cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.10.10.148 Par Nicolas Coolman (2015/10/10)
~ Démarré par Simon (Administrator) (2016/08/18 16:26:32)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Pas de fichier réseau
~ Mode: Scanner
~ Rapport: C:\Users\Simon\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Simon\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v52.0.2743.116
MFIE: Mozilla Firefox 21.0 (x86 fr) v21.0
MSIE: Internet Explorer v11.0.9600.18283

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : TMQHT
Windows License : OK
~ Windows Remaining Initializations Number : 999
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 15s
Avira Antivirus v15.0.18.354
Windows Defender (Deactivate)

---\\ Logiciels de protection et autres (Superflus) (1) - 15s
McAfee Security Scan Plus v3.11.334.1

---\\ Logiciels d'optimisation (1) - 15s
CCleaner v3.21

---\\ Surveillance de Logiciels (2) - 15s
Adobe Flash Player 22 NPAPI
Adobe Reader X

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4075.304 MB (58% free)
~ System Restore: Activé (Enable)
~ System drive C: has 243 GB free of 285 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PCSIMON
~ User Name: Simon
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 243 GB free of 285 GB (System)
~ Drive D: has 407 GB free of 407 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 5s
[MD5.B3541A5A20C6264781909B1B7FE54836] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2757616] ©
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] ©
[MD5.EC302D06155F8E3C383750993FCB6B27] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [146432] ©
[MD5.D2E3B1DEDF6F6177D8C32B2516703A93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2596864] ©
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [570880] ©
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] ©
[MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [657920] ©
[MD5.BD9C7A068C46053F8747CEA73B5930AB] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [498688] ©
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] ©
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [559616] ©
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] ©
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] ©
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] ©
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] ©
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] ©
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] ©
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] ©
[MD5.5DCD41F62F71519D2A46D41F60C69B0C] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401920] ©
[MD5.9DC17B7D9D84C37C102D379FCC7D4942] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [281088] ©
[MD5.9980B262DBE439AE6BDC91AA985F19EE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2017624] ©
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] ©
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] ©
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] ©
[MD5.E0BD2D83875464FEEEB242CBA8B7E073] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [108032] ©
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] ©

---\\ Processus lancés (42) - 6s
[MD5.FA713019412C061385F09BD373BF747A] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [105120] [PID.1076] ©
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1148] ©
[MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [472112] [PID.1276] ©
[MD5.68E7DEA59FDEF410BAF29FDB5B7A6EEF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1492] ©
[MD5.6A122B4F0E5293CACFA8A5F2CBA9B356] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120] [PID.1540] ©
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1628] ©
[MD5.78ABBE558F57144047F10A0F50FE4B2F] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720] [PID.1668] ©
[MD5.58332C83C4A329A744B0B98F934934BB] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe [288920] [PID.2080] ©
[MD5.788321A2C0C45F16820E00A8BA8FD3DA] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe [366232] [PID.2816] ©
[MD5.9656F8E29F6C3161A3E99BCD3A472FF9] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856] [PID.2324] ©
[MD5.2C24DC448DBE8DB9BE1441B824C57E79] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277824] [PID.1660] ©
[MD5.E1A119AD21F5AFE22EB516C549306D3D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [365376] [PID.1156] ©
[MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [472112] [PID.2072] ©
[MD5.8256846E20B6F451A4A6B2EAD057FF25] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [1042232] [PID.4492] ©
[MD5.41D2CA13F0374217283D1E23FAF61030] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [319648] [PID.2004] ©
[MD5.8596BF03CE3113E5DDFAF39997B0455D] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [184704] [PID.6496] ©
[MD5.20E39BE7B43479FA66F6C8D6C7FA2F9A] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe [590208] [PID.6316] ©
[MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] [PID.5104] ©
[MD5.79174FD5F4DE078642BE1CACB124BFCA] - (.ASUS - ASUS InstantOn.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1126784] [PID.7044] ©
[MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.3060] ©
[MD5.DC4044C6102DE12837143B257C25EDDC] - (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe [648512] [PID.3568] ©
[MD5.A2791CF11D1ED52DBCD75D2FFD4D50E7] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [178848] [PID.1612] ©
[MD5.2C35624F79B9ADBFE47090879F0D8673] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322208] [PID.2828] ©
[MD5.F61140A7D41E2B3CB73D28A2F6ABC405] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848] [PID.4968] ©
[MD5.B7BCA8A30CE13A283CDBDECEF5616C39] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [107192] [PID.6440] ©
[MD5.28062B17191C9450BF6C6C3EF8C7EB27] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [171992] [PID.4164] ©
[MD5.28FC280487F0BAAE5E8119257C4EEF8C] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [399832] [PID.3284] ©
[MD5.97202E9C0D86387888435470CCAF45BE] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [192000] [PID.2336] ©
[MD5.F29BEA821C753E4F00177690F70CDC13] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [442328] [PID.2044] ©
[MD5.E22A640E183C0779C5AEFC4BB2A708E2] - (...) -- C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe [563896] [PID.5216] =>PUP.Optional.CacaoWeb
[MD5.DE9F102F38A2B9AC6E9DAEED30B276E6] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [51656320] [PID.5752] ©
[MD5.502D671DEB7D48D4B30E09DEB8B62E8D] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.334\SSScheduler.exe [334088] [PID.6828] ©
[MD5.DA544EE19F1ABC4A2B6D998D998E1E4A] - (...) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe [119808] [PID.4804]
[MD5.7444E0F4C9991AE3711F5FAB5DB257E1] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [831064] [PID.4532] ©
[MD5.8EB723D1A61050666F9EC00863460963] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [153288] [PID.3020] ©
[MD5.25A51D18D48F1E144ABEC667E98C6261] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1558176] [PID.3448] ©
[MD5.C3DD1A60AC4FF18658B35ACE28F5370F] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [170880] [PID.6584] ©
[MD5.1760F66E1D8D47F0B895984AC0F6FB7D] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22400] [PID.1316] ©
[MD5.29769215DEB6E8418EF3656B0423776E] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352] [PID.1480] ©
[MD5.5981F68715966CA53B5905B146525D42] - (.AsusTek - ASUS Smart Gesture Center.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe [270720] [PID.2920] ©
[MD5.50A64AA1DBAEC9D4A6F7D5944E546DE0] - (.AsusTek - ASUS Smart Gesture Helper.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe [169856] [PID.6468] ©
[MD5.1D45319619579DDA7DE8DE9BB1E3079E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Simon\AppData\Roaming\ZHP\ZHPDiag3.exe [1943040] [PID.1644] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 2s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://consent.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.delta-search.com/ =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] __MSG_name__
G2 - GCE: Preference [User Data\Default] [leninfpgimplcdddoonihcnjblmheije] EasyReader
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (16) - 4s
M0 - MFSP: prefs.js [Simon - d0ifc5et.default] http://www.delta-search.com/?affID=121845&tt=gc_&babsrc=HP_ss&mntrId=0EC7844BF5AE6254 =>Toolbar.DeltaSearch
P2 - EXT FILE: (...) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\babylon.xml =>PUP.Optional.Babylon
P2 - EXT FILE: (...) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\BrowserProtect.xml =>PUP.Optional.Eazel
P2 - EXT FILE: (...) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\delta.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.http://www.cacaoweb.org/ - cacaoweb.) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\extensions\cacaoweb@cacaoweb.org =>PUP.Optional.CacaoWeb
P2 - EXT: (.delta-search.com - Delta Toolbar.) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\extensions\ffxtlbr@delta.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll ©
P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- C:\Program Files (x86)\McAfee\msc\npMcSnFFPl.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (2) - 0s
0
~ Le fichier hôte est sain (The hosts file is clean) (26)

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: Delta Toolbar - [HKLM]{82E1477C-B154-48D3-9891-33D83C26BCD3} . (.Delta-search.com - .) -- C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll =>Toolbar.DeltaSearch

---\\ Applications lancées au démarrage du système (13) - 0s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ©
O4 - HKLM\..\Run: [ACMON] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe ©
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe ©
O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe ©
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe ©
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe ©
O4 - HKUS\S-1-5-21-3216382682-637092237-702815085-1001\..\Run: [cacaoweb] . (...) -- C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O4 - HKUS\S-1-5-21-3216382682-637092237-702815085-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe ©

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (22) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (16) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe ©
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe ©
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe ©
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe ©
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ©
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe ©
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe ©
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Tâches planifiées en automatique (32) - 3s
[MD5.BE1A1E8EEA50BE1E1A78EB3D7F4CE8CF] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1110232] ©
[MD5.32B31B696CB8E8F380831DFEB80A67E4] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270016] ©
[MD5.00000000000000000000000000000000] [APT] [AdobeFlashPlayerUpdate] (...) -- C:\Windows\SysWOW64\FlashPlayerUpdateService.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [AdobeFlashPlayerUpdate 2] (...) -- C:\Windows\SysWOW64\FlashPlayerUpdateService.exe (.not file.) [0]
[MD5.79174FD5F4DE078642BE1CACB124BFCA] [APT] [ASUS InstantOn Config] (.ASUS.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1126784] ©
[MD5.25A51D18D48F1E144ABEC667E98C6261] [APT] [ASUS Live Update] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1558176] ©
[MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] ©
[MD5.3547F00F9FF626DE831FC1F99BE1E4CE] [APT] [ASUS Touchpad Launcher (x64)] (.AsusTek.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [17792] ©
[MD5.13001914838576400EB9AFDE95AE71CE] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3091296] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.A9D30971B24700531BEB70C85D1B8328] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233792] ©
[MD5.A9D30971B24700531BEB70C85D1B8328] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233792] ©
[MD5.8F311A272AAE611BFFAAC88CC0CA3F43] [APT] [{ED1C1C77-560B-45E1-97B0-43054850839C}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [1152840] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1088] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1092] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job [868] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job [870] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4476] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890] ©
O39 - APT: AdobeFlashPlayerUpdate - (...) -- C:\WINDOWS\System32\Tasks\AdobeFlashPlayerUpdate [3442]
O39 - APT: AdobeFlashPlayerUpdate 2 - (...) -- C:\WINDOWS\System32\Tasks\AdobeFlashPlayerUpdate 2 [3182]
O39 - APT: ASUS InstantOn Config - (.ASUS.) -- C:\WINDOWS\System32\Tasks\ASUS InstantOn Config [2988] ©
O39 - APT: ASUS Live Update - (.ASUSTeK Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS Live Update [3112] ©
O39 - APT: ASUS P4G - (.ASUS.) -- C:\WINDOWS\System32\Tasks\ASUS P4G [3054] ©
O39 - APT: ASUS Touchpad Launcher (x64) - (.AsusTek.) -- C:\WINDOWS\System32\Tasks\ASUS Touchpad Launcher (x64) [3542] ©
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2772] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3828] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4064] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d [3512] ©
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon [3208] ©

---\\ Logiciels installés (45) - 3s
O42 - Logiciel: Package de pilotes Windows - ASUS (ATP) Mouse (10/29/2012 1.0.0.148) - (.ASUS.) [HKLM][64Bits] -- C01F56FBD9B141017E63E2A1A141E59934D4DC67 ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner ©
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan ©
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} ©
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} ©
O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 ©
O42 - Logiciel: ASUS WebStorage Sync Agent - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- ASUS WebStorage ©
O42 - Logiciel: Avira Antivirus v15.0.18.354 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus ©
O42 - Logiciel: Delta toolbar - (.Delta.) [HKLM][64Bits] -- delta =>Toolbar.DeltaSearch
O42 - Logiciel: Delta Chrome Toolbar - (.Visual Tools.) [HKLM][64Bits] -- Delta Chrome Toolbar =>Toolbar.DeltaSearch
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Mozilla Firefox 21.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 21.0 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: Vittalia Installer - (.TELECHARGERS.net.) [HKLM][64Bits] -- Vittalia =>PUP.Optional.Vittalia
O42 - Logiciel: Avira Launcher v1.2.68.19138 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {05f7f410-0274-45d0-91dc-712a62aadd96} ©
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} ©
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} ©
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} ©
O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D} ©
O42 - Logiciel: SceneSwitch - (.ASUS.) [HKLM][64Bits] -- {5172E572-C175-4F80-A6D5-5CB45826AD61} ©
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} ©
O42 - Logiciel: ASUS Tutor - (.ASUS.) [HKLM][64Bits] -- {58172D66-2F69-4215-9AEC-ED8196023736} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: ASUS InstantOn - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91} ©
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: ASUS Instant Connect - (.ASUS.) [HKLM][64Bits] -- {89ECB85A-D933-4CEA-9116-5CBC9C2ED95B} ©
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} ©
O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0} ©
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927} ©
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824191728} ©
O42 - Logiciel: Adobe Reader X (10.1.16) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} ©
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} ©
O42 - Logiciel: Avira Launcher v1.2.68.19138 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {E2ED917A-F98B-4062-B1CC-A91627B79457} ©
O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} ©
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} ©
O42 - Logiciel: Skype™ 7.22 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} ©
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} ©

---\\ HKCU & HKLM Software Keys (59) - 3s
HKLM\SOFTWARE\Wow6432Node\5b538ddebd68be41 =>PUP.Optional.Heuristic
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdobeFlashPlayerUpdate
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\Delta =>Toolbar.DeltaSearch
HKLM\SOFTWARE\Wow6432Node\ECAREME
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Ralink
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\5b538ddebd68be41 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\Delta =>Toolbar.DeltaSearch
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\McAfee
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.SmartBar

---\\ Contenu des dossiers Programmes (144) - 5s
O43 - CFD: 2016/08/16 11:22:53 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2016/08/16 11:22:56 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 2016/08/12 23:33:21 - [] D -- C:\Program Files (x86)\AVG
O43 - CFD: 2016/08/16 11:23:17 - [] D -- C:\Program Files (x86)\Avira
O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 2016/08/16 12:15:09 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2016/08/16 11:23:28 - [] D -- C:\Program Files (x86)\Delta
O43 - CFD: 2016/08/16 11:23:36 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2016/08/16 11:23:43 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2016/08/16 11:23:47 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2016/08/16 12:27:29 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2016/08/16 11:23:50 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2016/08/16 11:23:50 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2016/03/05 18:45:51 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\Ralink
O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2016/08/16 12:15:21 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2012/09/26 08:23:38 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2013/05/10 23:53:59 - [] D -- C:\Program Files (x86)\Vittalia =>PUP.Optional.Vittalia
O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2016/08/16 12:27:29 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/05/11 14:02:42 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/05/11 14:02:42 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2014/01/27 04:36:17 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2016/08/13 00:21:08 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 2015/05/11 14:14:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2016/08/16 11:24:27 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/05/11 14:14:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2016/08/16 11:24:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 2016/08/16 12:23:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 2014/01/27 04:38:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2016/08/16 11:24:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/01/26 02:54:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2016/08/16 12:15:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
O43 - CFD: 2016/08/16 11:24:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2016/08/16 12:15:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2016/08/16 12:15:34 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/05/11 14:14:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/11/14 09:16:50 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2016/08/16 11:24:19 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2016/08/16 11:24:19 - [] D -- C:\ProgramData\ASUS
O43 - CFD: 2012/08/17 02:53:09 - [] D -- C:\ProgramData\ASUS WebStorage
O43 - CFD: 2012/08/17 02:52:28 - [] D -- C:\ProgramData\ASUSLogos
O43 - CFD: 2012/09/26 08:31:06 - [] D -- C:\ProgramData\ASUSVibe
O43 - CFD: 2016/08/13 00:21:07 - [] D -- C:\ProgramData\Avg
O43 - CFD: 2016/08/16 11:24:20 - [] D -- C:\ProgramData\Avira
O43 - CFD: 2013/05/27 22:55:37 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2014/01/27 04:51:24 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/05/04 03:38:01 - [] D -- C:\ProgramData\ChangeFolderView
O43 - CFD: 2016/08/12 11:35:31 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2013/05/04 03:35:01 - [] D -- C:\ProgramData\FolderView
O43 - CFD: 2016/08/16 11:24:20 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2016/08/16 11:24:21 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2016/08/16 12:15:28 - [] D -- C:\ProgramData\McAfee Security Scan
O43 - CFD: 2014/01/27 04:51:24 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2016/08/12 23:33:20 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 2016/08/16 11:24:23 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/05/06 00:08:22 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2014/01/27 04:51:24 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/05/04 05:04:54 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2016/08/16 11:24:28 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2016/08/16 12:15:34 - [] D -- C:\ProgramData\P4G
O43 - CFD: 2016/08/16 12:23:35 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2014/01/27 04:36:21 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2016/08/16 11:24:30 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 2015/05/11 14:02:31 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2016/08/16 12:15:35 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/05/04 05:21:52 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2013/05/05 22:10:18 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2016/08/16 12:15:09 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2016/08/16 11:23:27 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2013/05/04 18:10:39 - [] D -- C:\Program Files (x86)\Common Files\SceneSwitch
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2016/08/16 12:15:09 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2016/08/16 11:23:28 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2016/08/16 11:25:17 - [] D -- C:\Users\Simon\AppData\Roaming\Adobe
O43 - CFD: 2013/05/04 18:04:02 - [] D -- C:\Users\Simon\AppData\Roaming\ASUS
O43 - CFD: 2013/05/04 03:36:02 - [] D -- C:\Users\Simon\AppData\Roaming\ASUS WebStorage
O43 - CFD: 2016/08/12 12:23:06 - [] D -- C:\Users\Simon\AppData\Roaming\AVG
O43 - CFD: 2015/04/08 16:21:10 - [] D -- C:\Users\Simon\AppData\Roaming\Avira
O43 - CFD: 2016/08/16 12:16:11 - [] D -- C:\Users\Simon\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution
O43 - CFD: 2013/05/27 22:55:37 - [] D -- C:\Users\Simon\AppData\Roaming\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2016/08/18 14:48:52 - [] D -- C:\Users\Simon\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
O43 - CFD: 2013/05/27 22:58:23 - [] D -- C:\Users\Simon\AppData\Roaming\Delta
O43 - CFD: 2014/01/27 13:53:59 - [] D -- C:\Users\Simon\AppData\Roaming\Identities
O43 - CFD: 2013/05/04 04:32:01 - [] D -- C:\Users\Simon\AppData\Roaming\Macromedia
O43 - CFD: 2016/08/16 11:25:18 - [] SD -- C:\Users\Simon\AppData\Roaming\Microsoft
O43 - CFD: 2016/08/16 11:25:19 - [] D -- C:\Users\Simon\AppData\Roaming\Mozilla
O43 - CFD: 2016/08/16 19:07:54 - [] D -- C:\Users\Simon\AppData\Roaming\Skype
O43 - CFD: 2016/08/12 12:19:07 - [] D -- C:\Users\Simon\AppData\Roaming\TuneUp Software
O43 - CFD: 2013/05/19 13:32:18 - [] D -- C:\Users\Simon\AppData\Roaming\uTorrent
O43 - CFD: 2016/08/18 16:27:04 - [] D -- C:\Users\Simon\AppData\Roaming\ZHP
O43 - CFD: 2016/04/04 13:37:28 - [] D -- C:\Users\Simon\AppData\Local\Adobe
O43 - CFD: 2014/01/27 04:33:39 - [0] SHD -- C:\Users\Simon\AppData\Local\Application Data
O43 - CFD: 2016/08/16 11:24:33 - [] D -- C:\Users\Simon\AppData\Local\Apps
O43 - CFD: 2016/08/16 12:15:38 - [] D -- C:\Users\Simon\AppData\Local\ASUS
O43 - CFD: 2016/08/12 23:33:21 - [] D -- C:\Users\Simon\AppData\Local\Avg
O43 - CFD: 2013/09/14 18:02:36 - [] D -- C:\Users\Simon\AppData\Local\avgchrome
O43 - CFD: 2016/08/12 23:29:45 - [] D -- C:\Users\Simon\AppData\Local\AvgSetupLog
O43 - CFD: 2016/08/09 21:19:05 - [0] D -- C:\Users\Simon\AppData\Local\Diagnostics
O43 - CFD: 2015/09/01 14:51:14 - [0] SHD -- C:\Users\Simon\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/09/01 14:51:14 - [0] SHD -- C:\Users\Simon\AppData\Local\EmieSiteList
O43 - CFD: 2015/09/01 14:51:14 - [0] SHD -- C:\Users\Simon\AppData\Local\EmieUserList
O43 - CFD: 2016/08/16 11:24:33 - [] D -- C:\Users\Simon\AppData\Local\Google
O43 - CFD: 2015/07/21 17:46:57 - [] D -- C:\Users\Simon\AppData\Local\GWX
O43 - CFD: 2014/01/27 04:33:39 - [0] SHD -- C:\Users\Simon\AppData\Local\Historique
O43 - CFD: 2013/05/04 18:22:29 - [] D -- C:\Users\Simon\AppData\Local\Macromedia
O43 - CFD: 2016/08/12 12:12:35 - [] D -- C:\Users\Simon\AppData\Local\MFAData
O43 - CFD: 2016/08/16 11:24:36 - [] D -- C:\Users\Simon\AppData\Local\Microsoft
O43 - CFD: 2013/05/05 22:04:50 - [0] D -- C:\Users\Simon\AppData\Local\Microsoft Help
O43 - CFD: 2016/02/22 13:58:40 - [] D -- C:\Users\Simon\AppData\Local\Mozilla
O43 - CFD: 2016/08/16 11:24:57 - [] D -- C:\Users\Simon\AppData\Local\Packages
O43 - CFD: 2016/08/12 23:45:48 - [] D -- C:\Users\Simon\AppData\Local\Skype
O43 - CFD: 2016/08/18 16:26:04 - [] D -- C:\Users\Simon\AppData\Local\Temp
O43 - CFD: 2014/01/27 04:33:39 - [0] SHD -- C:\Users\Simon\AppData\Local\Temporary Internet Files
O43 - CFD: 2013/05/04 18:22:33 - [] D -- C:\Users\Simon\AppData\Local\VirtualStore
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2016/08/16 12:27:29 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2013/10/27 20:55:13 - [0] D -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard =>PUP.Optional.BitGuard
O43 - CFD: 2013/05/04 13:25:06 - [0] D -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2016/08/16 12:27:29 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2014/01/27 04:34:27 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 44s
O45 - LFCP:[MD5.3D8C208B4C213A7D0E7B68A6B8D63079] 2016/08/09 21:10:55 A -- C:\WINDOWS\Prefetch\CACAONEW49D715.EXE-DBA07DA9.pf =>PUP.Optional.CacaoWeb
O45 - LFCP:[MD5.5C623BD26A77F790C79EAD2AFB991D33] 2016/08/04 21:33:35 A -- C:\WINDOWS\Prefetch\CACAONEW4E0C30.EXE-A5E26C3E.pf =>PUP.Optional.CacaoWeb
O45 - LFCP:[MD5.A538E1CB4F639F17E25FB7C587DC111C] 2016/08/18 14:21:41 A -- C:\WINDOWS\Prefetch\CACAOWEB.EXE-54C4DE3F.pf =>PUP.Optional.CacaoWeb

---\\ Liste des pilotes du système (48) - 7s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] ©
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] ©
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] ©
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] ©
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] ©
O58 - SDL:2012/05/31 05:47:44 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [21152] ©
O58 - SDL:2012/10/31 12:10:00 A . (.ASUS Corporation - Asus TP Filter Driver.) -- C:\WINDOWS\System32\drivers\AsusTP.sys [61824] ©
O58 - SDL:2016/08/08 18:08:05 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [144664] ©
O58 - SDL:2016/08/08 18:08:05 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [154392] ©
O58 - SDL:2015/12/17 12:28:01 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [35488] ©
O58 - SDL:2016/08/08 18:08:05 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [78208] ©
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] ©
O58 - SDL:2012/07/02 16:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] ©
O58 - SDL:2012/04/20 16:40:58 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\WINDOWS\System32\drivers\HipShieldK.sys [196440] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] ©
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] ©
O58 - SDL:2012/07/24 05:16:28 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] ©
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] ©
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2014/01/30 00:02:28 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5363200] ©
O58 - SDL:2012/06/19 01:40:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] ©
O58 - SDL:2012/08/02 05:22:48 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [14992]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] ©
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] ©
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2013/02/19 13:55:26 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\WINDOWS\System32\drivers\mfeclnk.sys [10728] ©
O58 - SDL:2013/02/19 13:55:14 A . (.McAfee, Inc. - McAfee Code Analysis Driver.) -- C:\WINDOWS\System32\drivers\mferkdet.sys [106552] ©
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2013/07/25 21:05:37 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2607792] ©
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] ©
O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] ©
O58 - SDL:2012/08/21 12:34:12 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4106256] ©
O58 - SDL:2012/06/13 12:23:58 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsBaStor.sys [294544] ©
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] ©
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 32s
O61 - LFC: 2016/08/18 14:21:30 A . (..) -- C:\Users\Simon\AppData\Roaming\sp_data.sys [507]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (10) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (26) - 3s
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("browser.newtab.url", "http://www.delta-search.com/?affID=121845&tt=gc_&babsrc=NT_ss&mntrId=0EC7844BF5AE6254"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("browser.startup.homepage", "http://www.delta-search.com/?affID=121845&tt=gc_&babsrc=HP_ss&mntrId=0EC7844BF5AE6254"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.admin", false); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.aflt", "babsst"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.autoRvrt", "false"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.dfltLng", "en"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.excTlbr", false); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.ffxUnstlRst", true); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.id", "0ec79db0000000000000844bf5ae6254"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.instlDay", "15852"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.instlRef", "sst"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.newTab", false); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.prdct", "delta"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.prtnrId", "delta"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.rvrt", "false"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.smplGrp", "none"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.tlbrId", "base"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.tlbrSrchUrl", ""); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.vrsn", "1.8.21.5"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.vrsnTs", "1.8.21.522:58:29"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.vrsni", "1.8.21.5"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta_i.babExt", ""); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta_i.babTrack", "affID=121845&tt=gc_"); =>Toolbar.DeltaSearch
O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta_i.srcExt", "ss"); =>Toolbar.DeltaSearch
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Delta Search) - http://www.delta-search.com/ =>Toolbar.DeltaSearch

---\\ Enumère les services démarrés par Svchost (34) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1083904] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [228864] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3708416] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] ©

---\\ Liste des exceptions du parefeu Windows (4) - 1s
O87 - FAEL: "TCP Query User{08119406-434F-4B9C-8DD2-0F6DA2A94F66}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{E801DF81-4303-4BD8-8E26-CAAF48829E32}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O87 - FAEL: "TCP Query User{86FD58BF-14EC-41C7-988D-284CD442E8B2}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{19BF8B94-7C59-4DF9-BCFC-FF7EF64F22B1}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 11s

SR - Auto [2016/06/25 01:45:12] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [2016/08/08 18:11:47] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SS - Auto [2016/08/08 18:07:27] [ 989696] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe ©
SR - Auto [2016/08/08 18:08:01] [ 472112] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe ©
SR - Auto [2016/08/08 18:07:25] [ 472112] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe ©
SS - Auto [2016/08/08 18:07:34] [ 1453696] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe ©
SR - Auto [2012/07/23 19:59:02] [ 105120] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ©
SR - Auto [2012/04/13 11:14:00] [ 277120] ASUS InstantOn Service (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe ©
SR - Auto [2011/11/21 15:19:50] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe ©
SR - Auto [2016/07/25 16:01:18] [ 319648] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe ©
SS - Demand [2014/01/30 00:02:44] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe ©
SS - Auto [2015/09/01 15:08:05] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/09/01 15:08:05] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SR - Auto [2012/04/20 15:16:12] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SR - Auto [2012/06/27 13:47:02] [ 129856] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ©
SR - Auto [2012/06/25 11:57:14] [ 166720] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [2012/07/17 15:57:20] [ 277824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Demand [2016/05/31 14:46:08] [ 293128] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.334\McCHSvc.exe ©
SS - Demand [2013/08/08 13:05:53] [ 117144] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SS - Auto [2016/03/23 19:08:24] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SR - Auto [2012/07/17 15:57:22] [ 365376] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Scan Additionnel (25) - 0s
C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb
C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\babylon.xml =>PUP.Optional.Babylon
C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\BrowserProtect.xml =>PUP.Optional.Eazel
C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\extensions\cacaoweb@cacaoweb.org =>PUP.Optional.CacaoWeb
C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll =>Toolbar.DeltaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\delta =>Toolbar.DeltaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar =>Toolbar.DeltaSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Vittalia =>PUP.Optional.Vittalia
HKLM\SOFTWARE\Wow6432Node\5b538ddebd68be41 =>PUP.Optional.Heuristic
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Delta =>Toolbar.DeltaSearch
HKCU\SOFTWARE\5b538ddebd68be41 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution
HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb
HKCU\SOFTWARE\Delta =>Toolbar.DeltaSearch
HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.SmartBar
C:\Program Files (x86)\Vittalia =>PUP.Optional.Vittalia
C:\ProgramData\Babylon =>PUP.Optional.Babylon
C:\Users\Simon\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution
C:\Users\Simon\AppData\Roaming\Babylon =>PUP.Optional.Babylon
C:\Users\Simon\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb
C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard =>PUP.Optional.BitGuard
C:\WINDOWS\Prefetch\CACAONEW49D715.EXE-DBA07DA9.pf =>PUP.Optional.CacaoWeb
C:\WINDOWS\Prefetch\CACAONEW4E0C30.EXE-A5E26C3E.pf =>PUP.Optional.CacaoWeb
C:\WINDOWS\Prefetch\CACAOWEB.EXE-54C4DE3F.pf =>PUP.Optional.CacaoWeb

---\\ Récapitulatif des éléments trouvées sur votre station (9) - 0s
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb
http://www.nicolascoolman.fr/toolbar-deltasearch/ =>Toolbar.DeltaSearch
http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/hijacker-eazel/ =>PUP.Optional.Eazel
http://www.nicolascoolman.fr/pup-vittalia/ =>PUP.Optional.Vittalia
http://www.nicolascoolman.fr/blog =>PUP.Optional.Heuristic
http://www.nicolascoolman.fr/hijacker-babsolution/ =>PUP.Optional.BabSolution
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/pup-bitguard/ =>PUP.Optional.BitGuard

~ End of the scan, 16811 items in 184 seconds (733)(0)()

Publicité


Signaler le contenu de ce document

Publicité