~ ZHPDiag v2015.6.30.77 by Nicolas Coolman (2015\06\30) ~ Run by val (Administrator) (2015/06/30 23:17:04) ~ Site : http://www.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Scanner ~ Report : C:\Users\val\Desktop\ZHPDiag.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) ~ Windows 7, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v23.0.1271.97 MFIE: Mozilla v24.0.1 MSIE: Internet Explorer v11.0.9600.17843 ---\\ Informations sur les produits Windows (10) - 10s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 2BT4J Windows License : OK ~ Windows Remaining Initializations Number : 3 Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) ~ Total physical RAM (KB): 4105776 ~ System Restore: Activé (Enable) ~ System drive C: has 99 GB free of 181 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: VAL-PC ~ User Name: val ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 99 GB free of 181 GB (System) ~ Drive D: has 167 GB free of 271 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 0s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\windows\Explorer.exe [2871808] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\windows\System32\Wininit.exe [129024] [MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\windows\System32\wininet.dll [2426880] [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\windows\System32\sppcomapi.dll [232448] [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\windows\System32\fr-FR\user32.dll.mui [20480] [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\windows\System32\drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\windows\System32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\windows\System32\drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\windows\System32\drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\windows\System32\drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\windows\System32\drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\windows\System32\drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\windows\System32\drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\windows\System32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\windows\System32\drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\windows\System32\drivers\smb.sys [93184] [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\windows\System32\drivers\tdx.sys [119296] [MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\windows\System32\drivers\volsnap.sys [296320] ---\\ Processus lancés (30) - 2s [MD5.E04FCE1D149CF05C3449E3171F9C3E41] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 268.8.) -- C:\windows\system32\nvvsvc.exe [993896] [PID.840] [MD5.03EB2C29CBFE9F003A5561541150903E] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe [1206888] [PID.1336] [MD5.E04FCE1D149CF05C3449E3171F9C3E41] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 268.8.) -- C:\windows\system32\nvvsvc.exe [993896] [PID.1348] [MD5.83A0E7BA4AE616D3654E700D9C5FF9DB] - (.Intel Corporation - Intel® Centrino® Bluetooth 3.0 + High Speed.) -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [1136640] [PID.1228] [MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1376] [MD5.55B0C8441DE7D91A819A39D0351154A2] - (.Intel Corporation - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [923984] [PID.1948] [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1328] [MD5.A5B3E8B2B78C7B3DA56A0DE490E6718C] - (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [134928] [PID.2096] [MD5.F12A68ED55053940CADD59CA5E3468DD] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904] [PID.2440] [MD5.818BDA4A2626E644A22E73CD7304CF72] - (...) -- C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancerService.exe [1154560] [PID.2608] =>PUP.Wajam [MD5.CE5848626BBC0BC7CC27157BA7A55A40] - (.Copyright (C) 2008-2009 - Wifi Service.) -- C:\Program Files (x86)\NETGEAR\WNA3100M\WifiSvc.exe [307488] [PID.2636] [MD5.8BF4B9956E13871A88A3810074E2E110] - (.Intel Corporation - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1001808] [PID.2668] [MD5.299B44B4B1D8C358AD33E5CA7408B5D0] - (. - MUZYXQ.) -- C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancer.exe [285184] [PID.2916] =>PUP.Wajam [MD5.3075FE53459C5541E4983A803FA79457] - (.SAMSUNG ELECTRONICS CO., Ltd. - SWMAgent.) -- C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe [2805328] [PID.3196] [MD5.D88B2D487439305A2EC308A6796C3044] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.3716] [MD5.B00F98FF6FE8682FF941BEB2559BF191] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.3956] [MD5.3DF7F0845798D46E9991D0E01BEE32DD] - (.Samsung Electronics Co., Ltd. - MovieColorEnhancer.exe.) -- C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe [784976] [PID.2696] [MD5.A8FD8550DB68767204EE4616BBD4871A] - (.Samsung Electronics Co., Ltd. - Easy Display Manager.) -- C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe [1087056] [PID.3384] [MD5.B87140DD34BCB9E4D3BCB9119C1BA7A8] - (.Samsung Electronics Co., Ltd. - Smart Setting Program.) -- C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe [2275408] [PID.1960] [MD5.9B8F675B8E123507B95A83B2621F5328] - (.Intel Corporation - igfxext Module.) -- C:\windows\system32\igfxext.exe [239384] [PID.2168] [MD5.43BAF812071A142149D3F1007A23116E] - (.Intel Corporation - igfxsrvc Module.) -- C:\windows\system32\igfxsrvc.exe [510232] [PID.2900] [MD5.D7750818347E82680987AE0C0F2E2384] - (.Samsung Electronics - Easy Speed Up Manager.) -- C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe [5458312] [PID.3320] [MD5.635F7587F7576AA14871B850EB95BFB8] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [640840] [PID.1832] [MD5.D3A1D2987051118159D4DE38E3027CEA] - (.SEC - Samsung Recovery Solution 5.) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [4403280] [PID.4696] [MD5.D96DDEA6C699A99832E0186057801971] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [1997416] [PID.4012] [MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.4772] [MD5.2C7CF4D4A17B5765E23F6B82C16AF4EB] - (.CyberLink Corp. - Media+Player RC Service.) -- C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe [87336] [PID.4900] [MD5.1D625FCDF466B0146F150FEFFA2FA58B] - (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe [391960] [PID.3276] [MD5.EDBBBD6DF695833A33AD1B76DA923F00] - (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe [418584] [PID.4156] [MD5.F289B31D23BB3DC8E6640A6D09E4BF51] - (.SAMSUNG Electronics - SSCKbdHk.) -- C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe [3395664] [PID.3624] ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (2) - 0s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_190.dll P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (16) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.IsStart R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.IsStart R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (7) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:59653;https=127.0.0.1:59653 =>Hijacker.Proxy R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (O2) (1) - 0s O2 - BHO: (no name) [64Bits] - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files (x86)\MiuiTab\SupTab.dll =>PUP.MiuiTab ---\\ Internet Explorer Toolbars (O3) (1) - 0s O3 - Toolbar: 0x524956412D41375600A77A786E7484D7 - [HKCU]{41564952-412D-5637-00A7-7A786E7484D7} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du sytème (O4) (6) - 0s O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-578327087-4110603385-1361986703-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-578327087-4110603385-1361986703-1000\..\RunOnce: [avg_spchecker] C:\Program Files (x86)\AVG\AVG9\Notification\SPChecker1.exe (.not file.) ---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240 ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s O20 - AppInit_DLLs: . (.Auteurs - .) - C:\windows\System32\ ---\\ Liste des services NT non Microsoft et non désactivés (O23) (16) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Intel® Centrino® Bluetooth 3.0 + High Speed Service (AMPPALR3) . (.Intel Corporation - Intel® Centrino® Bluetooth 3.0 + High Speed.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Intel Corporation - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Intel Corporation - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed (BTHSSecurityMgr) . (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 268.8.) - C:\windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: WInterEnhancer Service (WInterEnhancer Service) . (...) - C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancerService.exe =>PUP.Wajam O23 - Service: WSWNA3100M (WSWNA3100M) . (.Copyright (C) 2008-2009 - Wifi Service.) - C:\Program Files (x86)\NETGEAR\WNA3100M\WifiSvc.exe ---\\ Tâches planifiées en automatique (O39) (27) - 1s O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job [1058] O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job [1062] O39 - APT:Automatic Planified Task - (...) -- C:\windows\Tasks\Rocket Updater.job [284] =>Adware.Sambreel O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Adobe Acrobat Update Task [3886] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Adobe Flash Player Updater [3940] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\advSRS5 [3214] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\CreateChoiceProcessTask [3528] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Easy Software Manager Agent [3218] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasyBatteryManager [3292] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasyDisplayMgr [3210] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasyPartitionManager [3116] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\EasySpeedUpManager [3500] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore [3806] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA [4058] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series [3610] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\MirageAgent [3148] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\MovieColorEnhancer [3392] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\Rocket Updater [3216] =>Adware.Sambreel O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\SamsungSupportCenter [3318] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\SCCSpeedBoot [3542] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\SmartSetting [3446] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\User_Feed_Synchronization-{E352DECB-578B-4D2A-BC91-1CE2B249995A} [3920] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{12BB91C0-7F23-4CEA-A6C5-98ED6C994F2B} [3128] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{3FAEA3F2-CABD-4E37-B143-AE83ECD214DD} [3244] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{86D69519-2381-476E-BFB7-56259B021030} [3144] O39 - APT:Automatic Planified Task - (...) -- C:\windows\System32\Tasks\{925BCBCA-FC67-43A0-9E3C-52222928DF88} [3138] ---\\ Logiciels installés (O42) (94) - 7s O42 - Logiciel: ETDWare PS/2-X64 10.0.7.2_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client O42 - Logiciel: HP Deskjet 2050 J510 series - Enquête sur l'amélioration du produit - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {5B5A6E60-17F4-498E-B1B3-D83F4AAD1D43} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) 3.0 + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {A0E106D2-4815-4B7A-BAA7-7E21B530CFB4} O42 - Logiciel: NVIDIA Graphics Driver 268.83 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868} O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {D9FCBAAE-DB72-488B-96D0-0AA3C892C0D6} O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2050 J510 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {DC11DCF3-BCBF-4459-A924-F9ABE5C27650} O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E} O42 - Logiciel: Adobe Acrobat 4.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Acrobat 4.0 O42 - Logiciel: Adobe Flash Player 17 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player O42 - Logiciel: Assets Manager - (.Aztec Media Inc.) [HKLM][64Bits] -- Assets Manager =>PUP.SystemK O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: HP Photo Creations - (.HP Photo Creations Powered by RocketLife.) [HKLM][64Bits] -- HP Photo Creations O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink Media+ Player10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586} O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB} O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM][64Bits] -- istartsurf uninstall =>PUP.IsStart O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Mozilla Thunderbird 24.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 24.0.1 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM][64Bits] -- ProInst O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKLM][64Bits] -- uTorrent O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Wajam - (.WInterEnhancer.) [HKLM][64Bits] -- WInterEnhancer =>PUP.Wajam O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT085559 =>.WildTangent O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT085567 =>.WildTangent O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WT085580 =>.WildTangent O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT085581 =>.WildTangent O42 - Logiciel: Polar Golfer - (.WildTangent.) [HKLM][64Bits] -- WT085583 =>.WildTangent O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WT085587 =>.WildTangent O42 - Logiciel: Build-a-lot - (.WildTangent.) [HKLM][64Bits] -- WT085597 =>.WildTangent O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WT085618 =>.WildTangent O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT085622 =>.WildTangent O42 - Logiciel: Peggle - (.WildTangent.) [HKLM][64Bits] -- WT085663 =>.WildTangent O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT085669 =>.WildTangent O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089285 =>.WildTangent O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089286 =>.WildTangent O42 - Logiciel: Yahoo! Software Update - (...) [HKLM][64Bits] -- Yahoo! Software Update O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: Samsung Recovery Solution 5 - (.Samsung.) [HKLM][64Bits] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2} O42 - Logiciel: Easy Settings - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {17283B95-21A8-4996-97DA-547A48DB266F} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} O42 - Logiciel: Skype™ 7.5 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {28E82311-8616-11E1-BEB0-B8AC6F97B88E} O42 - Logiciel: Visual C++ 8.0 Runtime Setup Package (x64) - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D} O42 - Logiciel: Multimedia POP - (...) [HKLM][64Bits] -- {331ECF61-69AF-4F57-AC35-AFED610231C3} O42 - Logiciel: CyberLink Media+ Player10 - (.CyberLink Corp..) [HKLM][64Bits] -- {34FBC7C4-CD31-4D93-A428-0E524EAC4586} O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM][64Bits] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: HP Deskjet 2050 J510 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F} O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- {80E158EA-7181-40FE-A701-301CE6BE64AB} O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: Easy File Share - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {95BB7324-77D3-4BF3-8CF6-29F0857AC175} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824144531} O42 - Logiciel: Adobe Reader XI (11.0.11) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Easy Migration - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {AD86049C-3D9C-43E1-BE73-643F57D83D50} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE} O42 - Logiciel: Software Launcher - (.Samsung.) [HKLM][64Bits] -- {B750B5C2-CC17-4967-905B-29F4EB986131} O42 - Logiciel: User Guide - (...) [HKLM][64Bits] -- {BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA} O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: NETGEAR WNA3100M N300 Wireless USB Adapter - (.NETGEAR.) [HKLM][64Bits] -- {D3580358-0F78-402A-BE53-2E9D06383E04} O42 - Logiciel: Easy Software Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {DE256D8B-D971-456D-BC02-CB64DA24F115} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Sony PC Companion 2.10.079 - (.Sony.) [HKLM][64Bits] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Easy Support Center 1.0 - (.Samsung.) [HKLM][64Bits] -- {F687E657-F636-44DF-8125-9FEEA2C362F5} O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF6DD716-7B10-4269-9F19-FFB07AC4CD95} O42 - Logiciel: Free Internet TV v8.0 - (.Holersoft.) [HKCU][64Bits] -- Free Internet TV_is1 O42 - Logiciel: Rocket - (.Rocket.) [HKCU][64Bits] -- Rocket O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (125) - 7s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AIM Toolbar HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.Ask HKLM\SOFTWARE\Wow6432Node\Avg HKLM\SOFTWARE\Wow6432Node\Bunndle HKLM\SOFTWARE\Wow6432Node\CCleaner HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Conduit HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\dotNetInstaller HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\IHProtect =>Adware.AgentODR HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Iminent =>Adware.IMBooster HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.IsStart HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Loader HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NETGEAR HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\ORBTR =>PUP.Conduit HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RocketLife HKLM\SOFTWARE\Wow6432Node\RtWLan HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\Samsung Electronics Co., Ltd. HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.SearchProtect HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional HKLM\SOFTWARE\Wow6432Node\SERCOMM HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SmdmF =>PUP.SettingsManager HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\Sony HKLM\SOFTWARE\Wow6432Node\SpeedBit HKLM\SOFTWARE\Wow6432Node\SupDp =>Adware.SupTab HKLM\SOFTWARE\Wow6432Node\supTab =>Adware.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Fuyu HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Visan HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Wajam HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\WInterEnhancer =>PUP.Wajam HKLM\SOFTWARE\Wow6432Node\WSWNA3100M HKLM\SOFTWARE\Wow6432Node\Yahoo HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AOL HKCU\SOFTWARE\APN PIP =>Toolbar.Agent HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Avg HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Browsersafeguard =>PUP.BrowserSafeguard HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Elantech HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Holersoft HKCU\SOFTWARE\HomeTab =>PUP.CertifiedToolbar HKCU\SOFTWARE\HP HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\InstantStormSavers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\Kromtech HKCU\SOFTWARE\Lexmark HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Linkey =>PUP.LinkeySearch HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\NETGEAR HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Rocket HKCU\SOFTWARE\Rocket Browser =>Adware.Sambreel HKCU\SOFTWARE\RocketUpdater =>Adware.Sambreel HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SearchProtectWS =>PUP.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.SimplyTech HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\Sony HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Thunderbird HKCU\SOFTWARE\TNT2 =>Adware.TidyNetwork HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Visan HKCU\SOFTWARE\WajIEnhance =>Adware.Multiplug HKCU\SOFTWARE\WajIntEnhance =>PUP.Wajam HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WInterEnhancer =>PUP.Wajam HKCU\SOFTWARE\Yahoo HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Google HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/ (243) - 8s O43 - CFD: 2013/02/28 - 00:14:08 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2013/04/26 - 16:33:56 - [] D -- C:\Program Files (x86)\adslTV O43 - CFD: 2014/01/12 - 23:15:53 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/06/28 - 12:32:57 - [] D -- C:\Program Files (x86)\Assets Manager =>PUP.SystemK O43 - CFD: 2012/03/09 - 21:01:47 - [] D -- C:\Program Files (x86)\AVG O43 - CFD: 2014/01/12 - 23:15:12 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2012/03/09 - 20:59:56 - [] D -- C:\Program Files (x86)\CCleaner O43 - CFD: 2014/09/27 - 20:31:11 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2011/10/11 - 04:27:07 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 2014/02/27 - 19:55:15 - [0] D -- C:\Program Files (x86)\EnhanceTronic =>PUP.EnhanceTronic O43 - CFD: 2014/11/01 - 01:24:55 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2012/03/14 - 16:10:32 - [] D -- C:\Program Files (x86)\HP O43 - CFD: 2012/03/14 - 16:10:37 - [] D -- C:\Program Files (x86)\HP Photo Creations O43 - CFD: 2014/08/15 - 13:41:36 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2013/03/30 - 11:02:32 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/06/12 - 00:43:50 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2014/09/12 - 11:59:23 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 2013/12/04 - 01:09:09 - [] D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 2011/10/11 - 04:28:13 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2012/03/09 - 20:51:37 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2012/03/09 - 20:55:31 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/05/14 - 01:04:25 - [] D -- C:\Program Files (x86)\Microsoft Security Client O43 - CFD: 2015/05/14 - 01:22:37 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2011/10/11 - 04:01:37 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2012/03/13 - 12:53:49 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/06/28 - 12:36:29 - [] D -- C:\Program Files (x86)\MiuiTab =>PUP.MiuiTab O43 - CFD: 2013/09/24 - 00:41:21 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/01/26 - 10:59:07 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2015/01/25 - 22:30:08 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird O43 - CFD: 2009/07/14 - 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2014/08/15 - 13:41:37 - [] D -- C:\Program Files (x86)\NETGEAR O43 - CFD: 2011/10/11 - 03:06:44 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/06/28 - 14:20:54 - [] D -- C:\Program Files (x86)\ORBTR =>PUP.Conduit O43 - CFD: 2011/10/11 - 03:08:23 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 - 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2011/10/11 - 03:24:56 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2015/06/28 - 12:33:23 - [] D -- C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect O43 - CFD: 2015/06/24 - 00:16:39 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2012/10/29 - 15:47:34 - [] D -- C:\Program Files (x86)\Software Installer O43 - CFD: 2012/08/01 - 22:28:25 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 2011/10/11 - 03:07:30 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2009/07/14 - 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2012/10/29 - 15:49:17 - [] D -- C:\Program Files (x86)\uTorrent O43 - CFD: 2015/06/28 - 12:36:05 - [] D -- C:\Program Files (x86)\Wajam =>PUP.Wajam O43 - CFD: 2014/03/16 - 10:29:59 - [] D -- C:\Program Files (x86)\WildGames O43 - CFD: 2014/03/16 - 10:33:05 - [] D -- C:\Program Files (x86)\WildTangent Games O43 - CFD: 2013/07/18 - 16:05:44 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2011/10/11 - 04:15:55 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2012/03/12 - 00:35:00 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/16 - 23:18:15 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 - 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2012/03/12 - 00:35:00 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 - 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2012/03/12 - 00:35:00 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2012/03/09 - 20:59:26 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/06/28 - 12:37:10 - [] D -- C:\Program Files (x86)\WInterEnhancer =>PUP.Wajam O43 - CFD: 2012/03/10 - 19:58:51 - [] D -- C:\Program Files (x86)\Yahoo! O43 - CFD: 2015/06/30 - 23:09:24 - [] D -- C:\Program Files (x86)\ZHPDiag O43 - CFD: 2012/03/09 - 20:45:27 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2009/07/14 - 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2012/03/09 - 15:57:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 4.0 O43 - CFD: 2011/10/11 - 04:25:48 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite O43 - CFD: 2011/10/11 - 04:27:42 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam O43 - CFD: 2014/03/16 - 13:46:00 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/02/24 - 22:39:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2012/06/16 - 00:58:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 2012/03/14 - 16:10:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2014/09/12 - 12:00:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 2009/07/14 - 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2013/12/04 - 01:09:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware O43 - CFD: 2014/09/29 - 13:09:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 2012/04/15 - 13:20:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/05/14 - 00:21:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2012/05/13 - 22:50:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 2014/09/27 - 20:31:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2012/08/01 - 22:29:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 2014/09/29 - 13:09:11 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2011/10/11 - 03:30:53 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2011/10/11 - 03:20:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games O43 - CFD: 2011/10/11 - 04:03:57 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2012/03/09 - 20:59:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/06/28 - 12:37:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WInterEnhancer =>PUP.Wajam O43 - CFD: 2014/09/12 - 12:00:03 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 2013/05/07 - 18:17:48 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2014/09/12 - 11:46:16 - [] D -- C:\ProgramData\Apple O43 - CFD: 2014/09/12 - 11:55:09 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2014/03/22 - 01:40:11 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2014/03/16 - 10:30:20 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 2012/03/09 - 16:10:45 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2014/10/15 - 00:22:35 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2014/11/01 - 01:25:02 - [] D -- C:\ProgramData\Google O43 - CFD: 2012/03/14 - 16:10:08 - [] D -- C:\ProgramData\HP O43 - CFD: 2012/03/14 - 16:27:09 - [] D -- C:\ProgramData\HP Photo Creations O43 - CFD: 2015/06/28 - 12:36:24 - [] D -- C:\ProgramData\IHProtectUpDate =>Adware.AgentODR O43 - CFD: 2013/12/04 - 01:09:08 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2014/09/23 - 00:08:04 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/09/29 - 13:09:11 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 2014/12/10 - 13:48:58 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/06/12 - 00:27:55 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2012/10/15 - 00:51:02 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2012/03/09 - 21:09:13 - [] D -- C:\ProgramData\Norton O43 - CFD: 2011/10/11 - 03:20:29 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2011/10/11 - 03:42:35 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2011/10/11 - 03:05:55 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2012/03/10 - 21:39:58 - [] D -- C:\ProgramData\PC Drivers HeadQuarters =>PUP.Optional O43 - CFD: 2011/10/11 - 04:25:14 - [] D -- C:\ProgramData\SAMSUNG O43 - CFD: 2015/06/24 - 00:16:48 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/06/28 - 23:31:50 - [0] D -- C:\ProgramData\smdmf =>PUP.SystemK O43 - CFD: 2012/08/01 - 22:28:25 - [] D -- C:\ProgramData\Sony O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2011/10/11 - 04:26:22 - [] D -- C:\ProgramData\Temp O43 - CFD: 2009/07/14 - 07:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2014/11/14 - 16:16:06 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 2014/03/16 - 13:45:58 - [] D -- C:\ProgramData\WinClon O43 - CFD: 2015/06/28 - 12:35:31 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu O43 - CFD: 2012/03/10 - 19:58:51 - [] D -- C:\ProgramData\Yahoo! O43 - CFD: 2012/04/30 - 00:43:31 - [] D -- C:\ProgramData\Yahoo! Companion O43 - CFD: 2013/02/28 - 00:14:17 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2014/09/12 - 11:55:17 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2011/10/11 - 04:19:13 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 2014/05/15 - 19:19:10 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2011/10/11 - 03:06:56 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2011/10/11 - 03:05:04 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2013/09/13 - 22:47:09 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2011/10/11 - 03:04:23 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2011/10/11 - 03:12:01 - [] D -- C:\Program Files (x86)\Common Files\Samsung O43 - CFD: 2009/07/14 - 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2014/09/27 - 20:31:11 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2009/07/14 - 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2012/11/17 - 00:37:36 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2011/10/11 - 03:50:41 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2013/02/28 - 00:25:38 - [] D -- C:\Users\val\AppData\Roaming\Adobe O43 - CFD: 2014/01/12 - 23:18:26 - [] D -- C:\Users\val\AppData\Roaming\Apple Computer O43 - CFD: 2014/10/15 - 00:22:39 - [] D -- C:\Users\val\AppData\Roaming\CyberLink O43 - CFD: 2014/06/29 - 22:34:33 - [] D -- C:\Users\val\AppData\Roaming\Google O43 - CFD: 2012/03/14 - 16:10:31 - [0] D -- C:\Users\val\AppData\Roaming\HpUpdate O43 - CFD: 2012/03/09 - 20:46:46 - [] D -- C:\Users\val\AppData\Roaming\Identities O43 - CFD: 2014/08/15 - 13:41:09 - [] D -- C:\Users\val\AppData\Roaming\InstallShield O43 - CFD: 2015/06/29 - 23:57:18 - [] D -- C:\Users\val\AppData\Roaming\istartsurf =>PUP.IsStart O43 - CFD: 2012/03/09 - 22:13:05 - [] D -- C:\Users\val\AppData\Roaming\Macromedia O43 - CFD: 2013/12/04 - 01:09:32 - [] D -- C:\Users\val\AppData\Roaming\Malwarebytes O43 - CFD: 2011/10/11 - 03:30:53 - [0] D -- C:\Users\val\AppData\Roaming\Media Center Programs O43 - CFD: 2013/03/31 - 23:09:14 - [] SD -- C:\Users\val\AppData\Roaming\Microsoft O43 - CFD: 2012/10/29 - 15:49:38 - [] D -- C:\Users\val\AppData\Roaming\Mozilla O43 - CFD: 2014/07/21 - 11:18:27 - [] D -- C:\Users\val\AppData\Roaming\RocketUpdater =>Adware.Sambreel O43 - CFD: 2015/06/29 - 23:26:39 - [] D -- C:\Users\val\AppData\Roaming\Skype O43 - CFD: 2012/04/17 - 23:33:31 - [] D -- C:\Users\val\AppData\Roaming\Thunderbird O43 - CFD: 2014/08/03 - 20:42:38 - [] D -- C:\Users\val\AppData\Roaming\uTorrent O43 - CFD: 2012/03/16 - 12:20:01 - [] D -- C:\Users\val\AppData\Roaming\vlc O43 - CFD: 2014/03/16 - 10:33:05 - [] D -- C:\Users\val\AppData\Roaming\WildTangent O43 - CFD: 2012/03/09 - 16:22:00 - [] D -- C:\Users\val\AppData\Roaming\WinRAR O43 - CFD: 2012/03/10 - 19:58:47 - [] D -- C:\Users\val\AppData\Roaming\Yahoo! O43 - CFD: 2015/06/30 - 23:17:21 - [] D -- C:\Users\val\AppData\Roaming\ZHP O43 - CFD: 2014/09/23 - 00:08:11 - [] D -- C:\Users\val\AppData\Local\Adobe O43 - CFD: 2015/05/12 - 01:03:05 - [] D -- C:\Users\val\AppData\Local\adslTV O43 - CFD: 2014/01/12 - 23:15:56 - [] D -- C:\Users\val\AppData\Local\Apple O43 - CFD: 2014/01/12 - 23:18:12 - [] D -- C:\Users\val\AppData\Local\Apple Computer O43 - CFD: 2012/03/09 - 20:41:30 - [0] SHD -- C:\Users\val\AppData\Local\Application Data O43 - CFD: 2013/09/24 - 00:42:01 - [] D -- C:\Users\val\AppData\Local\avgchrome O43 - CFD: 2014/02/19 - 19:46:12 - [] D -- C:\Users\val\AppData\Local\AviraResume O43 - CFD: 2014/02/24 - 20:21:24 - [0] D -- C:\Users\val\AppData\Local\cache O43 - CFD: 2012/10/29 - 15:49:44 - [] D -- C:\Users\val\AppData\Local\CRE O43 - CFD: 2013/08/26 - 00:19:22 - [] D -- C:\Users\val\AppData\Local\Cyberlink O43 - CFD: 2015/04/14 - 23:59:02 - [] D -- C:\Users\val\AppData\Local\Diagnostics O43 - CFD: 2014/10/19 - 15:45:27 - [0] D -- C:\Users\val\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/12 - 00:53:37 - [0] SHD -- C:\Users\val\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/06/12 - 00:53:37 - [0] SHD -- C:\Users\val\AppData\Local\EmieSiteList O43 - CFD: 2015/06/12 - 00:53:37 - [0] SHD -- C:\Users\val\AppData\Local\EmieUserList O43 - CFD: 2015/02/09 - 02:30:50 - [] D -- C:\Users\val\AppData\Local\Free Internet TV O43 - CFD: 2014/08/01 - 13:55:59 - [] D -- C:\Users\val\AppData\Local\Google O43 - CFD: 2015/06/28 - 23:38:55 - [] D -- C:\Users\val\AppData\Local\GWX O43 - CFD: 2012/03/09 - 20:41:30 - [0] SHD -- C:\Users\val\AppData\Local\Historique O43 - CFD: 2012/03/14 - 16:16:16 - [] D -- C:\Users\val\AppData\Local\HP O43 - CFD: 2013/09/24 - 00:41:22 - [0] D -- C:\Users\val\AppData\Local\InternetTV O43 - CFD: 2014/10/13 - 22:58:02 - [] D -- C:\Users\val\AppData\Local\Microsoft O43 - CFD: 2012/04/16 - 01:21:49 - [] D -- C:\Users\val\AppData\Local\Microsoft Games O43 - CFD: 2014/04/01 - 23:19:37 - [] D -- C:\Users\val\AppData\Local\Microsoft Help O43 - CFD: 2012/03/09 - 20:47:27 - [] D -- C:\Users\val\AppData\Local\Power2Go O43 - CFD: 2013/09/24 - 00:40:35 - [] D -- C:\Users\val\AppData\Local\Programs O43 - CFD: 2014/07/21 - 11:19:43 - [] D -- C:\Users\val\AppData\Local\Rocket =>Adware.Sambreel O43 - CFD: 2012/03/09 - 22:42:12 - [] D -- C:\Users\val\AppData\Local\Samsung O43 - CFD: 2015/06/28 - 12:33:32 - [] D -- C:\Users\val\AppData\Local\SearchProtect =>PUP.SearchProtect O43 - CFD: 2014/09/27 - 20:31:29 - [] D -- C:\Users\val\AppData\Local\Skype O43 - CFD: 2015/06/30 - 23:17:19 - [] D -- C:\Users\val\AppData\Local\Temp O43 - CFD: 2012/03/09 - 20:41:30 - [0] SHD -- C:\Users\val\AppData\Local\Temporary Internet Files O43 - CFD: 2013/04/03 - 01:09:25 - [] D -- C:\Users\val\AppData\Local\Thunderbird O43 - CFD: 2015/02/04 - 02:02:35 - [] D -- C:\Users\val\AppData\Local\VirtualStore O43 - CFD: 2014/09/21 - 19:41:26 - [] D -- C:\Users\val\AppData\Local\Windows Live O43 - CFD: 2014/09/21 - 19:42:08 - [0] D -- C:\Users\val\AppData\Local\{03F14B05-3A03-48EC-9343-40E113EDDB60} O43 - CFD: 2013/12/04 - 02:25:41 - [0] D -- C:\Users\val\AppData\Local\{0F2D8F9C-E114-4FA1-AE2F-3CD3E451F730} O43 - CFD: 2012/03/27 - 23:17:06 - [0] D -- C:\Users\val\AppData\Local\{16A33A2E-41A4-4666-BA44-D1E58386E047} O43 - CFD: 2012/10/26 - 14:33:21 - [0] D -- C:\Users\val\AppData\Local\{1F25F909-F658-4359-990E-D416D47EE493} O43 - CFD: 2012/12/15 - 22:36:38 - [0] D -- C:\Users\val\AppData\Local\{1F8FF71A-B791-41CE-9405-1B0B176373CD} O43 - CFD: 2014/09/25 - 21:23:48 - [0] D -- C:\Users\val\AppData\Local\{249FEC5F-EA43-4740-9ED6-3AC399A75481} O43 - CFD: 2013/09/28 - 23:57:07 - [0] D -- C:\Users\val\AppData\Local\{2BD067AA-CC02-4D98-B922-ABD8A33A5061} O43 - CFD: 2013/03/06 - 23:19:18 - [0] D -- C:\Users\val\AppData\Local\{345F6E19-27DB-4B58-9166-0C010B37C3AF} O43 - CFD: 2013/07/02 - 18:52:34 - [0] D -- C:\Users\val\AppData\Local\{349B7462-A76E-4C12-B4AA-3FC5DEAA19FE} O43 - CFD: 2014/03/17 - 23:17:13 - [0] D -- C:\Users\val\AppData\Local\{38FD1C93-7D19-4147-9AC2-D1121555747A} O43 - CFD: 2014/07/03 - 19:27:12 - [0] D -- C:\Users\val\AppData\Local\{448A385C-2DFE-4D60-B69C-4D640B5234AA} O43 - CFD: 2012/11/02 - 14:07:36 - [0] D -- C:\Users\val\AppData\Local\{4A853560-C4E0-4D7F-82C4-4CAD419FEAA1} O43 - CFD: 2013/04/20 - 15:17:23 - [0] D -- C:\Users\val\AppData\Local\{4DC9C9C7-33B3-4961-892E-B34A3CB9C751} O43 - CFD: 2012/12/30 - 15:34:29 - [0] D -- C:\Users\val\AppData\Local\{4EC86E72-BAA5-4153-A1F2-103C7B108806} O43 - CFD: 2012/11/09 - 14:23:57 - [0] D -- C:\Users\val\AppData\Local\{5F4E0A26-08A5-4F17-9B3F-0E40479047CF} O43 - CFD: 2013/08/29 - 00:33:19 - [0] D -- C:\Users\val\AppData\Local\{6F12D744-BAE7-4A1A-96A6-84C9B96D2FD6} O43 - CFD: 2012/04/21 - 00:34:04 - [0] D -- C:\Users\val\AppData\Local\{78A09C5D-53E4-461F-8302-A544B5875272} O43 - CFD: 2013/07/05 - 00:09:14 - [0] D -- C:\Users\val\AppData\Local\{82499D7F-5F7C-415A-A9E1-5D87FC7B0426} O43 - CFD: 2013/09/04 - 12:29:02 - [0] D -- C:\Users\val\AppData\Local\{83BCCCA6-DCBB-4F37-9D7D-7525BD3EAAA1} O43 - CFD: 2013/10/18 - 01:41:33 - [0] D -- C:\Users\val\AppData\Local\{856AC299-AD66-48E9-BD5E-35E87002F268} O43 - CFD: 2012/12/15 - 22:43:13 - [0] D -- C:\Users\val\AppData\Local\{88992D7C-0574-444D-AF1F-4CD75C194090} O43 - CFD: 2012/10/23 - 09:44:34 - [0] D -- C:\Users\val\AppData\Local\{908EB495-02BC-432D-A781-6DECD48ABC1D} O43 - CFD: 2013/09/05 - 11:18:43 - [0] D -- C:\Users\val\AppData\Local\{9CEC5807-48C3-4880-8D13-18F87B2B526A} O43 - CFD: 2012/12/30 - 15:32:42 - [0] D -- C:\Users\val\AppData\Local\{A8AEA4EE-F0DF-4D3A-9BE7-DCFFDED7FBD6} O43 - CFD: 2015/04/30 - 12:34:19 - [0] D -- C:\Users\val\AppData\Local\{AE2BED2D-89B6-4A1E-8741-529F1DB51DDB} O43 - CFD: 2014/07/09 - 21:14:20 - [0] D -- C:\Users\val\AppData\Local\{B6365491-7E4F-4177-A49E-9064B86283F5} O43 - CFD: 2014/07/09 - 21:18:07 - [0] D -- C:\Users\val\AppData\Local\{BBFF58F1-6626-47F1-9042-0204E95C03B6} O43 - CFD: 2013/09/30 - 20:09:44 - [0] D -- C:\Users\val\AppData\Local\{BD58AEE1-994D-4A13-929F-80C639F72735} O43 - CFD: 2015/03/17 - 18:18:16 - [0] D -- C:\Users\val\AppData\Local\{C14F7305-DCD6-4ACC-9DDC-8A56403DAEFE} O43 - CFD: 2013/11/23 - 01:11:20 - [0] D -- C:\Users\val\AppData\Local\{C190CA1E-58A4-418B-85A8-BD89F3E943E3} O43 - CFD: 2013/01/23 - 01:27:07 - [0] D -- C:\Users\val\AppData\Local\{D14246F8-F1CB-4E74-BDB8-7FA63650CC1F} O43 - CFD: 2013/04/26 - 16:09:00 - [0] D -- C:\Users\val\AppData\Local\{D14A8CA3-8DFE-454C-9B74-CCE4B9B77983} O43 - CFD: 2013/01/13 - 20:03:05 - [0] D -- C:\Users\val\AppData\Local\{D85D88E7-ACF2-4FA0-8B13-773575A6DECE} O43 - CFD: 2012/12/24 - 16:41:14 - [0] D -- C:\Users\val\AppData\Local\{E3124081-095D-4609-B89B-22FF11F5C491} O43 - CFD: 2013/09/24 - 01:33:01 - [0] D -- C:\Users\val\AppData\Local\{E7ACCFD0-B9E6-4C6F-BBC7-F3FBB1E71B71} O43 - CFD: 2014/08/09 - 14:58:55 - [0] D -- C:\Users\val\AppData\Local\{E94D624F-8B4E-4D2B-B331-73DE55933890} O43 - CFD: 2012/03/29 - 00:58:45 - [0] D -- C:\Users\val\AppData\Local\{EC06C7E7-AB9A-4A51-8A99-AFCD0B9B6BBD} O43 - CFD: 2013/06/30 - 19:49:12 - [0] D -- C:\Users\val\AppData\Local\{EDE0DE38-2FDF-4EBE-BAA2-1B7FD2066C8A} O43 - CFD: 2012/07/14 - 08:52:00 - [0] D -- C:\Users\val\AppData\Local\{EDEB9107-D58D-4CE6-BADF-7D9E4FB38D7C} O43 - CFD: 2013/01/13 - 20:01:23 - [0] D -- C:\Users\val\AppData\Local\{F1BA004B-4790-4432-9B93-348BDC1F769E} O43 - CFD: 2012/11/27 - 20:24:21 - [0] D -- C:\Users\val\AppData\Local\{FB51BF7B-1DA7-4612-BCBD-F2D9EBA53D6D} O43 - CFD: 2013/08/25 - 23:57:57 - [0] D -- C:\Users\val\AppData\Local\{FF3CF27A-2967-4483-8696-6936AFC1AFAF} O43 - CFD: 2009/07/14 - 06:54:32 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/13 - 01:49:31 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2013/04/26 - 16:33:52 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV O43 - CFD: 2012/03/09 - 20:59:56 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2013/09/24 - 00:40:53 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Internet TV O43 - CFD: 2009/07/14 - 06:49:38 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/07/21 - 11:19:40 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rocket =>Adware.Sambreel O43 - CFD: 2015/03/13 - 01:49:31 - [] RD -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2012/03/09 - 20:59:26 - [] D -- C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Enumération des clés de registre StartupReg (SMSR) (O53 (8) - 1s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe O53 - SMSR:HKLM\...\startupreg\BTMTrayAgent [Key] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- rundll32.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ETDCtrl [Key] . (...) -- %ProgramFiles%\Elantech\ETDCtrl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ---\\ Liste des pilotes du système (SDL) (O58) (62) - 3s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440] O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904] O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008] O58 - SDL:2011/04/21 10:09:26 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Bluetooth 3.0 + High Speed.) -- C:\windows\System32\drivers\AmpPal.sys [294912] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2013/02/18 23:53:08 A . (.AVG Technologies - .) -- C:\windows\System32\drivers\avgtpx64.sys [39768] O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2011/03/08 15:44:08 A . (.Intel Corporation - Bluetooth Auxiliary Driver.) -- C:\windows\System32\drivers\btmaux.sys [51712] O58 - SDL:2011/03/08 15:44:08 A . (.Intel Corporation - Bluetooth HighSpeed Filter Driver.) -- C:\windows\System32\drivers\btmhsf.sys [274944] O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2011/08/17 09:19:38 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\windows\System32\drivers\clwvd.sys [31216] O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2011/06/17 05:40:40 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\windows\System32\drivers\ETD.sys [186152] O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2012/08/21 14:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\windows\System32\drivers\GEARAspiWDM.sys [33240] O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2010/10/20 18:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\HECIx64.sys [56344] O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720] O58 - SDL:2011/02/18 01:11:54 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\windows\System32\drivers\iaStor.sys [439320] O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496] O58 - SDL:2011/03/22 19:14:04 A . (.Intel Corporation - Intel(R) Centrino(R) Wireless (Bluetooth Ad.) -- C:\windows\System32\drivers\iBtFltCoex.sys [59904] O58 - SDL:2010/12/16 12:39:08 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [12256512] O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2010/10/14 19:28:16 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\windows\System32\drivers\IntcDAud.sys [317440] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2013/04/04 15:50:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\windows\System32\drivers\mbam.sys [25928] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2011/05/01 07:33:06 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\windows\System32\drivers\NETwNs64.sys [8593920] O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2011/06/05 01:22:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\windows\System32\drivers\nvlddmkm.sys [13076328] O58 - SDL:2011/06/05 01:22:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\windows\System32\drivers\nvpciflt.sys [25960] O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352] O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272] O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2011/04/22 12:17:04 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\windows\System32\drivers\Rt64win7.sys [471144] O58 - SDL:2011/07/12 10:29:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [2917096] O58 - SDL:2011/07/30 00:47:20 A . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\windows\System32\drivers\SABI.sys [13824] O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2011/04/11 12:55:24 A . (.Phoenix Technologies Ltd. - SecureGuard Driver.) -- C:\windows\System32\drivers\SGDrv64.sys [7680] O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872] O58 - SDL:2011/12/30 15:23:16 A . (.NETGEAR Corporation - NETGEAR WNA3100M USB NDIS Driver.) -- C:\windows\System32\drivers\wna3100m.sys [1094760] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (2) - 52s O61 - LFC: 2015/06/24 22:27:32 A . (.Skytech Co., Ltd..) -- C:\Users\val\AppData\Roaming\istartsurf\UninstallManager.exe [1916416] =>PUP.IsStart O61 - LFC: 2015/06/28 14:22:25 A . (..) -- C:\Users\val\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin [0] ---\\ Associations Shell Spawning (O67) (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe http://www.istartsurf.com/ =>Adware.Sambreel O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Fast Browsers - Rocket.) -- C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel ---\\ Recherche d'infection sur les navigateurs internet (SBI (1) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Recherche de clés de registre Tracing (O100) (12) - 4s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASAPI32 =>PUP.BrowserSafeguard HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASMANCS =>PUP.BrowserSafeguard HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASAPI32 =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASMANCS =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASAPI32 =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASMANCS =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASAPI32 =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASMANCS =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASAPI32 =>PUP.uTorrentBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASMANCS =>PUP.uTorrentBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASAPI32 =>PUP.uTorrentBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASMANCS =>PUP.uTorrentBar ---\\ Scan Additionnel (O88) (68) - 0s C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancerService.exe =>PUP.Wajam C:\Program Files (x86)\WInterEnhancer\WInterEnhancer Internet Enhancer\InternetEnhancer.exe =>PUP.Wajam C:\Program Files (x86)\MiuiTab\SupTab.dll =>PUP.MiuiTab HKLM\SYSTEM\CurrentControlSet\Services\WInterEnhancer Service =>PUP.Wajam C:\windows\Tasks\Rocket Updater.job =>Adware.Sambreel C:\windows\System32\Tasks\Rocket Updater =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Assets Manager =>PUP.SystemK HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.IsStart HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WInterEnhancer =>PUP.Wajam HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.Ask HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Conduit HKLM\SOFTWARE\Wow6432Node\IHProtect =>Adware.AgentODR HKLM\SOFTWARE\Wow6432Node\Iminent =>Adware.IMBooster HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.IsStart HKLM\SOFTWARE\Wow6432Node\ORBTR =>PUP.Conduit HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.SearchProtect HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional HKLM\SOFTWARE\Wow6432Node\SmdmF =>PUP.SettingsManager HKLM\SOFTWARE\Wow6432Node\SupDp =>Adware.SupTab HKLM\SOFTWARE\Wow6432Node\supTab =>Adware.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Fuyu HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Wajam HKLM\SOFTWARE\Wow6432Node\WInterEnhancer =>PUP.Wajam HKCU\SOFTWARE\APN PIP =>Toolbar.Agent HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKCU\SOFTWARE\Browsersafeguard =>PUP.BrowserSafeguard HKCU\SOFTWARE\HomeTab =>PUP.CertifiedToolbar HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\Linkey =>PUP.LinkeySearch HKCU\SOFTWARE\Rocket Browser =>Adware.Sambreel HKCU\SOFTWARE\RocketUpdater =>Adware.Sambreel HKCU\SOFTWARE\SearchProtectWS =>PUP.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.SimplyTech HKCU\SOFTWARE\TNT2 =>Adware.TidyNetwork HKCU\SOFTWARE\WajIEnhance =>Adware.Multiplug HKCU\SOFTWARE\WajIntEnhance =>PUP.Wajam HKCU\SOFTWARE\WInterEnhancer =>PUP.Wajam C:\Program Files (x86)\Assets Manager =>PUP.SystemK C:\Program Files (x86)\EnhanceTronic =>PUP.EnhanceTronic C:\Program Files (x86)\MiuiTab =>PUP.MiuiTab C:\Program Files (x86)\ORBTR =>PUP.Conduit C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect C:\Program Files (x86)\Wajam =>PUP.Wajam C:\Program Files (x86)\WInterEnhancer =>PUP.Wajam C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WInterEnhancer =>PUP.Wajam C:\ProgramData\IHProtectUpDate =>Adware.AgentODR C:\ProgramData\PC Drivers HeadQuarters =>PUP.Optional C:\ProgramData\smdmf =>PUP.SystemK C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu C:\Users\val\AppData\Roaming\istartsurf =>PUP.IsStart C:\Users\val\AppData\Roaming\RocketUpdater =>Adware.Sambreel C:\Users\val\AppData\Local\Rocket =>Adware.Sambreel C:\Users\val\AppData\Local\SearchProtect =>PUP.SearchProtect C:\Users\val\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rocket =>Adware.Sambreel C:\Users\val\AppData\Roaming\istartsurf\UninstallManager.exe =>PUP.IsStart C:\Users\val\AppData\Local\Rocket\Application\rocket.exe =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASAPI32 =>PUP.BrowserSafeguard HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowserSafeguard_RASMANCS =>PUP.BrowserSafeguard HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASAPI32 =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EnhanceTronic_RASMANCS =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASAPI32 =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateEnhanceTronic_RASMANCS =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASAPI32 =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilEnhanceTronic_RASMANCS =>Adware.Sambreel HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASAPI32 =>PUP.uTorrentBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASMANCS =>PUP.uTorrentBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASAPI32 =>PUP.uTorrentBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBar_FRToolbarHelper_RASMANCS =>PUP.uTorrentBar ---\\ Récapitulatif des détections trouvées sur votre station (24) - 0s http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Wajam http://www.nicolascoolman.fr/pup-isstart/ =>PUP.IsStart http://www.nicolascoolman.fr/blog =>PUP.MiuiTab http://www.nicolascoolman.fr/blog =>Adware.Sambreel http://www.nicolascoolman.fr/pup-systemk/ =>PUP.SystemK http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Conduit http://www.nicolascoolman.fr/blog =>Adware.AgentODR http://www.nicolascoolman.fr/adware-imbooster/ =>Adware.IMBooster http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.SearchProtect http://www.nicolascoolman.fr/blog =>PUP.Optional http://www.nicolascoolman.fr/blog =>PUP.SettingsManager http://www.nicolascoolman.fr/pup-suptab/ =>Adware.SupTab http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Fuyu http://www.nicolascoolman.fr/blog =>Toolbar.Agent http://www.nicolascoolman.fr/pup-browsersafeguard/ =>PUP.BrowserSafeguard http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.CertifiedToolbar http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.LinkeySearch http://www.nicolascoolman.fr/blog =>PUP.SimplyTech http://www.nicolascoolman.fr/adware-tidynetwork/ =>Adware.TidyNetwork http://www.nicolascoolman.fr/pup-mutiplug/ =>Adware.Multiplug http://www.nicolascoolman.fr/pup-enhancetronic / =>PUP.EnhanceTronic http://www.nicolascoolman.fr/blog =>PUP.uTorrentBar ~ End of the scan, 33259 items in 128 seconds (868)(0)()