cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.8.1.122 Par Nicolas Coolman (2016/08/01)
~ Démarré par Roselyne (Administrator) (2016/08/02 04:25:21)
~ Site: https://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Roselyne\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Roselyne\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows VISTA, 32-bit Service Pack 2 (Build 6002)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v44.0.2403.157
MSIE: Internet Explorer v9.0.8112.16421

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (3) - 2s
Avira Antivirus v15.0.18.354
Avira Launcher v1.1.67.18988
Malwarebytes Anti-Malware version 2.2.1.1043

---\\ Logiciels d'optimisation (1) - 2s
CCleaner v5.20

---\\ Surveillance de Logiciels (2) - 2s
Adobe Flash Player 22 NPAPI
Adobe Reader X

---\\ Logiciels de partage P2P (1) - 2s
eMule

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 17 Model 3 Stepping 1, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1832.644 MB (37% free)
System Restore: Activé (Enable)
System drive C: has 77 GB () free of 143 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-ROSELYNE
~ User Name: Roselyne
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 77 GB free of 143 GB (System)
~ Drive D: has 1 GB free of 8 GB

---\\ Etat du Centre de Sécurité Windows (12) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 6s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation
[MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation
[MD5.B0D90912ECB3E510AD4F905F721075AA] - 23/04/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1089024] =>.Microsoft Corporation
[MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation
[MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation
[MD5.95F5FF73B076576C41740F1A842B9B57] - 05/08/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows®
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation
[MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation
[MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows®
[MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248832] =>.Microsoft Corporation
[MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation
[MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation
[MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (13) - 5s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Service Google Update (gupdate1c9c5bb9de15147) (gupdate1c9c5bb9de15147) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe =>.Hewlett-Packard
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 186.4.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: Recovery Service for Windows (Recovery Service for Windows) . (.Copyright (C) 2008 - STServices.) - C:\Windows\SMINST\BLService.exe =>.SoftThinks®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: XAudioService (XAudioService) . (.Conexant Systems, Inc. - Modem Audio Service.) - C:\Windows\System32\drivers\XAudio.exe =>.Conexant Systems, Inc.
O23 - Service: Yahoo! Updater (YahooAUService) . (.Yahoo! Inc. - AutoUpater Service Module.) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe =>.Yahoo! Inc.®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (18) - 75s

SR - Auto [14/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [15/07/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Auto [18/07/2016] [ 970632] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [18/07/2016] [ 472112] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [18/07/2016] [ 472112] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG®
SS - Auto [18/07/2016] [ 1251840] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [11/07/2016] [ 309384] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
SS - Auto [04/02/2015] [ 107848] Service Google Update (gupdate1c9c5bb9de15147) (gupdate1c9c5bb9de15147) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [04/02/2015] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [09/10/2008] [ 94208] HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe =>.Hewlett-Packard
SR - Demand [09/01/2008] [ 148832] hpqwmiex (hpqwmiex) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe =>.Hewlett-Packard Company®
SS - Demand [22/10/2004] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe =>.Macrovision Corporation
SR - Auto [23/07/2009] [ 211488] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
SR - Auto [26/04/2008] [ 361808] Recovery Service for Windows (Recovery Service for Windows) . (.Copyright (C) 2008.) - C:\Windows\SMINST\BLService.exe =>.SoftThinks®
SS - Auto [23/05/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [18/10/2007] [ 386560] XAudioService (XAudioService) . (.Conexant Systems, Inc..) - C:\Windows\System32\drivers\XAudio.exe =>.Conexant Systems, Inc.
SR - Auto [09/11/2008] [ 602392] Yahoo! Updater (YahooAUService) . (.Yahoo! Inc..) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe =>.Yahoo! Inc.®

---\\ Processus lancés (27) - 10s
[MD5.51E7F2C26B6ECE61C5241F1F731EAB2B] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 186.4.) -- C:\Windows\System32\nvvsvc.exe [211488] [PID.880] =>.NVIDIA Corporation®
[MD5.51E7F2C26B6ECE61C5241F1F731EAB2B] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 186.4.) -- C:\Windows\System32\nvvsvc.exe [211488] [PID.1364] =>.NVIDIA Corporation®
[MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [472112] [PID.1736] =>.Avira Operations GmbH & Co. KG®
[MD5.8CB896C573FD15AE8B13180DA53E93D2] - (.Hewlett-Packard Development Company, L.P. - HPWAMain Module.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752] [PID.384] =>.Hewlett-Packard Company®
[MD5.7444E0F4C9991AE3711F5FAB5DB257E1] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [831064] [PID.332] =>.Avira Operations GmbH & Co. KG®
[MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.724] =>.Adobe Systems, Incorporated®
[MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [472112] [PID.1052] =>.Avira Operations GmbH & Co. KG®
[MD5.431723F23D0E065BEF502389E8FFDC10] - (.Copyright (C) 2008 - STServices.) -- C:\Windows\SMINST\BLService.exe [361808] [PID.1688] =>.SoftThinks®
[MD5.CD5F291A1161F15896D1A4D63DAFF5DF] - (.Conexant Systems, Inc. - Modem Audio Service.) -- C:\Windows\System32\drivers\XAudio.exe [386560] [PID.2312] =>.Conexant Systems, Inc.
[MD5.DD0042F0C3B606A6A8B92D49AFB18AD6] - (.Yahoo! Inc. - AutoUpater Service Module.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [602392] [PID.2336] =>.Yahoo! Inc.®
[MD5.5F0C87F2FA11C991BB93B84BD02151B3] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [309384] [PID.2356] =>.Avira Operations GmbH & Co. KG®
[MD5.BE99918C2211431C6424EFFD087FD9C7] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848] [PID.2760] =>.Google Inc®
[MD5.4826189CFE3E777146904CD10CEE52E8] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [462824] [PID.3004] =>.Avira Operations GmbH & Co. KG®
[MD5.D50FDAD1E57AA60F1973CFC77D905F0E] - (.Hewlett-Packard Development Company, L.P. - hpqwmiex Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [148832] [PID.4004] =>.Hewlett-Packard Company®
[MD5.8D07F0687318214A3CEF62EA1048D101] - (.Hewlett-Packard Development Company, L.P. - Module to process WiFi messages..) -- C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.exe [316720] [PID.2232] =>.Hewlett-Packard Company®
[MD5.0E452B882FEEFCEFF3A8225B89393D1D] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.Systray.exe [151776] [PID.2456] =>.Avira Operations GmbH & Co. KG®
[MD5.1EDC4865C8003A0251956835273904B1] - (.Copyright (c) 2005 - 2008 Hewlett-Packard Development - HpqToaster Module.) -- C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe [685360] [PID.2168] =>.Hewlett-Packard Company®
[MD5.A19B0BB5A7EB6DF2DD4A0711D36955EE] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208] [PID.1492] =>.Hewlett-Packard
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.2936] =>.Google Inc®
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.2804] =>.Google Inc®
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.3456] =>.Google Inc®
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.2568] =>.Google Inc®
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.3772] =>.Google Inc®
[MD5.8C312FE57D278ABF0372EC9A52966DAB] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Roselyne\Desktop\Downloads\ZHPDiag3.exe [2234880] [PID.3620] =>.Nicolas Coolman
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.1624] =>.Google Inc®
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.4092] =>.Google Inc®
[MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.3252] =>.Google Inc®

---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://google.fr
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (13) - 9s
M0 - MFSP: prefs.js [Roselyne - ear3usxk.default] user_pref( sweetim.toolbar.previous.browser.startup.homepage , http://search.iminent.com/?appId=4E0480E1-DA2D-4FE7-8E86-FB47EEE1D567 =>PUP.Optional.IMBooster
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\toolbar@iadah.com
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (.Nullsoft, Inc. - Winamp Application Detector.) -- C:\Program Files\Mozilla Firefox\Plugins\npwachk.dll =>.Nullsoft, Inc.
P2 - EXT FILE: (...) -- C:\Users\Roselyne\AppData\Roaming\Mozilla\Firefox\Profiles\ear3usxk.default\extensions\chrome.manifest
P2 - EXT FILE: (...) -- C:\Users\Roselyne\AppData\Roaming\Mozilla\Firefox\Profiles\ear3usxk.default\extensions\install.rdf
P2 - EXT FILE: (...) -- C:\Users\Roselyne\AppData\Roaming\Mozilla\Firefox\Profiles\ear3usxk.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\Roselyne\AppData\Roaming\Mozilla\Firefox\Profiles\ear3usxk.default\extensions\abs@avira.com =>.Avira
P2 - EXT: (...) -- C:\Users\Roselyne\AppData\Roaming\Mozilla\Firefox\Profiles\ear3usxk.default\extensions\chrome
P2 - EXT: (...) -- C:\Users\Roselyne\AppData\Roaming\Mozilla\Firefox\Profiles\ear3usxk.default\extensions\components
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_22_0_0_209.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@viewpoint.com/VMP] - (.Copyright © 2000.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll =>PUP.Optional.MetaStream

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 5s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} Orphan =>.Superfluous.Orphan
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (7) - 24s
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} (Orphan)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll =>.Hewlett-Packard Company®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: EOBHO - {C10DC1F4-CCDF-4224-A24D-B23AFC3573C8} (Orphan)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll =>.Oracle America, Inc.®
O2 - BHO: FINDIZER - {F4A9D6FE-8C16-4D72-B845-7AE0FFAB2DAB} . (.Prestafind - Lors de votre navigation sur les sites marc.) -- C:\Program Files\AlloPagesInstaller\BHO.dll =>.Prestafind
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll =>.Hewlett-Packard Company®

---\\ Internet Explorer, Barre d'outil (1) - 1s
O3 - Toolbar: 0xEF44FA216D37534D9B0F8A89D3229068 - [HKCU]{21FA44EF-376D-4D53-9B0F-8A89D3229068} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (8) - 1s
O4 - HKLM\..\Run: [hpWirelessAssistant] . (.Hewlett-Packard Development Company, L.P. - HPWAMain Module.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe =>.Hewlett-Packard Company®
O4 - HKLM\..\Run: [hpqSRMon] (Orphan)
O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation

---\\ Raccourcis Global Startup (27) - 17s
O4 - GS\Desktop [Administrateur]: Documents - Raccourci.lnk . (...) C:\Users\Roselyne\Documents
O4 - GS\Desktop [Administrateur]: FALSE DAWN - MIX V1 - Raccourci.lnk . (...) C:\Users\Roselyne\Desktop\Downloads\FALSE DAWN - MIX V1.mp3
O4 - GS\Desktop [Administrateur]: Free Spider.lnk . (.TreeCardGames.com - Free Spider.) C:\Program Files\Free Spider\FreeSpider.exe
O4 - GS\Desktop [Administrateur]: Incoming - Raccourci.lnk . (...) C:\Users\Roselyne\Desktop\Downloads\eMule\Incoming
O4 - GS\Desktop [Administrateur]: Pictures.lnk . (...) C:\Users\Roselyne\Pictures
O4 - GS\Desktop [Administrateur]: Traitement de texte Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works Word Processor.) C:\Windows\Installer\{3B160861-7250-451E-B5EE-8B92BF30A710}\WksWP.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Roselyne\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\sendTo [Administrateur]: IsoBuster.lnk . (.Smart Projects - The Ultimate CD/DVD Recovery tool.) C:\Program Files\Smart Projects\IsoBuster\IsoBuster.exe =>.Smart Projects
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\Desktop [Roselyne]: Documents - Raccourci.lnk . (...) C:\Users\Roselyne\Documents
O4 - GS\Desktop [Roselyne]: FALSE DAWN - MIX V1 - Raccourci.lnk . (...) C:\Users\Roselyne\Desktop\Downloads\FALSE DAWN - MIX V1.mp3
O4 - GS\Desktop [Roselyne]: Free Spider.lnk . (.TreeCardGames.com - Free Spider.) C:\Program Files\Free Spider\FreeSpider.exe
O4 - GS\Desktop [Roselyne]: Incoming - Raccourci.lnk . (...) C:\Users\Roselyne\Desktop\Downloads\eMule\Incoming
O4 - GS\Desktop [Roselyne]: Pictures.lnk . (...) C:\Users\Roselyne\Pictures
O4 - GS\Desktop [Roselyne]: Traitement de texte Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works Word Processor.) C:\Windows\Installer\{3B160861-7250-451E-B5EE-8B92BF30A710}\WksWP.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Roselyne]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Roselyne\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Roselyne]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\sendTo [Roselyne]: IsoBuster.lnk . (.Smart Projects - The Ultimate CD/DVD Recovery tool.) C:\Program Files\Smart Projects\IsoBuster\IsoBuster.exe =>.Smart Projects
O4 - GS\sendTo [Roselyne]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\CommonDesktop [Public]: Avira Launcher.lnk . (.Avira Operations GmbH & Co. KG - Avira Launcher.) C:\Program Files\Avira\Launcher\Avira.Systray.exe =>.Avira Operations GmbH & Co. KG®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Defraggler.lnk . (.Piriform Ltd - Defraggler.) C:\Program Files\Defraggler\Defraggler.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth\client\googleearth.exe =>.Google
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (...) C:\Program Files\VideoLAN\VLC\vlc.exe
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{72C9C2A0-1AF5-46C3-95A4-8B1972ED8903}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{B5DB914F-65CB-42C7-A9F7-6DF6442A9BF6}: DhcpNameServer = 212.27.40.241 212.27.40.240

---\\ Protocole additionnel (21) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Logiciels installés (100) - 55s
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {2614F54E-A828-49FA-93BA-45A3F756BFAA} =>.Hewlett-Packard
O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E} =>.Hewlett-Packard
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 22 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader X (10.1.16) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- {1BDC9633-895B-4842-BCB6-8FA1EC2A3C5A} =>.Adobe Systems, Inc.
O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} =>.Atheros
O42 - Logiciel: Avira Antivirus v15.0.18.354 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Launcher v1.1.67.18988 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {92a7fd6b-31e5-472f-862e-79214c5032ef} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Launcher v1.1.67.18988 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {A6634D1D-EA57-45DE-AF8F-0EDD35B912C3} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: BufferChm - (.Hewlett-Packard.) [HKLM] -- {687FEF8A-8597-40b4-832C-297EA3F35817} =>.Hewlett-Packard
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {415B2719-AD3A-4944-B404-C472DB6085B3} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {83770D14-21B9-44B3-8689-F7B523F94560} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E} =>.Cisco Systems, Inc.
O42 - Logiciel: CodeStuff Starter - (.CodeStuff.) [HKLM] -- CodeStuff Starter =>.CodeStuff
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM] -- CNXT_AUDIO_HDA =>.Conexant
O42 - Logiciel: Copy - (.Hewlett-Packard.) [HKLM] -- {F42CD69D-E393-47c8-B2CD-B139C4ADA9A8} =>.Hewlett-Packard
O42 - Logiciel: CustomerResearchQFolder - (.Hewlett-Packard.) [HKLM] -- {6F5E2F4A-377D-4700-B0E3-8F7F7507EA15} =>.Hewlett-Packard
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler =>.Piriform Ltd®
O42 - Logiciel: Destination Component - (.Hewlett-Packard.) [HKLM] -- {D99A8E3A-AE5A-4692-8B19-6F16D454E240} =>.Hewlett-Packard
O42 - Logiciel: Détection de l'application Winamp - (.Nullsoft, Inc.) [HKCU] -- Winamp Detect =>.Nullsoft, Inc
O42 - Logiciel: DeviceDiscovery - (.Hewlett-Packard.) [HKLM] -- {52A69E11-7CEB-4a7d-9607-68BA4F39A89B} =>.Hewlett-Packard
O42 - Logiciel: DeviceManagementQFolder - (.Hewlett-Packard.) [HKLM] -- {AB5D51AE-EBC3-438D-872C-705C7C2084B0} =>.Hewlett-Packard
O42 - Logiciel: DJ_AIO_03_F2200_ProductContext - (.Hewlett-Packard.) [HKLM] -- {eca3039b-e429-420f-bd5e-7dec0683fc32} =>.Hewlett-Packard
O42 - Logiciel: DJ_AIO_03_F2200_Software - (.Hewlett-Packard.) [HKLM] -- {db18dc72-cd20-4801-be82-f5d2caeec4d7} =>.Hewlett-Packard
O42 - Logiciel: DJ_AIO_03_F2200_Software_Min - (.Hewlett-Packard.) [HKLM] -- {c6922d7f-c698-4d9e-9671-8b3de04d1511} =>.Hewlett-Packard
O42 - Logiciel: eMule - (...) [HKLM] -- eMule
O42 - Logiciel: ESU for Microsoft Vista - (.Hewlett-Packard.) [HKLM] -- {3877C901-7B90-4727-A639-B6ED2DD59D43} =>.Hewlett-Packard
O42 - Logiciel: eSupportQFolder - (.Hewlett-Packard.) [HKLM] -- {66E6CE0C-5A1E-430C-B40A-0C90FF1804A8} =>.Hewlett-Packard
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E} =>.Google
O42 - Logiciel: GPBaseService - (.Hewlett-Packard.) [HKLM] -- {18669FF9-C8FE-407a-9F70-E674896B1DB4} =>.Hewlett-Packard
O42 - Logiciel: HDAUDIO Soft Data Fax Modem with SmartCP - (...) [HKLM] -- CNXT_MODEM_HDAUDIO_HERMOSA_HSF
O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {B16DA0F8-26BC-4FFC-9363-1D9F3E6C3E21} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Participation Program 10.0 - (.HP.) [HKLM] -- HPExtendedCapabilities =>.Hewlett Packard®
O42 - Logiciel: HP Deskjet F2200 All-In-One Driver Software 10.0 Rel .3 - (.HP.) [HKLM] -- {D77D43B5-ED55-426b-B67B-E21F804F6102} =>.Hewlett Packard®
O42 - Logiciel: HP Doc Viewer - (.Hewlett-Packard.) [HKLM] -- {082702D5-5DD8-4600-BCE5-48B15174687F} =>.Hewlett-Packard
O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM] -- {51E5C397-0AA0-48DD-9CB6-7259AFFDFB0A} =>.Hewlett-Packard
O42 - Logiciel: HP Help and Support - (.Hewlett-Packard.) [HKLM] -- {8DF92D68-F8EE-4F9C-89A2-26254C1C4B6B} =>.Hewlett-Packard
O42 - Logiciel: HP Imaging Device Functions 10.0 - (.HP.) [HKLM] -- HP Imaging Device Functions =>.Hewlett Packard®
O42 - Logiciel: HP Photosmart Essential 2.5 - (.Hewlett-Packard.) [HKLM] -- {BAD0FA60-09CF-4411-AE6A-C2844C8812FA} =>.Hewlett-Packard
O42 - Logiciel: HP Photosmart Essential 2.5 - (.HP.) [HKLM] -- HP Photosmart Essential =>.Hewlett Packard®
O42 - Logiciel: HP Quick Launch Buttons 6.40 D3 - (.Hewlett-Packard.) [HKLM] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355} =>.Hewlett-Packard Company®
O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM] -- HP Smart Web Printing =>.Hewlett Packard®
O42 - Logiciel: HP Solution Center 10.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools =>.Hewlett Packard®
O42 - Logiciel: HP Total Care Advisor - (.Hewlett-Packard.) [HKLM] -- {f32502b5-5b64-4882-bf61-77f23edcac4f} =>.Hewlett-Packard
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {DDD5104F-1C44-49EB-9E6B-29EC5D27658B} =>.Hewlett-Packard
O42 - Logiciel: HP User Guides 0118 - (.Hewlett-Packard.) [HKLM] -- {B6D0B141-B2BE-4DD0-B08F-B9186F3E36B3} =>.Hewlett-Packard
O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM] -- {340F521E-3576-4E1A-B75C-EB0ACF751379} =>.Hewlett-Packard
O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367} =>.Hewlett-Packard
O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} =>.Microsoft
O42 - Logiciel: HPNetworkAssistant - (.Hewlett-Packard..) [HKLM] -- {228C6B46-64E2-404E-898A-EF0830603EF4} =>.Hewlett-Packard.
O42 - Logiciel: HPProductAssistant - (.Hewlett-Packard.) [HKLM] -- {36FDBE6E-6684-462b-AE98-9A39A1B200CC} =>.Hewlett-Packard
O42 - Logiciel: HPSSupply - (.Hewlett-Packard.) [HKLM] -- {B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF} =>.Hewlett-Packard
O42 - Logiciel: Java 7 Update 45 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF} =>.Oracle
O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java(TM) 6 Update 29 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216013FF} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java(TM) 6 Update 5 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160050} =>.Sun Microsystems, Inc.
O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-211328764D10} =>.Oracle Corporation
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: MarketResearch - (.Hewlett-Packard.) [HKLM] -- {D2E0F0CC-6BE0-490b-B08B-9267083E34C9} =>.Hewlett-Packard
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710} =>.Microsoft Corporation
O42 - Logiciel: MSVCSetup - (.HP.) [HKLM] -- {3700194C-C5DD-439A-BE06-A66960CA4C70} =>.HP
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers =>.NVIDIA Corporation®
O42 - Logiciel: PhotoMail Maker - (.IncrediMail Ltd..) [HKLM] -- PhotoMail =>.IncrediMail Ltd.
O42 - Logiciel: PhotoMail Maker - (.Nom de votre société.) [HKLM] -- {15382D89-6EF6-4D21-9484-B500F2B10E46}
O42 - Logiciel: PSSWCORE - (.Hewlett-Packard.) [HKLM] -- {34BFB099-07B2-4E95-A673-7362D60866A2} =>.Hewlett-Packard
O42 - Logiciel: PVSonyDll - (.NVIDIA Corporation.) [HKLM] -- {3D3E663D-4E7E-4577-A560-7ECDDD45548A} =>.NVIDIA Corporation
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D} =>.Macrovision Corporation®
O42 - Logiciel: Scan - (.Hewlett-Packard.) [HKLM] -- {80533B67-C407-485D-8B5D-63BB8ED9D878} =>.Hewlett-Packard
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies =>.Hewlett Packard®
O42 - Logiciel: Skype™ 7.25 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: SmartWebPrinting - (.Hewlett-Packard.) [HKLM] -- {8FF6F5CA-4E30-4E3B-B951-204CAAA2716A} =>.Hewlett-Packard
O42 - Logiciel: SolutionCenter - (.Hewlett-Packard.) [HKLM] -- {A5AB9D5E-52E2-440e-A3ED-9512E253C81A} =>.Hewlett-Packard
O42 - Logiciel: Status - (.Hewlett-Packard.) [HKLM] -- {A0B9F8DF-C949-45ed-9808-7DC5C0C19C81} =>.Hewlett-Packard
O42 - Logiciel: SweetIM for Messenger 3.7 - (.SweetIM Technologies Ltd..) [HKLM] -- {A0C9DF2B-89B5-4483-8983-18A68200F1B4} =>PUP.Optional.SweetIM
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey =>.Synaptics
O42 - Logiciel: Toolbox - (.Hewlett-Packard.) [HKLM] -- {0F7C2E47-089E-4d23-B9F7-39BE00100776} =>.Hewlett-Packard
O42 - Logiciel: TrayApp - (.Hewlett-Packard.) [HKLM] -- {5ACE69F0-A3E8-44eb-88C1-0A841E700180} =>.Hewlett-Packard
O42 - Logiciel: UnloadSupport - (.Hewlett-Packard.) [HKLM] -- {8A85DEAD-7C1F-4368-881C-72AC74CB2E91} =>.Hewlett-Packard
O42 - Logiciel: VideoToolkit01 - (.Hewlett-Packard.) [HKLM] -- {E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC} =>.Hewlett-Packard
O42 - Logiciel: Viewpoint Media Player - (...) [HKLM] -- ViewpointMediaPlayer =>PUP.Optional.MetaStream
O42 - Logiciel: VLC media player 0.9.9 - (.VideoLAN Team.) [HKLM] -- VLC media player =>.VideoLAN Team
O42 - Logiciel: WD Diagnostics - (.Western Digital Technologies.) [HKLM] -- {0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B} =>.Western Digital Technologies
O42 - Logiciel: WebReg - (.Hewlett-Packard.) [HKLM] -- {CCB9B81A-167F-4832-B305-D2A0430840B3} =>.Hewlett-Packard
O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM] -- Winamp =>.Nullsoft, Inc
O42 - Logiciel: WinZip 14.0 - (.WinZip Computing, S.L. .) [HKLM] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240BB} =>.WinZip Computing, S.L.
O42 - Logiciel: Yahoo! Software Update - (...) [HKLM] -- Yahoo! Software Update

---\\ HKCU & HKLM Software Keys (128) - 55s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\America Online
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\Atheros
HKLM\SOFTWARE\Avira
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\Conexant
HKLM\SOFTWARE\Conexant Systems Inc
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\CXT
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\Debug
HKLM\SOFTWARE\EasyBits
HKLM\SOFTWARE\Exent
HKLM\SOFTWARE\Full Tilt Poker
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\HP
HKLM\SOFTWARE\HPQ
HKLM\SOFTWARE\ICE
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\LightScribe
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MetaStream =>PUP.Optional.MetaStream
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\Mircrosoft
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\muvee Technologies
HKLM\SOFTWARE\Nico Mak Computing
HKLM\SOFTWARE\Notepad
HKLM\SOFTWARE\Nullsoft
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Oracle
HKLM\SOFTWARE\Panda Software
HKLM\SOFTWARE\Photomail
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\PTECH
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RealVNC
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\SymDebug
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\TeamViewer
HKLM\SOFTWARE\UBISOFT
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Viewpoint =>PUP.Optional.MetaStream
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\WholeSecurity
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\WOW6432Node
HKLM\SOFTWARE\X-AVCSD
HKLM\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\CodeStuff
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\eMule
HKCU\SOFTWARE\Full Tilt Poker
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Grand Virtual =>PUP.Optional.GrandVirtual
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\IM
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail
HKCU\SOFTWARE\IncrediMail
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\keyhole.com
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LightScribe
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\NirSoft
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\PartyFrance =>.Superfluous.OnlineGames
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RealVNC
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Smart Projects
HKCU\SOFTWARE\Softthinks
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\telecharger-gratuit
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Winamp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WinZip Computing
HKCU\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\yahooinstall
HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Findizer
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Macromedia
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.QuickShare
HKCU\SOFTWARE\AppDataLow\Software\TotalRecipeSearch_14EI
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contenu des dossiers Programmes (279) - 121s
O43 - CFD: 05/08/2008 - [] D -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD: 02/08/2012 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 29/12/2015 - [] D -- C:\Program Files\AlloPagesInstaller
O43 - CFD: 19/01/2009 - [] D -- C:\Program Files\Atheros
O43 - CFD: 30/07/2016 - [] D -- C:\Program Files\Avira =>.Avira Operations GmbH & Co. KG®
O43 - CFD: 13/03/2012 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 19/01/2009 - [] D -- C:\Program Files\Cisco
O43 - CFD: 13/03/2012 - [] D -- C:\Program Files\CodeStuff
O43 - CFD: 19/07/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 19/01/2009 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.®
O43 - CFD: 24/08/2015 - [0] D -- C:\Program Files\CyberLink
O43 - CFD: 05/08/2012 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd®
O43 - CFD: 26/04/2009 - [] D -- C:\Program Files\eMule
O43 - CFD: 24/04/2009 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 26/04/2009 - [] D -- C:\Program Files\Free Spider
O43 - CFD: 24/03/2013 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 30/07/2015 - [0] D -- C:\Program Files\GUMB754.tmp
O43 - CFD: 04/08/2012 - [] D -- C:\Program Files\Hewlett-Packard =>.Hewlett-Packard Company®
O43 - CFD: 30/08/2011 - [] D -- C:\Program Files\HP =>.Hewlett Packard®
O43 - CFD: 16/03/2010 - [] D -- C:\Program Files\HP Games
O43 - CFD: 24/08/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation®
O43 - CFD: 16/06/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 11/11/2014 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 30/08/2011 - [0] D -- C:\Program Files\Microsoft
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 26/04/2009 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 10/10/2012 - [] D -- C:\Program Files\Microsoft Works =>.Microsoft Corporation®
O43 - CFD: 09/02/2011 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 18/08/2010 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 25/08/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 26/04/2009 - [] D -- C:\Program Files\MSECache
O43 - CFD: 24/04/2009 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 24/04/2009 - [] RD -- C:\Program Files\Online Services =>.Skype Technologies SA®
O43 - CFD: 02/08/2012 - [] D -- C:\Program Files\Oracle =>.Oracle America, Inc.®
O43 - CFD: 18/12/2009 - [] D -- C:\Program Files\PhotoMail Maker =>.IncrediMail Ltd.®
O43 - CFD: 09/08/2012 - [0] D -- C:\Program Files\PokerStars.FR
O43 - CFD: 23/12/2012 - [] D -- C:\Program Files\PySolFC Solitaire
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 19/07/2016 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl®
O43 - CFD: 06/03/2014 - [] RD -- C:\Program Files\Skype(24)
O43 - CFD: 15/03/2010 - [] D -- C:\Program Files\Smart Projects
O43 - CFD: 25/04/2009 - [] D -- C:\Program Files\StartupStar
O43 - CFD: 19/01/2009 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 25/04/2009 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 24/04/2009 - [] D -- C:\Program Files\Viewpoint =>PUP.Optional.MetaStream
O43 - CFD: 16/03/2010 - [] D -- C:\Program Files\Western Digital Technologies
O43 - CFD: 14/03/2012 - [] D -- C:\Program Files\Winamp =>.Nullsoft Inc.®
O43 - CFD: 14/03/2012 - [] D -- C:\Program Files\Winamp Detect
O43 - CFD: 17/03/2010 - [] D -- C:\Program Files\Windows Calendar
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files\Windows Collaboration
O43 - CFD: 17/03/2010 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows®
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 22/07/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 24/04/2009 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 17/03/2010 - [] D -- C:\Program Files\Windows Photo Gallery
O43 - CFD: 18/03/2010 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 17/03/2010 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 16/03/2012 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 15/03/2010 - [] D -- C:\Program Files\WinZip =>.WinZip Computing®
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files\WinZip Driver Updater
O43 - CFD: 29/08/2011 - [] D -- C:\Program Files\Yahoo!
O43 - CFD: 13/01/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 24/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 30/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 02/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 13/03/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter
O43 - CFD: 26/04/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 25/02/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Spider
O43 - CFD: 02/09/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 24/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 04/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 15/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail
O43 - CFD: 10/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 29/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 26/04/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 10/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
O43 - CFD: 05/08/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee
O43 - CFD: 24/04/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
O43 - CFD: 24/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PySolFC Solitaire
O43 - CFD: 05/08/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
O43 - CFD: 19/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 15/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Projects
O43 - CFD: 30/08/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 25/04/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 15/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
O43 - CFD: 01/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Driver Updater
O43 - CFD: 23/12/2012 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 13/07/2011 - [] D -- C:\ProgramData\3AB4
O43 - CFD: 05/08/2012 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 25/04/2009 - [0] D -- C:\ProgramData\AOL
O43 - CFD: 24/08/2015 - [0] D -- C:\ProgramData\APN =>Toolbar.Ask
O43 - CFD: 29/10/2012 - [] D -- C:\ProgramData\Apple
O43 - CFD: 23/12/2012 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 26/04/2009 - [] D -- C:\ProgramData\Arcade Lab
O43 - CFD: 19/01/2009 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 30/07/2016 - [] D -- C:\ProgramData\Avira
O43 - CFD: 29/05/2013 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 24/04/2009 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 30/08/2011 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 26/04/2009 - [] D -- C:\ProgramData\eMule
O43 - CFD: 24/04/2009 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 18/03/2010 - [] D -- C:\ProgramData\HP
O43 - CFD: 18/03/2010 - [] D -- C:\ProgramData\HP Product Assistant
O43 - CFD: 21/11/2009 - [] D -- C:\ProgramData\IM
O43 - CFD: 21/11/2009 - [] D -- C:\ProgramData\IncrediMail
O43 - CFD: 25/04/2009 - [] D -- C:\ProgramData\LightScribe
O43 - CFD: 17/06/2014 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 24/04/2009 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 24/08/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 26/04/2009 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 24/04/2009 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 03/08/2012 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 05/08/2008 - [] D -- C:\ProgramData\muvee Technologies
O43 - CFD: 29/08/2011 - [] D -- C:\ProgramData\Norton
O43 - CFD: 14/07/2011 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 11/11/2014 - [0] D -- C:\ProgramData\Oracle
O43 - CFD: 30/07/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 18/12/2009 - [] D -- C:\ProgramData\PhotoMail
O43 - CFD: 19/07/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 02/08/2013 - [] D -- C:\ProgramData\Software =>PUP.Optional.Boxore
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 04/04/2010 - [] D -- C:\ProgramData\Sun
O43 - CFD: 29/08/2011 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 24/04/2009 - [] D -- C:\ProgramData\Viewpoint =>PUP.Optional.MetaStream
O43 - CFD: 25/04/2009 - [] D -- C:\ProgramData\WEBREG
O43 - CFD: 16/03/2010 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 14/12/2011 - [] D -- C:\ProgramData\WindowsSearch
O43 - CFD: 24/12/2013 - [] D -- C:\ProgramData\WinZip
O43 - CFD: 21/05/2011 - [] D -- C:\ProgramData\Yahoo!
O43 - CFD: 05/08/2008 - [] D -- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
O43 - CFD: 10/12/2011 - [] D -- C:\ProgramData\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
O43 - CFD: 02/08/2012 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 01/08/2012 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 25/04/2009 - [] D -- C:\Program Files\Common Files\Hewlett-Packard
O43 - CFD: 18/03/2010 - [] D -- C:\Program Files\Common Files\HP
O43 - CFD: 05/08/2008 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 10/07/2014 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 24/08/2015 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/03/2012 - [] D -- C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 19/07/2016 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 29/08/2011 - [] D -- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 21/10/2010 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 05/08/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\Adobe
O43 - CFD: 29/10/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\Apple Computer
O43 - CFD: 08/04/2015 - [] D -- C:\Users\Roselyne\AppData\Roaming\Avira
O43 - CFD: 12/04/2011 - [] D -- C:\Users\Roselyne\AppData\Roaming\CoSoSys
O43 - CFD: 18/03/2010 - [] D -- C:\Users\Roselyne\AppData\Roaming\CyberLink
O43 - CFD: 26/08/2015 - [] D -- C:\Users\Roselyne\AppData\Roaming\dvdcss
O43 - CFD: 27/11/2010 - [] D -- C:\Users\Roselyne\AppData\Roaming\Fighters
O43 - CFD: 28/01/2013 - [] D -- C:\Users\Roselyne\AppData\Roaming\Free Spider TreeCardGames
O43 - CFD: 14/03/2015 - [] D -- C:\Users\Roselyne\AppData\Roaming\Hewlett-Packard
O43 - CFD: 25/04/2009 - [] D -- C:\Users\Roselyne\AppData\Roaming\HP
O43 - CFD: 12/02/2010 - [0] D -- C:\Users\Roselyne\AppData\Roaming\HPAppData
O43 - CFD: 13/03/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\HpUpdate
O43 - CFD: 02/08/2013 - [] D -- C:\Users\Roselyne\AppData\Roaming\Icones
O43 - CFD: 24/04/2009 - [] D -- C:\Users\Roselyne\AppData\Roaming\Identities
O43 - CFD: 24/04/2009 - [] D -- C:\Users\Roselyne\AppData\Roaming\Macromedia
O43 - CFD: 17/06/2014 - [0] D -- C:\Users\Roselyne\AppData\Roaming\Malwarebytes
O43 - CFD: 05/08/2012 - [] SD -- C:\Users\Roselyne\AppData\Roaming\Microsoft
O43 - CFD: 30/08/2011 - [] D -- C:\Users\Roselyne\AppData\Roaming\Mozilla
O43 - CFD: 30/08/2011 - [] D -- C:\Users\Roselyne\AppData\Roaming\Mozilla-Cache
O43 - CFD: 24/08/2015 - [0] D -- C:\Users\Roselyne\AppData\Roaming\Nico Mak Computing
O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Roselyne\AppData\Roaming\PeerNetworking
O43 - CFD: 23/12/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\PySolFC
O43 - CFD: 27/01/2013 - [0] D -- C:\Users\Roselyne\AppData\Roaming\ShieldApps
O43 - CFD: 13/04/2014 - [] D -- C:\Users\Roselyne\AppData\Roaming\Shortcut
O43 - CFD: 25/07/2016 - [] D -- C:\Users\Roselyne\AppData\Roaming\Skype
O43 - CFD: 13/03/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\skypePM
O43 - CFD: 24/04/2009 - [] D -- C:\Users\Roselyne\AppData\Roaming\Symantec
O43 - CFD: 20/01/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\TeamViewer
O43 - CFD: 26/04/2009 - [] D -- C:\Users\Roselyne\AppData\Roaming\Template
O43 - CFD: 14/03/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\Todae
O43 - CFD: 25/04/2009 - [] D -- C:\Users\Roselyne\AppData\Roaming\vlc
O43 - CFD: 31/08/2011 - [] D -- C:\Users\Roselyne\AppData\Roaming\wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1
O43 - CFD: 02/08/2016 - [] D -- C:\Users\Roselyne\AppData\Roaming\Winamp
O43 - CFD: 13/12/2010 - [] D -- C:\Users\Roselyne\AppData\Roaming\Windows Live Writer
O43 - CFD: 08/02/2014 - [] D -- C:\Users\Roselyne\AppData\Roaming\WinZip
O43 - CFD: 02/08/2016 - [] D -- C:\Users\Roselyne\AppData\Roaming\ZHP
O43 - CFD: 25/12/2013 - [] D -- C:\Users\Roselyne\AppData\Local\Adobe
O43 - CFD: 29/10/2012 - [] D -- C:\Users\Roselyne\AppData\Local\Apple
O43 - CFD: 29/10/2012 - [] D -- C:\Users\Roselyne\AppData\Local\Apple Computer
O43 - CFD: 24/04/2009 - [0] SHD -- C:\Users\Roselyne\AppData\Local\Application Data
O43 - CFD: 26/04/2009 - [] D -- C:\Users\Roselyne\AppData\Local\Apps
O43 - CFD: 26/04/2009 - [] D -- C:\Users\Roselyne\AppData\Local\eMule
O43 - CFD: 19/03/2010 - [] D -- C:\Users\Roselyne\AppData\Local\FullTiltPoker
O43 - CFD: 16/09/2015 - [] D -- C:\Users\Roselyne\AppData\Local\Google
O43 - CFD: 11/09/2010 - [] D -- C:\Users\Roselyne\AppData\Local\Hewlett-Packard
O43 - CFD: 24/04/2009 - [0] SHD -- C:\Users\Roselyne\AppData\Local\Historique
O43 - CFD: 25/04/2009 - [] D -- C:\Users\Roselyne\AppData\Local\HP
O43 - CFD: 21/11/2009 - [] D -- C:\Users\Roselyne\AppData\Local\IM
O43 - CFD: 13/07/2011 - [] D -- C:\Users\Roselyne\AppData\Local\iMesh =>.Superfluous.iMesh
O43 - CFD: 13/07/2009 - [] D -- C:\Users\Roselyne\AppData\Local\IsolatedStorage
O43 - CFD: 14/12/2012 - [] D -- C:\Users\Roselyne\AppData\Local\Macromedia
O43 - CFD: 01/08/2016 - [] D -- C:\Users\Roselyne\AppData\Local\Microsoft
O43 - CFD: 23/04/2010 - [] D -- C:\Users\Roselyne\AppData\Local\Microsoft Games
O43 - CFD: 23/07/2009 - [] D -- C:\Users\Roselyne\AppData\Local\Mozilla
O43 - CFD: 27/11/2010 - [0] D -- C:\Users\Roselyne\AppData\Local\PackageAware =>PUP.Optional.BearShare
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\PokerStars.FR
O43 - CFD: 19/07/2016 - [0] D -- C:\Users\Roselyne\AppData\Local\Skype
O43 - CFD: 10/01/2013 - [] D -- C:\Users\Roselyne\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 02/08/2016 - [] D -- C:\Users\Roselyne\AppData\Local\Temp
O43 - CFD: 24/04/2009 - [0] SHD -- C:\Users\Roselyne\AppData\Local\Temporary Internet Files
O43 - CFD: 25/03/2010 - [] D -- C:\Users\Roselyne\AppData\Local\VirtualStore
O43 - CFD: 05/07/2014 - [0] D -- C:\Users\Roselyne\AppData\Local\VNT
O43 - CFD: 09/08/2012 - [] D -- C:\Users\Roselyne\AppData\Local\Windows Live
O43 - CFD: 01/12/2010 - [] D -- C:\Users\Roselyne\AppData\Local\Windows Live Writer
O43 - CFD: 16/06/2011 - [] D -- C:\Users\Roselyne\AppData\Local\WinZip
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{046C5750-45DE-4565-9A63-EE8D2275B13F} =>.Superfluous.Empty
O43 - CFD: 03/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{09D8DD6C-ED75-436D-88E1-BF060DAAFF73} =>.Superfluous.Empty
O43 - CFD: 30/08/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{1C400F02-D88C-40D4-8F84-9655192E975B} =>.Superfluous.Empty
O43 - CFD: 07/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{1E7FA104-DEAA-4112-91CC-8024006D8D93} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{267ED5CE-A718-44A8-BF43-9663A67C8287} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{2983C8D3-8FB8-438B-BF7C-5325D4826279} =>.Superfluous.Empty
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{30F9F125-9F19-449D-9C63-673C2F581C07} =>.Superfluous.Empty
O43 - CFD: 30/08/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{32E9CE14-426B-441B-A397-2D0394EF9CBB} =>.Superfluous.Empty
O43 - CFD: 30/08/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{340E0857-8C96-438F-9BA1-79660F71B271} =>.Superfluous.Empty
O43 - CFD: 30/01/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{35B9F21B-0613-4B3B-BD60-2765B5B395C4} =>.Superfluous.Empty
O43 - CFD: 13/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{3B3865A5-F418-4118-91B8-9C4D6994BE94} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{3BACE8B8-051A-442A-9B07-3F3ACA3156BE} =>.Superfluous.Empty
O43 - CFD: 15/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{3FCA3358-4E9C-4D4D-9175-4B5347A065B3} =>.Superfluous.Empty
O43 - CFD: 15/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{4BBA5884-7F0E-4425-97C4-135FEE510659} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{4EF72687-494F-4F6D-A80F-44A9E614B4EF} =>.Superfluous.Empty
O43 - CFD: 07/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{54628CC8-564C-425B-A092-560D189EAFAA} =>.Superfluous.Empty
O43 - CFD: 07/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{5B024B22-B043-4AD2-9450-2BB07E20C0CE} =>.Superfluous.Empty
O43 - CFD: 05/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{5D339D5B-2BA2-477C-BEE8-062AE62B62DE} =>.Superfluous.Empty
O43 - CFD: 07/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{5D5A5FD9-9C82-4452-8792-1348BC8F63E0} =>.Superfluous.Empty
O43 - CFD: 13/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{5D77B0C5-2887-45F3-A178-489EE088C3AF} =>.Superfluous.Empty
O43 - CFD: 30/08/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{6862D7B6-16BB-4C79-9C7B-D3F3DC3A01F4} =>.Superfluous.Empty
O43 - CFD: 05/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{697AAB76-8EE4-445D-B0A7-92E3A64091B1} =>.Superfluous.Empty
O43 - CFD: 13/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{71C5B32E-7890-4CDE-B332-9930DA2FFBE4} =>.Superfluous.Empty
O43 - CFD: 02/09/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{75CE3FB3-8759-4CC4-9500-CAB0909E0A91} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{7E443937-3E59-4D97-BD4C-30FD8BECCF9A} =>.Superfluous.Empty
O43 - CFD: 05/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{810CB20F-3D42-42A3-BA7F-FCADF961D7A9} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{84FCA7A0-C03C-4674-B9BD-51D53A45D3A3} =>.Superfluous.Empty
O43 - CFD: 01/09/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{9207B6ED-E1FF-4DF0-A1FE-727D3FD8411D} =>.Superfluous.Empty
O43 - CFD: 16/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{A6516E15-B6F8-42F0-BA58-E5DD851D1106} =>.Superfluous.Empty
O43 - CFD: 30/01/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{A8BEEE91-D8D6-4E7A-8634-DCB0BB172528} =>.Superfluous.Empty
O43 - CFD: 03/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{B1FA24FC-5E2D-489D-8581-8945908FFEF9} =>.Superfluous.Empty
O43 - CFD: 05/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{C513DF8B-63C3-475D-A70E-FB9EC44A7171} =>.Superfluous.Empty
O43 - CFD: 16/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{C539645F-29BF-43C1-A1C6-7FC4EDD6AAC8} =>.Superfluous.Empty
O43 - CFD: 02/09/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{C913007C-4A07-481F-8DD3-C5F1A246D839} =>.Superfluous.Empty
O43 - CFD: 09/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{D1A5A396-9A9A-4D7E-8AE6-43DC49FAAAC0} =>.Superfluous.Empty
O43 - CFD: 13/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{DB700202-6312-4263-95F2-9B27D1668239} =>.Superfluous.Empty
O43 - CFD: 01/09/2011 - [0] D -- C:\Users\Roselyne\AppData\Local\{DD983745-1709-45DD-AB65-AE6AE768CDEA} =>.Superfluous.Empty
O43 - CFD: 05/03/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{E0275B5C-4D3C-452D-8A85-F04157E155B2} =>.Superfluous.Empty
O43 - CFD: 02/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{EA43AA7A-C240-40E0-968C-96593F8F0015} =>.Superfluous.Empty
O43 - CFD: 01/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{F06048DA-26F9-4FEB-A08A-F6CCFF284105} =>.Superfluous.Empty
O43 - CFD: 04/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{F77B4FF9-D756-4A0B-AC7E-4C251E367F04} =>.Superfluous.Empty
O43 - CFD: 04/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{F8FE3EDA-4A99-405D-882C-E5FE6D72C9B9} =>.Superfluous.Empty
O43 - CFD: 05/08/2012 - [0] D -- C:\Users\Roselyne\AppData\Local\{FF524359-F5BD-479F-AB1D-E6809E573894} =>.Superfluous.Empty
O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Roselyne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 04/08/2013 - [0] D -- C:\Users\Roselyne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter
O43 - CFD: 14/03/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Détection de l'application Winamp
O43 - CFD: 12/02/2012 - [] D -- C:\Users\Roselyne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 13/04/2014 - [] RD -- C:\Users\Roselyne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 16/03/2010 - [] D -- C:\Users\Roselyne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WD Diagnostics
O43 - CFD: 05/08/2008 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Application Data
O43 - CFD: 19/11/2011 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google
O43 - CFD: 05/08/2008 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Historique
O43 - CFD: 19/01/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft
O43 - CFD: 10/01/2013 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Software
O43 - CFD: 05/08/2008 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Temporary Internet Files

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (12) - 38s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HP Health Check Scheduler [Key] . (.Hewlett-Packard - HP Health Check Scheduler.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe =>.Hewlett-Packard
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard
O53 - SMSR:HKLM\...\startupreg\HPADVISOR [Key] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard
O53 - SMSR:HKLM\...\startupreg\LightScribe Control Panel [Key] . (...) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NvCplDaemon [Key] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\Windows\System32\nvcpl.dll =>.NVIDIA Corporation
O53 - SMSR:HKLM\...\startupreg\QlbCtrl.exe [Key] . (.Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe =>.Hewlett-Packard Development Company, L.P.
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics, Inc.
O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\WindowsWelcomeCenter [Key] . (...) -- :rundll32.exe (.not file.)

---\\ Liste des pilotes du système (86) - 83s
O58 - SDL:2008/01/21 04:32:46 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:51 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:52 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:53 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:49 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:50 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] =>.Microsoft Windows®
O58 - SDL:2008/04/27 12:07:44 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athr.sys [909824] =>.Atheros Communications, Inc.
O58 - SDL:2016/07/18 17:20:44 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [115600] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2016/07/18 17:20:45 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [140272] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2015/05/05 12:44:17 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [37896] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2006/11/02 09:30:53 A . (.Broadcom Corporation - BCM 802.11g Network Adapter wireless driver.) -- C:\Windows\System32\drivers\BCMWL6.SYS [464384] =>.Broadcom Corporation
O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2008/06/05 18:58:42 A . (.Conexant Systems Inc. - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\CHDRT32.sys [222208] =>.Conexant Systems Inc.
O58 - SDL:2008/01/21 04:32:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:50 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation
O58 - SDL:2008/01/21 04:32:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:52 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] =>.Microsoft Windows®
O58 - SDL:2007/06/18 17:12:04 A . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\System32\drivers\HpqKbFiltr.sys [16768] =>.Hewlett-Packard Development Company, L.P.
O58 - SDL:2007/11/01 03:47:54 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\HSXHWAZL.sys [208896] =>.Conexant Systems, Inc.
O58 - SDL:2007/11/01 03:47:08 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\HSX_CNXT.sys [661504] =>.Conexant Systems, Inc.
O58 - SDL:2007/11/01 03:51:26 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\HSX_DPV.sys [985600] =>.Conexant Systems, Inc.
O58 - SDL:2008/01/21 04:32:49 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:49 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:51 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:48 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:56 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [126336] =>.Malwarebytes Corporation®
O58 - SDL:2016/07/29 02:54:14 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation®
O58 - SDL:2006/06/19 00:26:58 A . (.Conexant - Diagnostic Interface x86 Driver.) -- C:\Windows\System32\drivers\mdmxsdk.sys [12672] =>.Conexant
O58 - SDL:2008/01/21 04:32:53 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:09:00 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [53120] =>.Malwarebytes Corporation®
O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies
O58 - SDL:2008/05/09 21:17:32 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda32v.sys [43040] =>.NVIDIA Corporation®
O58 - SDL:2009/07/23 21:01:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [9791072] =>.NVIDIA Corporation
O58 - SDL:2006/11/02 09:30:56 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvm60x32.sys [429056] =>.NVIDIA Corporation
O58 - SDL:2008/01/29 15:55:00 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvmfdx32.sys [1042464] =>.NVIDIA Corporation®
O58 - SDL:2008/01/21 04:32:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] =>.Microsoft Windows®
O58 - SDL:2008/04/25 00:51:46 A . (.NVIDIA Corporation - NVIDIA nForce(TM) SMU Microcontroller Drive.) -- C:\Windows\System32\drivers\nvsmu.sys [14848] =>.NVIDIA Corporation
O58 - SDL:2008/01/21 04:32:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:50 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
O58 - SDL:2008/06/05 20:01:50 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for Vista.) -- C:\Windows\System32\drivers\RTSTOR.sys [62464] =>.Realtek Semiconductor Corp.
O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2008/01/21 04:32:52 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] =>.Microsoft Windows®
O58 - SDL:2015/07/21 17:34:38 A . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- C:\Windows\System32\drivers\ssmdrv.sys [31848] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
O58 - SDL:2008/04/17 20:05:16 A . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [199344] =>.Synaptics Incorporated®
O58 - SDL:2008/01/21 04:32:45 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:49 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:21 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:49 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] =>.Microsoft Windows®
O58 - SDL:2008/01/21 04:32:48 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL3.SYS [200704] =>.Conexant Systems, Inc.
O58 - SDL:2008/01/21 04:32:48 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT3.SYS [654336] =>.Conexant Systems, Inc.
O58 - SDL:2008/01/21 04:32:48 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV3.SYS [987648] =>.Conexant Systems, Inc.
O58 - SDL:2007/10/18 01:36:54 A . (.Conexant Systems, Inc. - Modem Audio Device Driver.) -- C:\Windows\System32\drivers\XAudio.sys [8704] =>.Conexant Systems, Inc.
O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 18s
O61 - LFC: 2016/08/02 04:22:32 A . (..) -- C:\Users\Roselyne\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2016/08/02 04:27:11 A . (..) -- C:\Users\Roselyne\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [308]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (66) - 34s
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("browser.search.order.1", "Mysearchdial"); =>PUP.Optional.MySearchDial
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.BrowseMark.aul", "1397374206250"); =>PUP.Optional.BrowseMark
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.BrowseMark.irl", true); =>PUP.Optional.BrowseMark
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.BrowseMark.is", "isgiwhFR"); =>PUP.Optional.BrowseMark
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.BrowseMark.ug", "75FFFB0C-2174-4115-90FD-D12BAC247A7A"); =>PUP.Optional.BrowseMark
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.irmysearch.aflt", "ir_14_15_ch"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1QzutDtDtByEtB0BtB0FyB0EyDzytB0BzyzytN0D0Tzu0SzztAtAtN1L2XzutBtFtBtDtFtCtFtDtN1[...] =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.irmysearch.cr", "1332649639"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("extensions.irmysearch.instlRef", "140305_b"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var1", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var10", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var2", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var3", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var4", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var5", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var6", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var7", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var8", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.Var9", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_height", "185"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_screenx", "633"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_screeny", 100); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_scroll", ""); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_src", "http%3A//toolbar.iminent.com/SocialNetworking/%3FvToolbar%3DIminent"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_type", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.bubble_width", "165"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.cache.tbs_include_xml_006938", "50/20/12/2/112"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.firstlaunch", "0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.guid", "%7B4958D6DF-B9DB-98F4-5CCC-7DEDA912CF04%7D"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6.userId", "%12"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("id_imbooster4web_v6_installed_version", "1.0.1018.0"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent111", "1328129216245"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent112", "1328129216251"); =>PUP.Optional.Boost
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("plugin.blocklisted.npviewpoint", true); =>PUP.Optional.MetaStream
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.mode.debug", "false"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "SearchTheWeb"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.previous.browser.startup.homepage", "http://search.iminent.com/?appId=4E0480E1-DA2D-4FE7-8E86-FB47EEE1D[...] =>PUP.Optional.IMBooster
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.previous.keyword.URL", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.search.external", "PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.search.history.capacity", "10"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "1"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "1"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.searchguard.enable", "true"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.simapp_id", "{99122EC6-F7F9-453F-90F0-E1006C031CBC}"); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [Roselyne - ear3usxk.default] user_pref("sweetim.toolbar.urls.homepage", "http://home.sweetim.com/?barid={99122EC6-F7F9-453F-90F0-E1006C031CBC}"); =>PUP.Optional.SweetIM
O69 - SBI: SearchScopes [HKCU] {2B571F60-CB1D-4162-A6C9-609D9CED9137} - (Yahoo!) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKCU] {2ec61f9f-edd6-4035-b020-2aaf8b3d60e4} - (YouGoo) - http://www.yougoo.fr/ =>PUP.Optional.YouGoo
O69 - SBI: SearchScopes [HKCU] {43c2b56c-b5b9-4f60-9205-8a24cc3b0161} - (YouGoo) - http://www.yougoo.fr/ =>PUP.Optional.YouGoo
O69 - SBI: SearchScopes [HKCU] {7EA02E3C-FB5F-41AC-8FE6-B16B5CFF3BF7} - (AOL Recherche) - http://slirsredirect.search.aol.com/
O69 - SBI: SearchScopes [HKCU] {8934A1A4-49B5-4600-958F-E56BAB29503C} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {90ACA67E-6B18-40BD-AD43-D8944ED32FDF} - (Flickr) - http://www.flickr.com/
O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59} [DefaultScope] - (Web Search) - http://search.imesh.com/ =>.Superfluous.iMesh
O69 - SBI: SearchScopes [HKCU] {A531D99C-5A22-449b-83DA-872725C6D0ED} - (Recherche alOt) - http://search.alot.com/ =>PUP.Optional.Comet
O69 - SBI: SearchScopes [HKCU] {c3d07853-c240-4565-a805-7f7f4f84315f} - (YouGoo) - http://www.yougoo.fr/ =>PUP.Optional.YouGoo
O69 - SBI: SearchScopes [HKCU] {C7CD1E15-40D5-49FC-BD23-3346C4F2D925} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - (MyStart Search) - http://mystart.incredimail.com/ =>PUP.Optional.VMNToolbar
O69 - SBI: SearchScopes [HKCU] {FAD5AD68-3F35-421B-B4A8-3D4A9C072A8B} - (Kelkoo) - http://fr.kelkoopartners.net/
O69 - SBI: SearchScopes [HKLM] {7EA02E3C-FB5F-41AC-8FE6-B16B5CFF3BF7} - (AOL Recherche) - http://slirsredirect.search.aol.com/
O69 - SBI: SearchScopes [HKLM] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59} [DefaultScope] - (Web Search) - http://search.imesh.com/ =>.Superfluous.iMesh
O69 - SBI: SearchScopes [HKLM] {FAD5AD68-3F35-421B-B4A8-3D4A9C072A8B} - (Kelkoo) - http://fr.kelkoopartners.net/

---\\ Enumère les services démarrés par Svchost (32) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation
O83 - Search Svchost Services: ezSharedSvc (ezSharedSvc) . (.EasyBits Sofware AS - Shared EasyBits services for Windows.) -- C:\Windows\System32\ezsvc7.dll [129992]

---\\ Liste des exceptions du parefeu Windows (4) - 8s
O87 - FAEL: "TCP Query User{EBEEF894-46D1-474C-B387-C5BA5BC4349A}C:\program files\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\program files\emule\emule.exe
O87 - FAEL: "UDP Query User{6EB86A6F-1761-4E51-B501-5A9580468291}C:\program files\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\program files\emule\emule.exe
O87 - FAEL: "TCP Query User{6B579389-631C-4482-B05D-5F7358152863}C:\program files\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\program files\emule\emule.exe
O87 - FAEL: "UDP Query User{99005654-5A08-4A13-B0D3-F1B770BBD61A}C:\program files\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\program files\emule\emule.exe

---\\ Enumère les codes produits des logiciels (1) - 5s
O90 - PUC: "B2FD9C0A5B9838449838816A28001F4B" . (.SweetIM for Messenger 3.7.) -- C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}\ARPPRODUCTICON.exe =>PUP.Optional.SweetIM

---\\ Scan Additionnel (30) - 0s
C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll =>PUP.Optional.MetaStream
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer =>PUP.Optional.MetaStream
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4} =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer =>PUP.Optional.MetaStream
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4} =>PUP.Optional.SweetIM
HKLM\SOFTWARE\MetaStream =>PUP.Optional.MetaStream
HKLM\SOFTWARE\Viewpoint =>PUP.Optional.MetaStream
HKCU\SOFTWARE\Grand Virtual =>PUP.Optional.GrandVirtual
HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail
HKCU\SOFTWARE\PartyFrance =>.Superfluous.OnlineGames
HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.QuickShare
C:\Program Files\Viewpoint =>PUP.Optional.MetaStream
C:\ProgramData\APN =>Toolbar.Ask
C:\ProgramData\Software =>PUP.Optional.Boxore
C:\ProgramData\Viewpoint =>PUP.Optional.MetaStream
C:\Users\Roselyne\AppData\Local\iMesh =>.Superfluous.iMesh
C:\Users\Roselyne\AppData\Local\PackageAware =>PUP.Optional.BearShare
C:\Users\Roselyne\AppData\Local\Software =>PUP.Optional.Boxore
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2ec61f9f-edd6-4035-b020-2aaf8b3d60e4} =>PUP.Optional.YouGoo
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{43c2b56c-b5b9-4f60-9205-8a24cc3b0161} =>PUP.Optional.YouGoo
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59} =>.Superfluous.iMesh
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A531D99C-5A22-449b-83DA-872725C6D0ED} =>PUP.Optional.Comet
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{c3d07853-c240-4565-a805-7f7f4f84315f} =>PUP.Optional.YouGoo
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} =>PUP.Optional.VMNToolbar
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59} =>.Superfluous.iMesh
C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}\ARPPRODUCTICON.exe =>PUP.Optional.SweetIM
HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B =>PUP.Optional.SweetIM
HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B =>PUP.Optional.SweetIM

---\\ Récapitulatif des éléments trouvés sur votre station (20) - 0s
https://www.anti-malware.top/2016/05/02/pup-optional-boxore/ =>PUP.Optional.Boxore
https://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster
https://www.nicolascoolman.fr/?p=585 =>PUP.Optional.MetaStream
https://www.nicolascoolman.fr/?p=332 =>PUP.Optional.SweetIM
https://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.GrandVirtual
https://www.nicolascoolman.fr/?p=5143 =>Toolbar.IncrediMail
https://www.nicolascoolman.fr/?p=5145 =>.Superfluous.OnlineGames
https://www.nicolascoolman.fr/?p=5143 =>Toolbar.YahooPartner
https://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
https://www.nicolascoolman.fr/?p=433 =>PUP.Optional.QuickShare
https://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask
https://www.nicolascoolman.fr/?p=427 =>.Superfluous.iMesh
https://www.nicolascoolman.fr/?p=343 =>PUP.Optional.BearShare
https://www.anti-malware.top/2016/04/29/superfluous-montiera/ =>PUP.Optional.MySearchDial
https://www.nicolascoolman.fr/?p=1437 =>PUP.Optional.BrowseMark
https://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch
https://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Boost
https://www.nicolascoolman.fr/?p=1435 =>PUP.Optional.YouGoo
https://www.nicolascoolman.fr/?p=1778 =>PUP.Optional.Comet
https://www.nicolascoolman.fr/?p=421 =>PUP.Optional.VMNToolbar

~ End of the scan, 26182 items in 00h10mn42s (1106)

Publicité


Signaler le contenu de ce document

Publicité