05} =>.Empty
O43 - CFD: 05/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{777E7BFE-E658-4A2A-9178-50FF02FB2417} =>.Empty
O43 - CFD: 27/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7889B12C-77A9-463D-904D-0139FBE7F106} =>.Empty
O43 - CFD: 27/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{793A3885-115B-445F-B050-0967C9245B95} =>.Empty
O43 - CFD: 02/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7A19D5BA-1CAF-4C82-9B8D-83C76CBFA1C1} =>.Empty
O43 - CFD: 17/04/2014 - [0] D -- C:\Users\Papa\AppData\Local\{7BC10252-665C-4146-A081-C465D6C42F69} =>.Empty
O43 - CFD: 05/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{7D261E7A-12AE-448A-8FB7-59E07E82BC25} =>.Empty
O43 - CFD: 22/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7D86EAEA-7DD0-4D41-BBCF-63238EEFBF5E} =>.Empty
O43 - CFD: 10/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7E1146CA-5051-41BF-9248-91769E41A2E8} =>.Empty
O43 - CFD: 30/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7E1257ED-32C6-4FFA-8D31-4171C1BF4209} =>.Empty
O43 - CFD: 25/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{7E3967F6-46C5-4A0B-81EC-6BE8703DED52} =>.Empty
O43 - CFD: 21/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{7EAC3B2A-B9CD-436C-8E55-0293C032A271} =>.Empty
O43 - CFD: 15/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{80B31831-5418-4675-8B96-298E2FE6B364} =>.Empty
O43 - CFD: 08/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8226D1C6-5516-4B35-82AF-0913D7D05AE9} =>.Empty
O43 - CFD: 16/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{83AC6D29-D39F-428B-A08E-D10DA3A87D1C} =>.Empty
O43 - CFD: 27/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{83AEA651-15C1-4B2B-91BD-05852EFB5948} =>.Empty
O43 - CFD: 18/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{83B81077-C3EA-4C3F-B5D0-405EA4536844} =>.Empty
O43 - CFD: 09/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8492DDC9-4F1B-45E5-ACA8-FF6C463F49D4} =>.Empty
O43 - CFD: 19/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8895ED7C-8779-457C-9D9C-4C54E8C89378} =>.Empty
O43 - CFD: 26/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{8B003C77-F540-47E6-9C9F-D15765447904} =>.Empty
O43 - CFD: 23/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8B12E089-933A-49DB-9F71-9236C88F34ED} =>.Empty
O43 - CFD: 11/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8BBCD655-8B39-4CF0-B6E6-AAAF5C6C73E1} =>.Empty
O43 - CFD: 25/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{8BFEA0A1-46B5-4E4D-87DD-614D8DB5B8BA} =>.Empty
O43 - CFD: 20/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8C236607-2015-4D42-B697-11F0CEFACDC5} =>.Empty
O43 - CFD: 01/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{8ED666B0-8448-404A-B364-5814F46F02C5} =>.Empty
O43 - CFD: 18/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{8F69311F-7136-4D89-8FFD-B297380304DF} =>.Empty
O43 - CFD: 07/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{9161E0CA-F6C0-433D-B7A9-8C4BFDC1C676} =>.Empty
O43 - CFD: 27/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{917FB133-DF35-4105-B570-A1ECE352C3E9} =>.Empty
O43 - CFD: 08/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{92676901-AC89-4D1D-9F35-66F46E7E6B0C} =>.Empty
O43 - CFD: 17/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{92BF4C6D-4682-4C21-98B3-2601D08BDEEA} =>.Empty
O43 - CFD: 17/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{9383819E-7EFB-48D9-A7CF-B2F84C86E393} =>.Empty
O43 - CFD: 21/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{93EFB735-B8C7-4100-A853-41E85C4A44D2} =>.Empty
O43 - CFD: 12/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{945FD828-E5E1-46B5-AFDF-1E5BE9E8E35E} =>.Empty
O43 - CFD: 13/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{95C28299-686B-49A5-B4EA-7A569C4EE4C5} =>.Empty
O43 - CFD: 29/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{96A4A4D7-C4EE-4DAD-B8F8-A4F942D15F3F} =>.Empty
O43 - CFD: 01/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{96F201F6-0F7E-4B1C-8CD3-E022DD61ACB6} =>.Empty
O43 - CFD: 04/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{9793C0F8-B0BE-419D-BF6A-2E4074BF70D6} =>.Empty
O43 - CFD: 17/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{99A6E546-102B-41FA-920A-30E6587E8579} =>.Empty
O43 - CFD: 12/12/2014 - [0] D -- C:\Users\Papa\AppData\Local\{9BE7E669-02FF-4785-8ADF-E60A42F00FF1} =>.Empty
O43 - CFD: 07/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{9D24274D-3133-403C-8B33-C9177AEBF510} =>.Empty
O43 - CFD: 05/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{9FB35674-AD84-4BF2-8C82-8557679EC373} =>.Empty
O43 - CFD: 17/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{A328379C-D767-4A0C-A63C-A408F4C2AA51} =>.Empty
O43 - CFD: 22/02/2014 - [0] D -- C:\Users\Papa\AppData\Local\{A3A2ECE7-1101-459E-AB15-B06BC486E422} =>.Empty
O43 - CFD: 17/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{A4C39414-88A8-48EA-8D73-9CC2C23D326A} =>.Empty
O43 - CFD: 21/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{A5A0E746-F4B9-42BA-A14E-7A0ADCC1FB1E} =>.Empty
O43 - CFD: 28/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{A64E79C5-433D-451C-8D15-618F7240C007} =>.Empty
O43 - CFD: 11/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{A65AD123-15C1-42F5-8420-B602C2A8AEF9} =>.Empty
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{A6C531D6-0246-4962-AE5A-C5536566BB8D} =>.Empty
O43 - CFD: 10/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{A81F27A4-839C-4DD0-9C66-DAFFC1965EAB} =>.Empty
O43 - CFD: 03/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{A8594961-AB29-422C-92F6-86952BB8DC9C} =>.Empty
O43 - CFD: 08/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{AA1C1A5A-26AF-4BC0-9766-844701CE9542} =>.Empty
O43 - CFD: 27/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{AA8970A9-D59B-4B9C-B6B5-113E230C1018} =>.Empty
O43 - CFD: 18/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{AAC850CB-655C-4DD2-A16E-9F22B99439EF} =>.Empty
O43 - CFD: 03/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{ABB5CB80-8D07-457A-A780-40B67C9A9043} =>.Empty
O43 - CFD: 17/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{AC8B2CAE-EBB3-4936-9E93-B4E43BF745D5} =>.Empty
O43 - CFD: 30/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{ADEA4831-633E-4E0F-B75F-3F0EDE332A66} =>.Empty
O43 - CFD: 29/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{AE8B4E59-1B83-4179-AEF0-629276BEBBF1} =>.Empty
O43 - CFD: 14/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{AF95C784-A196-410B-85BB-9744BAB9EDCA} =>.Empty
O43 - CFD: 28/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{AFC45E74-C61B-4386-B165-9A0671354BA1} =>.Empty
O43 - CFD: 16/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{AFE0DCEE-9DF4-4697-932D-EBFADF51F240} =>.Empty
O43 - CFD: 09/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{B07B1AB8-D012-4C7D-8AF8-C8B5F2377F3C} =>.Empty
O43 - CFD: 15/05/2013 - [0] D -- C:\Users\Papa\AppData\Local\{B16AFA67-73E3-4096-A327-B3A27E176294} =>.Empty
O43 - CFD: 21/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{B1B18691-5016-422A-B365-3135E8033B72} =>.Empty
O43 - CFD: 03/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{B41E0C8F-897E-4A1D-B2AB-FBDB7D4544EB} =>.Empty
O43 - CFD: 08/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{B44CB1EB-92C2-4FA5-904E-5B164AEC8ABE} =>.Empty
O43 - CFD: 15/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{B965ABB2-1A46-4AA1-85B4-30DAC46616C3} =>.Empty
O43 - CFD: 21/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{BC1937BC-2475-414E-8442-6F17EC0F87B4} =>.Empty
O43 - CFD: 18/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{BC29D8E9-20AF-448B-995C-29A03DCE0F90} =>.Empty
O43 - CFD: 02/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{BC781CF7-0905-4C5A-A684-CB76C32601DF} =>.Empty
O43 - CFD: 02/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{BDBE613C-B2F4-4C5B-92C5-14C7780725B0} =>.Empty
O43 - CFD: 06/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{BE481831-AC61-4DE0-AB02-57399DA4E8D6} =>.Empty
O43 - CFD: 13/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{BE8C73C9-3D1B-49AE-BE0E-B77257146AB8} =>.Empty
O43 - CFD: 19/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{BEA5AA10-DB76-4434-A978-94EB159C346F} =>.Empty
O43 - CFD: 07/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{C0514B41-E4BB-4E32-BB10-158F4D5DE7D5} =>.Empty
O43 - CFD: 13/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{C3B0DD6D-C6DB-466F-A7F8-015028753176} =>.Empty
O43 - CFD: 19/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{C4E0BC54-AC36-408C-A333-627752C4FE8F} =>.Empty
O43 - CFD: 17/05/2013 - [0] D -- C:\Users\Papa\AppData\Local\{C5D4A7ED-4A38-4362-B93E-0F4C6D464887} =>.Empty
O43 - CFD: 11/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{C73BA454-6D75-4399-A52F-3F3741EEA1A5} =>.Empty
O43 - CFD: 09/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{C8DA2C0C-643B-47A1-8E84-F4D00C6C2FAA} =>.Empty
O43 - CFD: 25/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{C957B874-41BD-4730-AD5F-9740266A1A93} =>.Empty
O43 - CFD: 17/04/2014 - [0] D -- C:\Users\Papa\AppData\Local\{CA94D2AF-6D22-4F02-8EA6-B741738A6B14} =>.Empty
O43 - CFD: 16/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{CD5A3CEB-07EB-4213-82FE-4572F698A769} =>.Empty
O43 - CFD: 21/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{CDC37589-2F19-49C2-B26C-7CE7D4D9FD23} =>.Empty
O43 - CFD: 25/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{CE1BD0E6-C206-416E-964E-ECEF34C5443D} =>.Empty
O43 - CFD: 20/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{CE2CEACE-7490-4DAF-A106-3B033D404C30} =>.Empty
O43 - CFD: 24/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{CFAECDFC-DDAD-4316-8568-D03ABD5D2EAE} =>.Empty
O43 - CFD: 03/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{CFF0AD17-F413-4EB6-BA2C-F9EB528BEACC} =>.Empty
O43 - CFD: 22/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{D088990B-5FF1-4596-BDD4-1588E775FD1F} =>.Empty
O43 - CFD: 11/01/2016 - [0] D -- C:\Users\Papa\AppData\Local\{D12A2B5F-8B6A-4BA6-B545-4FF63AD7ABFC} =>.Empty
O43 - CFD: 09/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{D2379D35-DED3-476B-B3C9-437BCB080E6F} =>.Empty
O43 - CFD: 19/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{D285F012-C65D-441B-80AF-620C975336C3} =>.Empty
O43 - CFD: 04/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{D2AC136E-DB25-4831-97B3-64B5C5313655} =>.Empty
O43 - CFD: 25/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{D2AC6A60-FCC1-4B6D-A361-E51D5D525DE1} =>.Empty
O43 - CFD: 23/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{D5C634E4-4449-4E1F-A22C-32042D7C4285} =>.Empty
O43 - CFD: 09/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{D6D068AA-8372-4234-83D5-2C3E07E9A1D5} =>.Empty
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{D7359FA5-12EA-4C68-8EE3-CF45CCCFE748} =>.Empty
O43 - CFD: 18/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{D8134F4F-A7D0-4ABD-9C87-8A55BFB3C5E7} =>.Empty
O43 - CFD: 22/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{D8D2675C-BD50-40FA-83B1-00DE493BA05C} =>.Empty
O43 - CFD: 17/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{DB9760D5-3BC1-40AD-9614-5D7796A0C9E0} =>.Empty
O43 - CFD: 06/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{DD00B69D-1C9B-4383-A6D4-58CFE4364F15} =>.Empty
O43 - CFD: 06/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{DEE81C16-E030-459E-A085-C383DF9C151E} =>.Empty
O43 - CFD: 09/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{DFDEC510-E109-4E1C-9D54-0B76061A3813} =>.Empty
O43 - CFD: 12/04/2013 - [0] D -- C:\Users\Papa\AppData\Local\{E036D644-9891-4B2E-8756-929B1BB50AC2} =>.Empty
O43 - CFD: 08/09/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E14067E4-307F-42BB-B168-6DD41008460B} =>.Empty
O43 - CFD: 27/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E1BD2460-A3FA-4E6C-90A9-B95B82687EE8} =>.Empty
O43 - CFD: 31/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E1F8EA30-0E37-493E-98DA-D9CAD11CF9A1} =>.Empty
O43 - CFD: 19/12/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E21B3FD0-45BD-405A-A228-71741573515B} =>.Empty
O43 - CFD: 15/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E40093E2-163F-452F-BEE2-DEBF488D4FA5} =>.Empty
O43 - CFD: 25/10/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E825C3CB-B07B-4ED3-88AB-4F2EA83B6171} =>.Empty
O43 - CFD: 07/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{E85A9FCD-2C02-4864-B239-C6840861326C} =>.Empty
O43 - CFD: 26/07/2012 - [0] D -- C:\Users\Papa\AppData\Local\{EE970CB5-700E-4726-9520-EDC0F681C232} =>.Empty
O43 - CFD: 16/08/2012 - [0] D -- C:\Users\Papa\AppData\Local\{EF6D7D55-28E4-4F05-9B20-63B7EE08FB45} =>.Empty
O43 - CFD: 10/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{F0C10F5C-A855-4BF0-95D7-24EE6CA336F0} =>.Empty
O43 - CFD: 12/03/2013 - [0] D -- C:\Users\Papa\AppData\Local\{F1CFD698-0E74-43D4-82FF-A65C118BF831} =>.Empty
O43 - CFD: 12/01/2013 - [0] D -- C:\Users\Papa\AppData\Local\{F5148D2E-9586-446E-80DF-669876360525} =>.Empty
O43 - CFD: 01/05/2013 - [0] D -- C:\Users\Papa\AppData\Local\{FAA396C7-0F3C-4DC8-B065-FBD81416DE94} =>.Empty
O43 - CFD: 22/11/2012 - [0] D -- C:\Users\Papa\AppData\Local\{FB06D042-252E-41E2-AD81-746B3A5DADF9} =>.Empty
O43 - CFD: 27/02/2013 - [0] D -- C:\Users\Papa\AppData\Local\{FEA6296E-5A0B-4779-816C-0B04FFA27181} =>.Empty
O43 - CFD: 02/11/2006 - [] RD -- C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 21/12/2007 - [] RD -- C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 02/11/2006 - [] RD -- C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 21/10/2014 - [0] D -- C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie =>PUP.Optional.Mobogenie
O43 - CFD: 03/02/2014 - [] RD -- C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 03/02/2014 - [] D -- C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled

---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 6s
O45 - LFCP:[MD5.C6387A36356F1BC7120E81DCC2452BF8] 07/02/2016 A -- C:\Windows\Prefetch\BACKUPSTACK.EXE-97682A25.pf =>PUP.Optional.MyPCBackup

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 1s
O106 - SIOI: Google Drive Shell extension [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google
O106 - SIOI: Google Drive Shell extension [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google
O106 - SIOI: Google Drive Shell extension [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (6) - 0s
O53 - SMSR:HKLM\...\startupreg\!AVG Anti-Spyware [Key] . (.GRISOFT s.r.o. - AVG Anti-Spyware.) -- C:\Users\Céline\Desktop\Anti virus\AVG\AVG Anti-Spyware 7.5\avgas.exe
O53 - SMSR:HKLM\...\startupreg\Acer Tour Reminder [Key] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe =>.Acer Inc.
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard Co. - Hewlett-Packard Product Assistant.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Co.
O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - HD Audio Control Panel.) -- RtHDVCpl.exe (.not file.) =>.Realtek Semiconductor
O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe =>.RealNetworks, Inc.

---\\ Liste des pilotes du système (119) - 11s
O58 - SDL:2006/11/02 10:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] =>.Microsoft Windows®
O58 - SDL:2002/11/13 08:56:28 N . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\Windows\System32\drivers\alcxwdm.sys [953708] =>.Realtek Semiconductor Corp.
O58 - SDL:2006/11/02 10:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] =>.Microsoft Windows®
O58 - SDL:2013/10/31 07:46:14 A . (.AVAST Software - avast! Filtering TDI driver.) -- C:\Windows\System32\drivers\aswFW.sys [104752] =>.AVAST Software®
O58 - SDL:2016/01/09 10:19:13 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [24016] =>.AVAST Software a.s.®
O58 - SDL:2016/01/09 10:20:05 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [81168] =>.AVAST Software a.s.®
O58 - SDL:2016/01/09 10:19:13 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [55200] =>.AVAST Software a.s.®
O58 - SDL:2016/01/09 10:19:13 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [49776] =>.AVAST Software a.s.®
O58 - SDL:2016/01/22 10:05:07 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [812208] =>.AVAST Software a.s.®
O58 - SDL:2016/01/22 10:05:07 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [449384] =>.AVAST Software a.s.®
O58 - SDL:2016/01/09 10:19:13 A . (.AVAST Software - avast! Stream Filter.) -- C:\Windows\System32\drivers\aswStmXP.sys [165104] =>.AVAST Software a.s.®
O58 - SDL:2016/01/09 10:19:13 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [58016] =>.AVAST Software a.s.®
O58 - SDL:2016/01/09 10:19:13 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [209432] =>.AVAST Software a.s.®
O58 - SDL:2007/07/28 00:36:38 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [2929664] =>.ATI Technologies Inc.
O58 - SDL:2007/05/30 13:10:42 A . (.GRISOFT, s.r.o. - AVG7 Clean Driver.) -- C:\Windows\System32\drivers\AvgAsCln.sys [10872] {67BF2128CC4054D80BAC9E9D79B55372}
O58 - SDL:2014/01/22 02:09:34 A . (.Glarysoft Ltd - Boot Defrag Driver.) -- C:\Windows\System32\drivers\BootDefragDriver.sys [14528] =>.Glarysoft Ltd®
O58 - SDL:2006/11/02 09:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 09:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 09:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 09:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] =>.Microsoft Windows®
O58 - SDL:2011/11/29 15:38:04 A . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\System32\drivers\dgderdrv.sys [20032] =>.SAMSUNG ELECTRONICS CO.,LTD.®
O58 - SDL:2006/11/02 10:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
O58 - SDL:2006/11/02 08:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] =>.Intel Corporation
O58 - SDL:2006/11/02 10:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] =>.Microsoft Windows®
O58 - SDL:2003/05/06 04:15:18 RA . (...) -- C:\Windows\System32\drivers\GVCplDrv.sys [20156]
O58 - SDL:2006/11/02 10:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] =>.Microsoft Windows®
O58 - SDL:2009/02/08 22:42:42 A . (.Guillemot Corporation - Filter Driver for the Hercules Webcams (MJP.) -- C:\Windows\System32\drivers\hxctlflt.sys [99968] =>.Guillemot Corporation
O58 - SDL:2006/11/02 10:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] =>.Microsoft Windows®
O58 - SDL:2008/12/16 20:58:54 A . (...) -- C:\Windows\System32\drivers\LVPr2Mon.sys [25624] =>.Logitech Inc®
O58 - SDL:2008/12/17 07:00:14 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\Windows\System32\drivers\lvrs.sys [768024] =>.Logitech Inc®
O58 - SDL:2008/12/17 07:01:22 A . (.Logitech Inc. - USB Statistic Driver.) -- C:\Windows\System32\drivers\LVUSBSta.sys [41752] =>.Logitech Inc®
O58 - SDL:2008/12/17 07:01:44 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\drivers\lvuvc.sys [6364440] =>.Logitech Inc®
O58 - SDL:2006/11/02 10:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
O58 - SDL:2007/04/24 14:05:59 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [6144] =>.NewTech InfoSystems, Inc.
O58 - SDL:2006/11/02 08:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies
O58 - SDL:2006/11/02 10:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] =>.Microsoft Windows®
O58 - SDL:2007/09/17 15:53:26 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfd.sys [21632] =>.Nokia
O58 - SDL:2009/02/01 14:38:49 A . (.VSO Software - low level access layer for CD/DVD/BD device.) -- C:\Windows\System32\drivers\pcouffin.sys [47360] =>.VSO Software
O58 - SDL:2007/02/06 23:04:48 A . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\System32\drivers\psdfilter.sys [20264] =>.HiTRUST Inc.®
O58 - SDL:2007/02/06 23:04:54 A . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\PSDNServ.sys [16680] =>.HiTRUST Inc.®
O58 - SDL:2007/02/06 23:04:50 A . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\psdvdisk.sys [60712] =>.HiTRUST Inc.®
O58 - SDL:2006/11/02 10:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
O58 - SDL:2007/03/01 09:21:10 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [1744928] =>.Realtek Semiconductor Corp®
O58 - SDL:2007/07/18 23:40:00 A . (.Realtek Semiconductor Corporation - Realtek RTL8187B NDIS Driver.) -- C:\Windows\System32\drivers\RTL8187B.sys [281088] =>.Realtek Semiconductor Corporation
O58 - SDL:2010/06/15 17:56:36 A . (.Realtek Semiconductor Corporation - Realtek RTL8192C USB NDIS Driver.) -- C:\Windows\System32\drivers\RTL8192cu.sys [602216] =>.Realtek Semiconductor Corp®
O58 - SDL:2007/04/23 10:50:50 A . (.Windows (R) Codename Longhorn DDK provider - Realtek Utility I/O Driver.) -- C:\Windows\System32\drivers\RtlProt.sys [25896] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/01/29 13:29:31 A . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\Windows\System32\drivers\SBREDrv.sys [101720] =>.Sunbelt Software, Inc.®
O58 - SDL:2006/11/02 07:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2006/11/02 10:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] =>.Microsoft Windows®
O58 - SDL:2008/07/16 08:59:38 A . (.Copyright 2004-2007 - USBCAMD for Sonix UVC.) -- C:\Windows\System32\drivers\sncduvc.sys [27264]
O58 - SDL:2009/04/22 13:46:42 A . (.Copyright 2004-2007 - UVC Camera Streaming Driver.) -- C:\Windows\System32\drivers\snp2uvc.sys [3482112]
O58 - SDL:2011/10/27 02:25:40 A . (.Google Inc - ADB Interface.) -- C:\Windows\System32\drivers\ssadadb.sys [30312] =>.Google Inc
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - SAMSUNG Android USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssadbus.sys [121064] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [10472] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcmnt.sys [10472] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - SAMSUNG Android USB Modem Filter Driver.) -- C:\Windows\System32\drivers\ssadmdfl.sys [12776] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - SAMSUNG Android USB Modem.) -- C:\Windows\System32\drivers\ssadmdm.sys [136808] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - SAMSUNG Android USB Diagnostic Serial Port.) -- C:\Windows\System32\drivers\ssadserd.sys [114280] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [10344] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:40 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwhnt.sys [10344] =>.MCCI Corporation
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\sscdbus.sys [104648] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdcm.sys [12616] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdcmnt.sys [12616] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - SAMSUNG Mobile Modem Filter Driver.) -- C:\Windows\System32\drivers\sscdmdfl.sys [14920] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - SAMSUNG Mobile Modem WDM.) -- C:\Windows\System32\drivers\sscdmdm.sys [132424] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdwh.sys [12488] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:52 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdwhnt.sys [12488] =>.MCCI Corporation®
O58 - SDL:2011/10/27 02:25:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [78136] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2011/10/27 02:25:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [181432] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2010/10/22 21:46:51 A . (...) -- C:\Windows\System32\drivers\StarOpen.sys [5632]
O58 - SDL:2006/11/02 10:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
O58 - SDL:2002/07/24 04:30:00 A . (.VIA Technologies, Inc. - VIA NT AGP Filter.) -- C:\Windows\System32\drivers\viaagp1.sys [32128] =>.VIA Technologies, Inc.
O58 - SDL:2006/11/02 10:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] =>.Microsoft Windows®
O58 - SDL:2002/10/24 09:07:00 A . (.VIA Technologies, Inc. - VIA USB Host Controller Lower Filter Driver.) -- C:\Windows\System32\drivers\vulfnth.sys [6912] =>.VIA Technologies, Inc.
O58 - SDL:2002/11/13 10:34:06 A . (.VIA Technologies, Inc. - VIA USB Roothub Lower Filter Driver.) -- C:\Windows\System32\drivers\vulfntr.sys [10496] =>.VIA Technologies, Inc.
O58 - SDL:2002/09/09 10:04:36 A . (.Winbond Electronics Corp. - Hardware Doctor Device Driver.) -- C:\Windows\System32\drivers\WBHWDOCT.sys [7312]
O58 - SDL:2006/11/09 02:52:32 A . (.Marvell - NDIS6.0 Miniport Driver for Marvell Yukon E.) -- C:\Windows\System32\drivers\yk60x86.sys [194560] =>.Marvell
O58 - SDL:2006/11/02 08:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 08:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/03/31 08:39:36 A . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [36608]
O58 - SDL:2006/11/02 08:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 08:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 08:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 08:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 08:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 08:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 08:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 08:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 08:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 08:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 08:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
O58 - SDL:2002/05/15 07:29:18 RA . (.VIA Technologies, Inc. - VIA Network Device Monitor Utility.) -- C:\Windows\System32\ntsim.sys [6016] =>.VIA Technologies, Inc.

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 17s
O61 - LFC: 2016/02/07 14:56:02 A . (..) -- C:\Users\Papa\AppData\Local\ATI\ACE\Manifest.Bin [14114]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (16) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe (.not file.)

---\\ Recherche d'infection sur les navigateurs (91) - 33s
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.mywebsearch.prevKwdEnabled", true); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.mywebsearch.prevKwdURL", "https://fr.search.yahoo.com/yhs/search"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.defaultenginename.prev", "Yahoo"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.defaultenginename.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.defaultenginename.tb", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.selectedEngine.prev", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.selectedEngine.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.selectedEngine.tb", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.startup.homepage.prev", "https://fr.yahoo.com/?fr=hp-avast&type=avastb[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.startup.homepage.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.startup.homepage.tb", "http://home.tb.ask.com/index.jhtml?ptb=FA100615[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.startup.page.savedPrev", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.startup.page.tb", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.version.last", "35.0"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.firstKnownVersion", "6.83.5.59598"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.homepage", "http://home.tb.ask.com/index.jhtml?ptb=FA100615-B2B7-4B6C-A1A2-D7D[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.hp.guardType", "HPR"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.hp.user.defined", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.initialized", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installKeysSource", "LocalStorage"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installType", "XPI"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.contextKey", ""); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.installDate", "2015012511"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerId", "^AYY^xdm525^LAFRFR^fr"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerSubId", "flvrunner"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.pixelUrl", "http://download.allin1convert.com/install_pixels.jhtm[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.success", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.toolbarId", "FA100615-B2B7-4B6C-A1A2-D7DCCEF0DA83"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.isCompliantUninstallImplementation", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.lastActivePing", "1422467579834"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.lastKnownVersion", "6.83.5.59598"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.defaultSearch", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.homePageEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.keywordEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.tabEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.partnerPixelFired", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.searchHistory", "cojugugaison du verbe devenir"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.successUrl", "http://flvrunner.com/thankyou.php"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.toolbar.ownSearch", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.toolbar.versionChanged", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.toolbarCollapsed", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._8hMembers_.weather.location", "10001"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.BUTTON_STRUCTURE", "[{\"b\":224531912,\"c\":\"mindspark.magnify\",\"p\":\"L.0\[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.search.defaultenginename.prev", "Yahoo"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.search.defaultenginename.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.search.defaultenginename.tb", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.search.selectedEngine.prev", "Yahoo! (Avast)"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.search.selectedEngine.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.search.selectedEngine.tb", "Ask Web Search"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.startup.homepage.prev", "https://fr.yahoo.com/?fr=hp-avast&type=avastb[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.startup.homepage.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.startup.homepage.tb", "http://home.tb.ask.com/index.jhtml?ptb=37AC7203[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.startup.page.savedPrev", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.startup.page.tb", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.browser.version.last", "43.0"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.coId", "be937444035a452e8fc0173f5da92f1c"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.competitorDNS", "{\"comment\":\"refresh every 1 week (7*24*60*60*1000)\",\"ref[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.firstKnownVersion", "7.38.8.45221"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.homepage", "http://home.tb.ask.com/index.jhtml?ptb=37AC7203-A594-426A-AE2D-731[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.hp.guardType", "HPR"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.hp.user.defined", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.initialized", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installType", "XPI"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.dlpCountryCode", "FR"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.installDate", "2016012712"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.partnerId", "^BNH^xdm045^YYA^fr"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.partnerSubId", "CNDvv5ztycoCFcvpwgodo5kBCQ"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.pixelUrl", "http://free.mytransitguide.com/install_pixels.jhtml?p[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.success", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.installation.toolbarId", "37AC7203-A594-426A-AE2D-731E8E636716"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.lastActivePing", "1454839074709"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.lastKnownVersion", "7.38.8.45221"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.lssState", "{\"previousLocales\":[\"fr\",\"fr-FR\",\"en-US\",\"en\"],\"support[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.options.defaultSearch", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.options.homePageEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.options.keywordEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.options.tabEnabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.partnerPixelFired", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.productDeliveryOption.language", "fr"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.productDeliveryOption.type", "Toolbar"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.successUrl", "http://free.mytransitguide.com/installComplete.jhtml"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.toolbarCollapsed", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark._b7Members_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._b[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "mytransitguide@mindspark.com"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.toolbar.mindspark.lastInstalled", "mytransitguide@mindspark.com"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Papa - dxddji8q.default] user_pref("extensions.wrc.SearchRules.ask.com.url", "^http(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*"); =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (31) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (22) - 3s
O87 - FAEL: "{D585109C-A3E9-47A0-B1F8-BEF827E9F6D7}" [In-None-P6-TRUE] .(.Copyright (C) 2005 - DVAX2Process MFC Application.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\DVAX2Process.exe
O87 - FAEL: "{A3545E1B-C746-447F-9041-B38D5406AB1D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE (.not file.)
O87 - FAEL: "{B27F2B2A-F1C3-4E65-8725-F857C07B7BEF}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE (.not file.)
O87 - FAEL: "TCP Query User{E65F11F5-69C1-46BC-AE12-6DBA77F72130}C:\program files\bitcomet\bitcomet.exe" [In-None-P6-TRUE] .(...) -- C:\program files\bitcomet\bitcomet.exe (.not file.)
O87 - FAEL: "UDP Query User{977BD844-6C4B-4562-8625-F6102F6789EE}C:\program files\bitcomet\bitcomet.exe" [In-None-P17-TRUE] .(...) -- C:\program files\bitcomet\bitcomet.exe (.not file.)
O87 - FAEL: "TCP Query User{E4FC20DB-4EC7-435E-B428-15A4B8DED099}C:\program files\bitcomet\bitcomet.exe" [In-None-P6-TRUE] .(...) -- C:\program files\bitcomet\bitcomet.exe (.not file.)
O87 - FAEL: "UDP Query User{396A3998-870F-43FF-B860-34F09260CF9A}C:\program files\bitcomet\bitcomet.exe" [In-None-P17-TRUE] .(...) -- C:\program files\bitcomet\bitcomet.exe (.not file.)
O87 - FAEL: "TCP Query User{5873C764-DC4B-402C-91DA-6D0ACD53A635}C:\program files\shareaza applications\shareaza\shareaza.exe" [In-None-P6-TRUE] .(...) -- C:\program files\shareaza applications\shareaza\shareaza.exe (.not file.)
O87 - FAEL: "UDP Query User{F425DF6F-56C3-48B3-8805-848357E5BF5F}C:\program files\shareaza applications\shareaza\shareaza.exe" [In-None-P17-TRUE] .(...) -- C:\program files\shareaza applications\shareaza\shareaza.exe (.not file.)
O87 - FAEL: "TCP Query User{F694F7E5-1709-437D-BAD9-88AC62C95BF7}C:\program files\emule\emule.exe" [In-None-P6-TRUE] .(...) -- C:\program files\emule\emule.exe (.not file.)
O87 - FAEL: "UDP Query User{CE5BD6EF-6FC1-4590-960B-7C7BF3DE52F3}C:\program files\emule\emule.exe" [In-None-P17-TRUE] .(...) -- C:\program files\emule\emule.exe (.not file.)
O87 - FAEL: "{E120B793-9397-4F11-9016-3DF382EA7958}" [In-None-P6-TRUE] .(.BitTorrent, Inc. - DNA.) -- C:\Program Files\DNA\btdna.exe {68F0D3AE62D911B2B5843D297C166380}
O87 - FAEL: "{139ABEF6-D629-49C6-AFB1-3DD2C85EF23A}" [In-None-P17-TRUE] .(.BitTorrent, Inc. - DNA.) -- C:\Program Files\DNA\btdna.exe {68F0D3AE62D911B2B5843D297C166380}
O87 - FAEL: "{15D3476D-D39F-47B6-A0E9-8A68417D90C3}" [In-None-P6-TRUE] .(...) -- C:\Program Files\BitTorrent\bittorrent.exe (.not file.)
O87 - FAEL: "{E444BAB8-5B66-432E-96C5-5430A04CBA78}" [In-None-P17-TRUE] .(...) -- C:\Program Files\BitTorrent\bittorrent.exe (.not file.)
O87 - FAEL: "TCP Query User{E2E02634-68D8-4D20-8946-B661E3DA7688}C:\users\céline\program files\dna\btdna.exe" [In-None-P6-TRUE] .(...) -- C:\users\céline\program files\dna\btdna.exe (.not file.)
O87 - FAEL: "UDP Query User{903E0781-C2A2-4525-ABCD-EFD358AFB8D6}C:\users\céline\program files\dna\btdna.exe" [In-None-P17-TRUE] .(...) -- C:\users\céline\program files\dna\btdna.exe (.not file.)
O87 - FAEL: "{96DDC761-611F-4208-A5A1-CA9C4F80C8EB}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe (.not file.)
O87 - FAEL: "{C9340E3D-5922-439C-A913-452A6C4A16A8}" [In-None-P6-TRUE] .(...) -- C:\Program Files\adawaretb\dtUser.exe (.not file.)
O87 - FAEL: "{30DCB649-F02E-4C81-A096-D2CB3AF248DA}" [In-None-P17-TRUE] .(...) -- C:\Program Files\adawaretb\dtUser.exe (.not file.)
O87 - FAEL: "{53C42B4A-9315-4BB5-B62E-9F1B2D20EEE6}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Essentiel B\Clé USB Wifi Essentiel B\RtWLan.exe (.not file.)
O87 - FAEL: "{505DF92E-9398-4E8F-8A6B-D022C6469198}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Essentiel B\Clé USB Wifi Essentiel B\RtWLan.exe (.not file.)

---\\ Enumère les codes produits des logiciels (2) - 3s
O90 - PUC: "A36BD2332F41D564C9E70B0D343523F3" . (.RegistryReviver.) -- C:\Windows\Installer\{332DB63A-14F2-465D-9C7E-B0D04353323F}\ARPPRODUCTICON.exe =>PUP.Optional.RegistryReviver
O90 - PUC: "D2A425F405350054677A7A857BC05100" . (.Search App by Ask.) -- C:\Windows\Installer\{4F524A2D-5350-4500-76A7-A758B70C1500}\ToolbarIcon.exe =>PUP.Optional.BrowserTabSearch

---\\ Scan Additionnel (22) - 0s
HKLM\SOFTWARE\Toolbar Cleaner =>PUP.Optional.ToolbarCleaner
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
C:\Program Files\Advanced System Protector =>PUP.Optional.AdvancedSystemProtector
C:\Program Files\Mobogenie =>PUP.Optional.Mobogenie
C:\Program Files\PC Drivers HeadQuarters =>.Superfluous.PCDriversHeadQuarters
C:\Program Files\predm =>PUP.Optional.Downware
C:\Program Files\Uninstaller =>PUP.Optional.Generic
C:\ProgramData\APN =>Toolbar.Ask
C:\ProgramData\Systweak =>.Superfluous.Systweak
C:\ProgramData\WPM =>PUP.Optional.WpManager
C:\Users\Papa\AppData\Roaming\Systweak =>.Superfluous.Systweak
C:\Users\Papa\AppData\Local\genienext =>PUP.Optional.NextLive
C:\Users\Papa\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie
C:\Users\Papa\AppData\Local\YSearchUtil =>.Superfluous.YahooSearch
C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie =>PUP.Optional.Mobogenie
C:\Windows\Prefetch\BACKUPSTACK.EXE-97682A25.pf =>PUP.Optional.MyPCBackup
C:\Windows\Installer\{332DB63A-14F2-465D-9C7E-B0D04353323F}\ARPPRODUCTICON.exe =>PUP.Optional.RegistryReviver
HKLM\Software\Classes\Installer\Products\A36BD2332F41D564C9E70B0D343523F3 =>PUP.Optional.RegistryReviver
HKLM\Software\Classes\Installer\Features\A36BD2332F41D564C9E70B0D343523F3 =>PUP.Optional.RegistryReviver
C:\Windows\Installer\{4F524A2D-5350-4500-76A7-A758B70C1500}\ToolbarIcon.exe =>PUP.Optional.BrowserTabSearch
HKLM\Software\Classes\Installer\Products\D2A425F405350054677A7A857BC05100 =>PUP.Optional.BrowserTabSearch
HKLM\Software\Classes\Installer\Features\D2A425F405350054677A7A857BC05100 =>PUP.Optional.BrowserTabSearch

---\\ Récapitulatif des éléments trouvés sur votre station (19) - 0s
http://www.nicolascoolman.fr/?p=273 =>Toolbar.DeltaSearch
http://www.nicolascoolman.fr/?p=956 =>PUP.Optional.SearchGol
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.PCDriversHeadQuarters
http://www.nicolascoolman.fr/?p=712 =>PUP.Optional.ToolbarCleaner
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Softonic
http://www.nicolascoolman.fr/?p=336 =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie
http://www.nicolascoolman.fr/?p=401 =>PUP.Optional.Downware
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Generic
http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-systweak/ =>.Superfluous.Systweak
http://www.nicolascoolman.fr/?p=173 =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/?p=537 =>PUP.Optional.NextLive
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.YahooSearch
http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup
http://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch
http://www.nicolascoolman.fr/?p=237 =>PUP.Optional.Bandoo
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.RegistryReviver
http://www.nicolascoolman.fr/pup-browsertabsearch/ =>PUP.Optional.BrowserTabSearch

~ End of the scan, 15244 items in 00h04mn52s (1329)(0)

Publicité


Signaler le contenu de ce document

Publicité