Format du document : text/plain
Prévisualisation
~ ZHPDiag v2016.7.23.100 Par Nicolas Coolman (2015/07/22)
~ Démarré par DAMAS (Administrator) (2016/09/30 13:52:09)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Pas de fichier réseau
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\DAMAS\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\DAMAS\Application Data\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows XP, 32-bit Service Pack 3 (Build 2600)
---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v49.0.2623.112
MFIE: Mozilla Firefox 47.0.1 (x86 fr) v47.0.1
MSIE: Internet Explorer v8.0.6001.18702
---\\ Logiciels de protection et autres (Superflus) (1) - 1s
ESET Online Scanner v3
---\\ Logiciels d'optimisation (1) - 1s
CCleaner v3.17
---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 15 Plugin
Adobe Reader X
---\\ Logiciels de partage P2P (1) - 1s
µTorrent v1.8.5
---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3649.192 MB (69% free)
~ System Restore: Désactivé (Disabled)
~ System drive C: has 29 GB free of 50 GB
---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC01
~ User Name: DAMAS
~ Logged in as Administrator
---\\ Enumération des unités disques (5) - 0s
~ Drive C: has 29 GB free of 50 GB (System)
~ Drive D: has 2 GB free of 80 GB
~ Drive E: has 121 GB free of 150 GB
~ Drive F: has 168 GB free of 196 GB
~ Drive G: has GB free of 0 GB
---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
---\\ Recherche particulière de fichiers génériques (22) - 0s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792]
[MD5.6CE32F7778061CCC5814D5E0F282D369] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [914944]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000]
[MD5.322D0E36693D6E24A2398BEE62A268CD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138112]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.68755F0FF16070178B54674FE5B847B0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456576]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376]
---\\ Processus lancés (18) - 0s
[MD5.1778EBA872274C1226D869CD9486847E] - (.InterVideo Inc. - Capture Device Service.) -- C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe [198168] [PID.1076]
[MD5.9BFB6FD62FF573711A257ABD89958394] - (.New Softwares.net - Service Application.) -- C:\WINDOWS\system32\WinFLService.exe [92360] [PID.1224]
[MD5.0A5709543986843D37A92290B7838340] - (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376] [PID.1340]
[MD5.2DE8A6F622B54398412C1FD66D47B1CE] - (.GlavSoft LLC. - TightVNC Server.) -- C:\WINDOWS\securitysvc.exe [1690096] [PID.1832]
[MD5.4BD2C322118A2470B450492A0C3302F9] - (.Ulead Systems, Inc. - ULCDRSvr.) -- C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe [67056] [PID.1872]
[MD5.E47E66538692B1CFD6CC8021546FCC83] - (.Splashtop Inc. - Splashtop Connect Firefox Software Updater.) -- C:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe [493384] [PID.1948]
[MD5.147C60622CB53E901EFD8BB6D44A4C46] - (.Splashtop Inc. - Splashtop Connect IE Software Updater Servi.) -- C:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe [497480] [PID.1992]
[MD5.0F484CEBC0E6724B157E644787B66B68] - (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe [623520] [PID.804]
[MD5.4CB7C0105E9BF50EF2C2F220FBEDBF49] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE [20053608] [PID.1012]
[MD5.38CC541D105DCBA3D3768D6B191D9505] - (.Copyright (C) 2004 - LClock Application.) -- C:\Program Files\LClock\LClock.exe [65536] [PID.1328]
[MD5.D3B35B44C02D83D872D5235865364E0D] - (.Copyright (C) 2006-2011 - Vtune : Display Control Panel.) -- C:\Program Files\Vtune\TBPANEL.exe [2248704] [PID.1444]
[MD5.5B6D32E55325B56053B6F2B771A06B56] - (.New Softwares.net - Tray Application.) -- C:\WINDOWS\system32\WinFLTray.exe [321736] [PID.1456]
[MD5.D8E5D86C3C51DCC37303DAB1983AFB09] - (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe [275656] [PID.1368]
[MD5.D1C53571A33FD49DDC1F20D09B3DBCD8] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3890768] [PID.1568]
[MD5.059A4AF5B932F148D3C5DF194165BC25] - (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServ.exe [1238216] [PID.1708]
[MD5.97674AD10C95902D4F1CCCC8953C753C] - (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe [289584] [PID.1524]
[MD5.D087438A8916937B1D55DE17E7E08177] - (.Webshots.com - Webshots Photo Manager.) -- C:\Program Files\Webshots\Webshots.scr [3343688] [PID.988]
[MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.2160]
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (11) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [fngmhnnpilhplaeedifhccceomclgfbg] EditThisCookie
G2 - GCE: Preference [User Data\Default] [jmfoelkdemmmhhhhnocnicnepicebfmg] Online weather forecast
G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (10) - 0s
M0 - MFSP: prefs.js [DAMAS - u31foj6s.default] http://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggTeF0PAwBDFRgWIl8PTA0QQwQOIQkJVBRARFdCdA1bVQsVQwUFIk0FA18DB0VXfWFoKB8fHHhCJ1BbAFU3SFtH
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@kaspersky.ru_bak2
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru_bak2
P2 - EXT FILE: (...) -- C:\Documents and Settings\DAMAS\Application Data\Mozilla\Firefox\Profiles\u31foj6s.default\extensions\firefox-hotfix@mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\DAMAS\Application Data\Mozilla\Firefox\Profiles\u31foj6s.default\searchplugins\default.xml
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc..) -- C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (1) - 0s
B0 - SPO: C:\Documents and Settings\DAMAS\Application Data\Opera\Opera\operaprefs.ini [DAMAS] http://search.speedbit.com/?s=CCIb105
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (10) - 0s
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)
---\\ Browser Helper Object de navigateur (BHO) (O2) (5) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java(TM) Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
---\\ Internet Explorer Toolbars (O3) (1) - 0s
O3 - Toolbar: 0x07000000000000007E69791EC59CD111A83F00C04FC99D612001000004000000000000007E69791EC59CD111A83F00C04FC99D612101000004000000000000007E69791EC59CD111A83F00C04FC99D612401000004000000000000007E69791EC59CD111A83F00C04FC99D612501000004000000000000007E69791EC59CD111A83F00C04FC99D612201000004000000FFFFFFFF000000000000000000000000000000000000000000000000000000007E69791EC59CD111A83F00C04FC99D612301000004000000000000007E69791EC59CD111A83F00C04FC99D612601000004000000000000007E69791EC59CD111A83F00C04FC99D613401000004000000000000007E69791EC59CD111A83F00C04FC99D612E01000004000000FFFFFFFF000000000000000000000000000000000000000000000000000000008069791EC59CD111A83F00C04FC99D617101000004000000000000008069791EC59CD111A83F00C04FC99D610401000004000000000000008069791EC59CD111A83F00C04FC99D610220000004000000000000008069791EC59CD111A83F00C04FC99D617301000004000000000000008069791EC59CD111A83F00C04FC99D617401000004000000000000008069791EC59CD111A83F00C04FC99D610000000004000000000000008069791EC59CD111A83F00C04FC99D610120000004000000 - [HKCU]{1E796980-9CC5-11D1-A83F-00C04FC99D61} . (...) -- (.not file.)
---\\ Applications lancées au démarrage du sytème (O4) (29) - 1s
O4 - HKLM\..\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe
O4 - HKCU\..\Run: [LClock] . (.Copyright (C) 2004 - LClock Application.) -- C:\Program Files\LClock\LClock.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
O4 - HKCU\..\Run: [TBPanel] . (.Copyright (C) 2006-2011 - Vtune : Display Control Panel.) -- C:\Program Files\Vtune\TBPANEL.exe
O4 - HKCU\..\Run: [EPSON SX130 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\E_FATIHJE.EXE
O4 - HKCU\..\Run: [BeyluxeMessenger] C:\Program Files\Beyluxe Messenger\Beyluxe Messenger.exe (.not file.)
O4 - HKCU\..\Run: [WinFLTray] . (.New Softwares.net - Tray Application.) -- C:\WINDOWS\system32\WinFLTray.exe
O4 - HKCU\..\Run: [FLBackup] . (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe
O4 - HKCU\..\Run: [ultracopier] C:\Program Files\Supercopier\supercopier.exe (.not file.)
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [LClock] . (.Copyright (C) 2004 - LClock Application.) -- C:\Program Files\LClock\LClock.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [TBPanel] . (.Copyright (C) 2006-2011 - Vtune : Display Control Panel.) -- C:\Program Files\Vtune\TBPANEL.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [EPSON SX130 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\E_FATIHJE.EXE
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [BeyluxeMessenger] C:\Program Files\Beyluxe Messenger\Beyluxe Messenger.exe (.not file.)
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [WinFLTray] . (.New Softwares.net - Tray Application.) -- C:\WINDOWS\system32\WinFLTray.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [FLBackup] . (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [ultracopier] C:\Program Files\Supercopier\supercopier.exe (.not file.)
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-682003330-1935655697-1177238915-1003\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Liste des services NT non Microsoft et non désactivés (O23) (11) - 0s
O23 - Service: Capture Device Service (Capture Device Service) . (.InterVideo Inc. - Capture Device Service.) - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\Program Files\Fichiers communs\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: FLService (FLService) . (.New Softwares.net - Service Application.) - C:\WINDOWS\system32\WinFLService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 280.2.) - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: TightVNC Server (tvnserver) . (.GlavSoft LLC. - TightVNC Server.) - C:\WINDOWS\securitysvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) . (.Ulead Systems, Inc. - ULCDRSvr.) - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Splashtop Connect Firefox Software Updater Service (WCUService_STC_FF) . (.Splashtop Inc. - Splashtop Connect Firefox Software Updater.) - C:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe
O23 - Service: Splashtop Connect IE Software Updater Service (WCUService_STC_IE) . (.Splashtop Inc. - Splashtop Connect IE Software Updater Servi.) - C:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe
---\\ Tâches planifiées en automatique (O39) (3) - 1s
O39 - APT: - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1056]
---\\ Logiciels installés (O42) (80) - 6s
O42 - Logiciel: 7-Zip 4.42 - (...) [HKLM] -- 7-Zip
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 15 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 15 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Auto Gordian Knot 2.55 - (.len0x.) [HKLM] -- AutoGK
O42 - Logiciel: AviSynth 2.5 - (...) [HKLM] -- AviSynth
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: EaseUS Data Recovery Wizard 6.0 - (.EaseUS.) [HKLM] -- EaseUS Data Recovery Wizard 6.0_is1
O42 - Logiciel: EPSON SX130 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX130 Series
O42 - Logiciel: ESET Online Scanner v3 - (...) [HKLM] -- ESET Online Scanner
O42 - Logiciel: Folder Lock - (.New Softwares.net.) [HKLM] -- Folder Lock
O42 - Logiciel: FormatFactory 2.70 - (.Free Time.) [HKLM] -- FormatFactory
O42 - Logiciel: GoldWave v5.25 - (...) [HKLM] -- GoldWave v5.25
O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM] -- GOM Player
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Hamsterball - (...) [HKLM] -- Hamsterball_is1
O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs - (.Microsoft Corporation.) [HKLM] -- IDNMitigationAPIs
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Ulead VideoStudio 11 - (.InterVideo Digital Technology Corporation.) [HKLM] -- InstallShield_{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager
O42 - Logiciel: Jets N Guns - (...) [HKLM] -- Jets N Guns_is1
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: LClock - (...) [HKLM] -- LClock
O42 - Logiciel: Luxor - (...) [HKLM] -- Luxor_is1
O42 - Logiciel: maoussouaa - (...) [HKLM] -- maoussouaa1.0
O42 - Logiciel: Mozilla Firefox 47.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 47.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: MultiTranse 6.7.1 - (.Tialsoft software.) [HKLM] -- MultiTranse_is1
O42 - Logiciel: My Program version 1.5 - (...) [HKLM] -- My Program_is1
O42 - Logiciel: Vtune 7.21 - (...) [HKLM] -- MySSID_is1
O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping
O42 - Logiciel: NVIDIA nView Desktop Manager - (.NVIDIA Corporation.) [HKLM] -- NVIDIA nView Desktop Manager
O42 - Logiciel: OpenAL - (...) [HKLM] -- OpenAL
O42 - Logiciel: Photoshine 4.0 - (.Photo Editor Software, Inc..) [HKLM] -- Photoshine_is1
O42 - Logiciel: Quran_2 Screen Saver - (...) [HKLM] -- Quran_2 Screen Saver
O42 - Logiciel: Ricochet Xtreme High Definition Art add-on 1.0 - (.Reflexive Entertainment, Inc..) [HKLM] -- Ricochet Xtreme High Definition Art add-on_is1
O42 - Logiciel: Ricochet Xtreme - (...) [HKLM] -- Ricochet Xtreme_is1
O42 - Logiciel: The KMPlayer (remove only) - (...) [HKLM] -- The KMPlayer
O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM] -- USB Disk Security_is1
O42 - Logiciel: µTorrent - (...) [HKLM] -- uTorrent
O42 - Logiciel: VLC media player 2.0.0 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: VobSub v2.23 (Remove Only) - (...) [HKLM] -- VobSub
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007
O42 - Logiciel: Webshots Desktop - (.AGCM.) [HKLM] -- Webshots Desktop_is1
O42 - Logiciel: Windows Media Format Runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: WinRAR 4.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Microsoft WinUsb 1.0 - (.Microsoft Corporation.) [HKLM] -- winusb0100
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP
O42 - Logiciel: XviD MPEG4 Video Codec (remove only) - (...) [HKLM] -- XviD MPEG4 Video Codec
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Annuaire Djezzy - (.Annuaire Djezzy.) [HKLM] -- {211D0179-C23B-4421-9385-C079ED5DF405}_is1
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Java(TM) 6 Update 31 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216031FF}
O42 - Logiciel: ON_OFF Charge B11.0110.1 - (.GIGABYTE.) [HKLM] -- {3DECD372-76A1-4483-BF10-B547790A3261}
O42 - Logiciel: Splashtop Connect IE - (.Splashtop Inc..) [HKLM] -- {418D77E2-7B60-48F8-B016-30A32699EE74}
O42 - Logiciel: Nero 7 Ultra Edition - (.Nero AG.) [HKLM] -- {43FFE159-3199-4188-A1CD-629166AD1033}
O42 - Logiciel: InterVideo DeviceService - (.InterVideo.) [HKLM] -- {521AAD14-5030-44BB-8B0E-5CE65FCE57E0}
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}
O42 - Logiciel: PhotoInstrument 7.0 - (.Fatykhov Timur.) [HKLM] -- {5A7A2AED-781B-45DC-AAF6-EAA3A9370C83}}_is1
O42 - Logiciel: Skype 3.8 - (.Skype Technologies S.A..) [HKLM] -- {5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {6DB7AD00-F781-11DF-9EEF-001279CD8240}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824157129}
O42 - Logiciel: Adobe Reader X (10.1.4) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {B194272D-1F92-46DF-99EB-8D5CE91CB4EC}
O42 - Logiciel: NVIDIA Pilote graphique 280.26 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA nView 135.94 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.10.0514 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: Mises à jour NVIDIA 1.4.28 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: NVIDIA Pilote audio HD : 1.2.23.3 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
O42 - Logiciel: REALTEK GbE & FE Ethernet PCI-E NIC Driver - (.Realtek.) [HKLM] -- {C9BED750-1211-4480-B1A5-718A3BE15525}
O42 - Logiciel: Splashtop Connect for Firefox - (.Splashtop Inc..) [HKLM] -- {D2BF4F2C-BDF3-41C3-8D38-185F6342EC47}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
---\\ HKCU & HKLM Software Keys (143) - 6s
HKLM\SOFTWARE\7-Zip
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdsFix
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\Audible
HKLM\SOFTWARE\AutoGK
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CLSID
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\EASEUS
HKLM\SOFTWARE\EnigmaSoftwareGroup
HKLM\SOFTWARE\EPSON
HKLM\SOFTWARE\Eset
HKLM\SOFTWARE\Freemake
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GIGABYTE
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GRETECH
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Imagenomic
HKLM\SOFTWARE\INTEL
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\KMPlayer
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\MagicalFind
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\NewSoftware's
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\PopCap
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Reflexive Entertainment
HKLM\SOFTWARE\ReflexiveArcade
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RTLSetup
HKLM\SOFTWARE\SAMSUNG
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\Silver
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\SOSVirus
HKLM\SOFTWARE\Splashtop Inc.
HKLM\SOFTWARE\Springfield
HKLM\SOFTWARE\Sysinternals
HKLM\SOFTWARE\TightVNC
HKLM\SOFTWARE\Ulead Systems
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\VobSub
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Xing Technology Corp.
HKCU\SOFTWARE\4shared
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\AceTools
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AdsFix
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Beyluxe Messenger
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Caviarryss
HKCU\SOFTWARE\dahanco
HKCU\SOFTWARE\DownloadCenter
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\Ectaco
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Freeware
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\GoldWave
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GRETECH
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\KasperskyLabSetup
HKCU\SOFTWARE\KMPlayer
HKCU\SOFTWARE\LClock
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Mediachance
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MultiTranse
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewSoftware's
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OJOsoft Corporation
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\OXXOgames
HKCU\SOFTWARE\PhotoInstrument
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PopCap
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Screen Saver(s)
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\SimpleTV by SergeyVS#3
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Splashtop Inc.
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TBPANEL
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TROPHY
HKCU\SOFTWARE\Ulead
HKCU\SOFTWARE\Ulead Systems
HKCU\SOFTWARE\Ultracopier
HKCU\SOFTWARE\URSoft
HKCU\SOFTWARE\Webshots
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\yahoo
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (229) - 4s
O43 - CFD: 2012/03/28 15:25:56 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 2012/12/25 09:24:19 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2014/09/27 15:58:10 - [] D -- C:\Program Files\Annuaire Djezzy
O43 - CFD: 2014/09/15 22:17:11 - [] D -- C:\Program Files\AutoGK
O43 - CFD: 2014/09/15 22:17:00 - [] D -- C:\Program Files\AviSynth 2.5
O43 - CFD: 2012/11/07 20:16:37 - [] D -- C:\Program Files\Bricks of Atlantis
O43 - CFD: 2012/03/28 13:51:51 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2011/05/31 07:03:20 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 2012/08/30 02:46:55 - [0] D -- C:\Program Files\coran_tafsir
O43 - CFD: 2012/11/07 20:16:48 - [] D -- C:\Program Files\Cosmic Bugs
O43 - CFD: 2013/10/08 18:48:00 - [] D -- C:\Program Files\EaseUS
O43 - CFD: 2016/09/17 17:29:59 - [0] D -- C:\Program Files\Embratoria
O43 - CFD: 2014/08/01 20:55:09 - [] D -- C:\Program Files\Enigma Software Group =>.Enigma Software
O43 - CFD: 2016/09/29 23:25:13 - [] D -- C:\Program Files\ESET
O43 - CFD: 2015/09/14 21:43:31 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2014/09/14 20:07:27 - [0] D -- C:\Program Files\Freemake
O43 - CFD: 2012/03/28 14:10:41 - [] D -- C:\Program Files\FreeTime
O43 - CFD: 2014/09/15 22:16:39 - [] D -- C:\Program Files\Gabest
O43 - CFD: 2012/08/30 02:55:08 - [] D -- C:\Program Files\GIGABYTE
O43 - CFD: 2013/01/12 15:17:20 - [] D -- C:\Program Files\GoldWave
O43 - CFD: 2015/09/18 14:39:55 - [] D -- C:\Program Files\Google
O43 - CFD: 2012/03/28 12:25:55 - [] D -- C:\Program Files\GRETECH
O43 - CFD: 2015/12/03 23:38:56 - [0] D -- C:\Program Files\GUM2E8.tmp
O43 - CFD: 2016/05/11 10:50:07 - [0] D -- C:\Program Files\GUM38.tmp
O43 - CFD: 2012/11/07 20:22:34 - [] D -- C:\Program Files\Hamsterball
O43 - CFD: 2015/05/17 21:31:30 - [] D -- C:\Program Files\Imagenomic
O43 - CFD: 2015/09/18 14:08:26 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/03/31 19:18:59 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 2012/11/11 19:10:14 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2012/03/28 15:32:21 - [] D -- C:\Program Files\Java
O43 - CFD: 2012/03/28 16:07:05 - [] D -- C:\Program Files\Jets N Guns
O43 - CFD: 2016/09/30 12:13:40 - [] D -- C:\Program Files\Kaspersky Lab
O43 - CFD: 2012/03/28 14:47:52 - [] D -- C:\Program Files\LClock
O43 - CFD: 2012/12/25 15:27:08 - [] D -- C:\Program Files\Luxor
O43 - CFD: 2012/08/30 02:46:37 - [0] D -- C:\Program Files\maoussouaa
O43 - CFD: 2012/03/28 15:28:41 - [] D -- C:\Program Files\Mawsoaat Hadeeth
O43 - CFD: 2011/05/31 07:03:01 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2012/03/28 12:54:01 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 2011/05/31 07:07:38 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2012/03/28 12:31:23 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2012/11/12 22:43:20 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2012/03/28 12:31:21 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2012/03/28 12:31:35 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2016/09/29 19:24:31 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2011/05/31 07:04:49 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2016/08/23 19:49:09 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2016/08/23 19:49:08 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2012/03/28 12:31:29 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2011/05/31 07:02:11 - [] D -- C:\Program Files\MSN
O43 - CFD: 2011/05/31 07:02:55 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2016/07/08 19:50:26 - [] D -- C:\Program Files\MultiTranse
O43 - CFD: 2014/08/01 20:35:51 - [0] D -- C:\Program Files\MyRealGames.com
O43 - CFD: 2012/03/28 14:51:23 - [] D -- C:\Program Files\Nero
O43 - CFD: 2011/05/31 07:05:07 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2015/08/14 22:05:45 - [] D -- C:\Program Files\NewSoftware's
O43 - CFD: 2014/04/27 20:14:36 - [] D -- C:\Program Files\Nowstat.com
O43 - CFD: 2012/11/06 19:35:51 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 2011/05/31 07:03:06 - [] D -- C:\Program Files\Online Services
O43 - CFD: 2012/03/28 16:21:21 - [] D -- C:\Program Files\OpenAL
O43 - CFD: 2012/11/07 20:01:49 - [] D -- C:\Program Files\Opera
O43 - CFD: 2011/05/31 07:05:02 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2015/05/18 22:48:49 - [] D -- C:\Program Files\PhotoInstrument
O43 - CFD: 2015/05/19 22:53:45 - [] D -- C:\Program Files\Photoshine
O43 - CFD: 2015/05/19 21:08:26 - [] D -- C:\Program Files\PhotoshopPortable
O43 - CFD: 2014/04/27 20:14:55 - [] D -- C:\Program Files\PopCap Games
O43 - CFD: 2012/03/28 11:15:27 - [] D -- C:\Program Files\Real
O43 - CFD: 2012/08/30 02:54:55 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2012/03/28 13:13:30 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2012/03/28 16:03:07 - [] D -- C:\Program Files\ReflexiveArcade
O43 - CFD: 2014/04/24 23:52:05 - [] D -- C:\Program Files\Ricochet Xtreme
O43 - CFD: 2015/09/18 14:08:27 - [] D -- C:\Program Files\SAMSUNG
O43 - CFD: 2011/05/31 07:05:46 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2012/03/28 12:25:13 - [] D -- C:\Program Files\Skype
O43 - CFD: 2012/08/30 02:53:26 - [] D -- C:\Program Files\Splashtop
O43 - CFD: 2013/02/27 15:07:32 - [] D -- C:\Program Files\The KMPlayer
O43 - CFD: 2013/01/14 20:02:24 - [] D -- C:\Program Files\Ulead Systems
O43 - CFD: 2011/05/31 07:12:20 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2016/08/01 13:38:04 - [] D -- C:\Program Files\USB Disk Security
O43 - CFD: 2012/03/28 15:59:55 - [] D -- C:\Program Files\uTorrent
O43 - CFD: 2012/03/28 13:28:50 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2012/11/06 19:30:39 - [] D -- C:\Program Files\Vtune
O43 - CFD: 2012/11/07 22:50:41 - [] D -- C:\Program Files\Webshots
O43 - CFD: 2012/03/28 12:53:56 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 2012/03/28 12:53:45 - [] D -- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 2013/01/14 20:03:12 - [] D -- C:\Program Files\Windows Media Components
O43 - CFD: 2012/03/28 14:51:11 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2011/05/31 07:02:42 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2011/05/31 07:05:50 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 2012/03/28 11:13:45 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2011/05/31 07:07:39 - [] D -- C:\Program Files\xerox
O43 - CFD: 2014/09/15 22:17:06 - [] D -- C:\Program Files\XviD
O43 - CFD: 2014/08/17 14:29:37 - [] D -- C:\Program Files\Your Uninstaller! 7
O43 - CFD: 2012/03/28 15:25:56 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\7-Zip
O43 - CFD: 2012/11/25 20:32:41 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2014/09/15 22:17:11 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AutoGK
O43 - CFD: 2015/09/14 23:24:35 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AviSynth 2.5
O43 - CFD: 2012/03/28 11:12:47 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 2011/05/31 08:12:23 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2013/10/08 18:48:01 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EaseUS Data Recovery Wizard 6.0
O43 - CFD: 2012/11/25 20:33:30 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EPSON
O43 - CFD: 2015/08/14 22:06:12 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Folder Lock
O43 - CFD: 2012/03/28 12:25:59 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\GOM Player
O43 - CFD: 2012/03/28 16:17:35 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Earth
O43 - CFD: 2012/03/28 16:15:47 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Hamsterball
O43 - CFD: 2015/03/30 19:43:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 2012/03/28 16:06:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jets N Guns
O43 - CFD: 2011/05/31 07:03:31 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2012/03/28 16:03:21 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Luxor
O43 - CFD: 2015/09/14 23:24:35 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\maoussouaa
O43 - CFD: 2012/03/28 12:31:49 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 2012/11/12 22:43:23 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2016/07/08 19:50:26 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MultiTranse
O43 - CFD: 2012/03/28 14:52:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero 7 Ultra Edition
O43 - CFD: 2011/05/31 07:07:14 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/05/18 22:48:49 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PhotoInstrument
O43 - CFD: 2015/05/19 22:53:51 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Photoshine
O43 - CFD: 2012/03/28 16:09:39 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Ricochet Xtreme
O43 - CFD: 2012/11/06 21:09:42 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 2013/01/14 20:05:06 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Ulead VideoStudio 11
O43 - CFD: 2012/03/28 12:24:37 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\USB Disk Security
O43 - CFD: 2012/03/28 13:29:11 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2012/11/06 19:30:39 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Vtune
O43 - CFD: 2012/03/28 12:54:15 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live
O43 - CFD: 2012/03/28 11:13:47 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2014/09/15 22:17:06 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\XviD
O43 - CFD: 2014/08/17 14:29:37 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Your Uninstaller! 7
O43 - CFD: 2012/12/25 09:24:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2013/01/24 15:34:02 - [] D -- C:\Documents and Settings\All Users\Application Data\EPSON
O43 - CFD: 2012/03/28 15:07:28 - [] D -- C:\Documents and Settings\All Users\Application Data\Google
O43 - CFD: 2013/04/04 20:03:30 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM
O43 - CFD: 2013/01/14 20:05:21 - [] D -- C:\Documents and Settings\All Users\Application Data\InterVideo
O43 - CFD: 2012/03/28 16:27:29 - [] D -- C:\Documents and Settings\All Users\Application Data\JetFlash220
O43 - CFD: 2016/09/30 12:13:39 - [] D -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
O43 - CFD: 2016/07/08 19:50:29 - [] D -- C:\Documents and Settings\All Users\Application Data\Licenses
O43 - CFD: 2014/04/27 20:14:55 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2014/10/01 20:50:06 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 2013/07/01 17:04:25 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2012/03/28 14:51:23 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 2012/11/06 19:35:52 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA
O43 - CFD: 2012/11/06 19:35:26 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 2014/04/24 23:45:40 - [] D -- C:\Documents and Settings\All Users\Application Data\PopCap Games
O43 - CFD: 2015/09/18 14:08:16 - [] D -- C:\Documents and Settings\All Users\Application Data\Samsung
O43 - CFD: 2012/03/28 12:25:13 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2012/12/18 23:03:47 - [0] D -- C:\Documents and Settings\All Users\Application Data\Speedbit
O43 - CFD: 2012/11/06 21:28:16 - [] D -- C:\Documents and Settings\All Users\Application Data\Splashtop
O43 - CFD: 2012/03/28 15:32:50 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2016/07/15 20:59:48 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 2013/01/14 20:08:42 - [] D -- C:\Documents and Settings\All Users\Application Data\Ulead Systems
O43 - CFD: 2012/03/28 12:37:59 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2012/03/28 13:27:04 - [0] D -- C:\Documents and Settings\All Users\Application Data\Zbshareware Lab
O43 - CFD: 2012/12/25 09:24:21 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2012/03/28 15:59:26 - [] D -- C:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 2012/03/28 14:52:10 - [] D -- C:\Program Files\Fichiers communs\Ahead
O43 - CFD: 2012/03/28 12:31:21 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 2012/11/25 20:33:36 - [] D -- C:\Program Files\Fichiers communs\EPSON
O43 - CFD: 2013/01/14 20:05:16 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2013/01/14 20:05:26 - [] D -- C:\Program Files\Fichiers communs\InterVideo
O43 - CFD: 2012/03/28 15:32:49 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 2012/03/28 12:53:50 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2011/05/31 07:05:00 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2011/05/31 08:12:59 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2012/11/07 20:02:28 - [] D -- C:\Program Files\Fichiers communs\Real
O43 - CFD: 2011/05/31 07:05:06 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2012/03/28 12:25:12 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 2011/05/31 08:12:55 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2012/12/18 20:13:09 - [] D -- C:\Program Files\Fichiers communs\SpeedBit
O43 - CFD: 2012/03/28 12:29:01 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2013/01/14 20:03:10 - [] D -- C:\Program Files\Fichiers communs\Ulead Systems
O43 - CFD: 2012/03/28 12:52:29 - [] D -- C:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 2014/08/12 22:44:17 - [] D -- C:\Program Files\Fichiers communs\Wise Installation Wizard
O43 - CFD: 2012/11/10 22:26:43 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Adobe
O43 - CFD: 2012/11/17 20:13:29 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Ahead
O43 - CFD: 2014/06/07 19:51:04 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Beyluxe
O43 - CFD: 2016/09/30 13:42:23 - [] D -- C:\Documents and Settings\DAMAS\Application Data\DMCache
O43 - CFD: 2014/04/27 20:08:00 - [] D -- C:\Documents and Settings\DAMAS\Application Data\DominiGames
O43 - CFD: 2012/08/30 03:06:06 - [0] D -- C:\Documents and Settings\DAMAS\Application Data\DRPSu
O43 - CFD: 2016/04/11 17:35:06 - [] D -- C:\Documents and Settings\DAMAS\Application Data\dvdcss
O43 - CFD: 2016/07/08 19:50:51 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Ectaco
O43 - CFD: 2015/09/14 22:47:15 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Elex-tech =>PUP.Optional.Elex
O43 - CFD: 2014/04/27 19:54:53 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Funlinker
O43 - CFD: 2012/03/28 16:19:07 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Google
O43 - CFD: 2012/11/30 22:57:30 - [] D -- C:\Documents and Settings\DAMAS\Application Data\GRETECH
O43 - CFD: 2011/05/31 07:12:21 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Identities
O43 - CFD: 2015/09/14 23:12:29 - [] D -- C:\Documents and Settings\DAMAS\Application Data\IDM
O43 - CFD: 2012/03/28 15:21:09 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Macromedia
O43 - CFD: 2015/12/23 22:07:17 - [] SD -- C:\Documents and Settings\DAMAS\Application Data\Microsoft
O43 - CFD: 2012/03/28 13:42:18 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Mozilla
O43 - CFD: 2012/11/17 17:02:37 - [] D -- C:\Documents and Settings\DAMAS\Application Data\NVIDIA
O43 - CFD: 2012/03/28 11:13:32 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Opera
O43 - CFD: 2012/11/07 20:02:20 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Real
O43 - CFD: 2015/09/18 14:08:27 - [0] D -- C:\Documents and Settings\DAMAS\Application Data\Samsung
O43 - CFD: 2014/12/06 22:25:23 - [] D -- C:\Documents and Settings\DAMAS\Application Data\SanDisk SecureAccess
O43 - CFD: 2015/12/12 21:11:33 - [] D -- C:\Documents and Settings\DAMAS\Application Data\ScreenSeven
O43 - CFD: 2016/09/25 22:19:55 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Skype
O43 - CFD: 2012/08/30 02:53:32 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Splashtop
O43 - CFD: 2012/03/28 15:25:39 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Sun
O43 - CFD: 2013/01/14 20:14:33 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Ulead Systems
O43 - CFD: 2014/08/17 14:29:41 - [] D -- C:\Documents and Settings\DAMAS\Application Data\URSoft
O43 - CFD: 2016/09/30 13:42:48 - [] D -- C:\Documents and Settings\DAMAS\Application Data\uTorrent
O43 - CFD: 2016/09/30 12:13:05 - [] D -- C:\Documents and Settings\DAMAS\Application Data\vlc
O43 - CFD: 2012/03/28 14:01:04 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Webshots
O43 - CFD: 2012/03/28 14:10:28 - [] D -- C:\Documents and Settings\DAMAS\Application Data\WinRAR
O43 - CFD: 2012/03/28 13:27:04 - [] D -- C:\Documents and Settings\DAMAS\Application Data\Zbshareware Lab
O43 - CFD: 2016/09/30 13:52:09 - [] D -- C:\Documents and Settings\DAMAS\Application Data\ZHP
O43 - CFD: 2012/11/10 22:26:43 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Adobe
O43 - CFD: 2013/08/09 15:41:28 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Ahead
O43 - CFD: 2015/07/22 22:44:40 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Cimaware
O43 - CFD: 2015/09/18 14:11:21 - [0] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Deployment
O43 - CFD: 2015/08/10 19:54:36 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 2016/03/21 12:32:51 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Google
O43 - CFD: 2012/03/28 15:38:59 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Identities
O43 - CFD: 2016/09/22 21:02:47 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Microsoft
O43 - CFD: 2012/03/28 12:28:38 - [0] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Microsoft Help
O43 - CFD: 2012/03/28 13:42:16 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Mozilla
O43 - CFD: 2012/03/28 11:13:32 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Opera
O43 - CFD: 2015/09/18 14:08:27 - [0] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Samsung
O43 - CFD: 2014/12/29 20:31:52 - [] D -- C:\Documents and Settings\DAMAS\Local Settings\Application Data\Temp
O43 - CFD: 2012/03/28 13:26:54 - [] RD -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2014/09/15 22:17:00 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\AviSynth 2.5
O43 - CFD: 2016/07/10 13:55:03 - [] RD -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2012/03/28 14:10:55 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\FormatFactory
O43 - CFD: 2013/01/12 15:17:20 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\GoldWave
O43 - CFD: 2015/03/30 19:43:08 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 2012/03/28 14:47:52 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\LClock
O43 - CFD: 2012/03/28 15:26:36 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\Quran_2 Screen Saver
O43 - CFD: 2012/03/28 12:51:37 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\The KMPlayer
O43 - CFD: 2014/09/15 22:16:41 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\VobSub
O43 - CFD: 2012/03/28 11:13:47 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2012/03/28 15:28:41 - [] D -- C:\Documents and Settings\DAMAS\Menu Démarrer\Programmes\ãæÓæÚÉ ÇáÍÏíË ÇáäÈæí ÇáÔÑíÝ
---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (5) - 1s
O53 - SMSR:HKLM\...\startupreg\Messenger (Yahoo!) [Key] . (...) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O53 - SMSR:HKLM\...\startupreg\NeroFilterCheck [Key] . (.Nero AG - NeroCheck.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (...) -- C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
---\\ Liste des pilotes du système (SDL) (O58) (63) - 1s
O58 - SDL:2009/11/18 01:16:00 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480]
O58 - SDL:2011/01/10 18:16:16 A . (...) -- C:\WINDOWS\System32\drivers\AppleCharger.sys [18544]
O58 - SDL:2008/04/13 20:55:34 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys [701440]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x86 (Weak).) -- C:\WINDOWS\System32\drivers\cm_km.sys [201912]
O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2013/12/30 10:52:38 A . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\WINDOWS\System32\drivers\dgderdrv.sys [20032]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2001/08/17 22:13:08 A . (.VIA Technologies, Inc. - NDIS 5.0 miniport driver.) -- C:\WINDOWS\System32\drivers\fetnd5.sys [27165]
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2011/09/22 10:38:36 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECI.sys [41216]
O58 - SDL:2015/03/27 02:10:50 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- C:\WINDOWS\System32\drivers\idmtdi.sys [126968]
O58 - SDL:2011/02/27 18:21:39 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [2184000]
O58 - SDL:2007/03/14 19:20:36 A . (.Ahead Software AG - NERO IMAGEDRIVE SCSI miniport.) -- C:\WINDOWS\System32\drivers\imagedrv.sys [11568]
O58 - SDL:2007/03/14 19:20:38 A . (.Ahead Software AG - Nero Image Server.) -- C:\WINDOWS\System32\drivers\imagesrv.sys [133168]
O58 - SDL:2015/09/11 20:30:36 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\WINDOWS\System32\drivers\kl1.sys [155304]
O58 - SDL:2015/06/06 08:50:18 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [46776]
O58 - SDL:2015/12/01 22:30:18 A . (.AO Kaspersky Lab - Backup File Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [66440]
O58 - SDL:2015/12/02 00:21:12 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\kldisk.sys [67456]
O58 - SDL:2016/04/29 01:52:56 A . (.AO Kaspersky Lab - klhk [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klhk.sys [53168]
O58 - SDL:2013/04/19 10:44:54 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\WINDOWS\System32\drivers\klim5.sys [36448]
O58 - SDL:2015/11/11 11:55:42 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [45440]
O58 - SDL:2015/11/06 17:45:14 A . (.AO Kaspersky Lab - Light Keyboard Device Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klkbdflt2.sys [39808]
O58 - SDL:2015/06/07 01:44:46 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [37040]
O58 - SDL:2015/12/07 16:08:20 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klpd.sys [41864]
O58 - SDL:2015/11/23 17:05:14 A . (.AO Kaspersky Lab - TDI Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\kltdf.sys [83328]
O58 - SDL:2015/06/11 15:52:38 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- C:\WINDOWS\System32\drivers\kltdi.sys [54328]
O58 - SDL:2015/12/03 00:36:22 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\kneps.sys [161672]
O58 - SDL:2011/03/22 09:58:42 RA . (.Atheros Communications, Inc. - Atheros AR813x/AR815x PCI-E Ethernet Contro.) -- C:\WINDOWS\System32\drivers\l1c51x86.sys [65136]
O58 - SDL:2009/11/18 01:17:00 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2011/08/03 13:49:00 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [12542592]
O58 - SDL:2011/05/10 11:41:30 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda32.sys [119528]
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2011/05/04 12:31:00 A . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [295528]
O58 - SDL:2011/06/07 14:57:28 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [6353000]
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2007/03/16 11:11:38 A . (.Windows (R) 2000 DDK provider - Display Control Program.) -- C:\WINDOWS\System32\drivers\TBPanel.sys [12256]
O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2012/06/22 12:01:32 A . (...) -- C:\WINDOWS\System32\ESGScanner.sys [19984]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]
O58 - SDL:2015/08/14 22:06:09 A . (...) -- C:\WINDOWS\System32\WinFLAdrv.sys [29184]
O58 - SDL:2015/08/14 22:06:06 A . (.NewSoftwares.net, Inc. - Virtual Encryption Driver.) -- C:\WINDOWS\System32\WinVDEdrv.sys [228112]
O58 - SDL:2015/08/14 22:06:07 A . (...) -- C:\WINDOWS\System32\WinVDEdrv6.sys [188176]
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (47) - 2s
O61 - LFC: 2016/09/29 23:24:41 A . (.ESET.) -- C:\Documents and Settings\DAMAS\Mes documents\Downloads\Programs\esetsmartinstaller_fra.exe [2870984]
O61 - LFC: 2016/09/29 20:04:00 A . (.Kaspersky Lab ZAO.) -- C:\Documents and Settings\DAMAS\Mes documents\Downloads\Programs\KVRT.exe [100510552]
O61 - LFC: 2016/09/29 22:05:21 A . (.Kaspersky Lab ZAO.) -- C:\Documents and Settings\DAMAS\Mes documents\Downloads\Programs\KVRT_2.exe [100542808]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Arabic.bin [21543]
O61 - LFC: 2016/09/29 20:29:08 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\autorun.dll [416768]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Croatian.bin [24855]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Czech.bin [24769]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Danish.bin [23225]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Dutch.bin [26202]
O61 - LFC: 2016/09/30 12:29:13 A . (.ESET.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\ehdrv.sys [135760]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\English.bin [22808]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Finnish.bin [23326]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\French.bin [28183]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\German.bin [26669]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Greek.bin [25631]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Hebrew.bin [19937]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Hungarian.bin [26549]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Italian.bin [28419]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Japanese.bin [25202]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Korean.bin [20917]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Lithuanian.bin [25980]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Norwegian.bin [22406]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Polish.bin [24949]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Portuguese(Brazil).bin [26023]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Portuguese.bin [26912]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Russian.bin [26582]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\SimChin.bin [17030]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Slovak.bin [26159]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Slovenian.bin [24330]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Spanish.bin [28759]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\SWEDISH.bin [24503]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Thai.bin [22395]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\TradChin.bin [17584]
O61 - LFC: 2016/09/29 22:22:22 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\Turkish.bin [22830]
O61 - LFC: 2016/09/29 19:41:37 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\F8175962-866B-11E6-8D97-F183CD1926D3\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 23:19:40 A . (.Kaspersky Lab.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\EC91C4E6A8686E11D8F9DC93A56441ED\SETUP.DLL [5407960]
O61 - LFC: 2016/09/30 00:33:57 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\CED4688C-8694-11E6-8DA0-B4F37A1544D2\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 20:30:32 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\CD3083A3-8672-11E6-8D98-D01D4F6B70DF\TEST_WPF.EXE [17568]
O61 - LFC: 2016/09/29 22:24:37 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\BDA15F1E-8682-11E6-8D9E-CD6CB8BD69DE\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 19:04:05 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\B9B5F638-8666-11E6-8D93-E15E5E5BB0D3\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/30 12:10:29 A . (..) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\autorun\autorun.dll [55296]
O61 - LFC: 2016/09/29 19:30:37 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\6EB0F508-866A-11E6-8D96-F2868B9DBFD3\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 23:19:45 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\6E4C19D1-868A-11E6-8D9F-CD395A4614DE\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 18:54:06 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\511F0E6F-8665-11E6-8D92-B6E1701CC6DE\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/30 12:11:12 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\32405035-86F6-11E6-8DA1-AD7ADCCC0FD3\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 17:55:26 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\22797226-865D-11E6-8D91-ED0C0F4892D7\TEST_WPF.EXE [20736]
O61 - LFC: 2016/09/29 21:36:47 A . (.Copyright © 2013.) -- C:\Documents and Settings\DAMAS\Local Settings\Temp\09CA224F-867C-11E6-8D9D-8669822D15DE\TEST_WPF.EXE [20736]
---\\ Menu de démarrage Internet (SMI) (O68) (13) - 0s
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 3s
O69 - SBI: SearchScopes [HKCU] {2E93BCA5-248F-4d21-97C4-839AF2770225} - (Yahoo) - http://fr.search.yahoo.com/
O69 - SBI: SearchScopes [HKCU] {6E025A3C-46AE-429F-945B-FA0D31A25377} [DefaultScope] - (google.com) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {7BD4DFF5-899F-4C2C-9CF2-BB48E34131DA} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {9D2195FC-E324-45ed-8F8B-33062F4EBD91} - (Google) - http://www.google.com/
---\\ Enumère les services démarrés par Svchost (SSS) (O83) (40) - 0s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [246272]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\System32\hidserv.dll [0]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [96768]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\MsPMSNSv.dll [25088]
---\\ Scan Additionnel (O88) (1) - 0s
C:\Documents and Settings\DAMAS\Application Data\Elex-tech =>PUP.Optional.Elex
---\\ Récapitulatif des éléments trouvées sur votre station (1) - 0s
http://www.nicolascoolman.fr/pup-elex/ =>PUP.Optional.Elex
~ End of the scan, 21847 items in 36 seconds (823)(0)()