~ ZHPDiag v2015.6.30.77 by Nicolas Coolman (2015\06\30) ~ Run by medicho29 (Administrator) (2015/07/13 16:44:19) ~ Site : http://www.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Scanner ~ Report : C:\Users\medicho29\Desktop\ZHPDiag.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) ~ Windows 8.1, 64-bit (Build 9600) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v43.0.2357.132 MSIE: Internet Explorer v11.0.9600.17842 ---\\ Informations sur les produits Windows (9) - 7s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : 46V36 Windows License : OK ~ Windows Remaining Initializations Number : 1000 Windows Automatic Updates : OK (Demand) Windows Activation Technologies : OK ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) ~ Total physical RAM (KB): 4080920 ~ System Restore: Activé (Enable) ~ System drive C: has 354 GB free of 585 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: BIJOU ~ User Name: medicho29 ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 354 GB free of 585 GB (System) ~ Drive D: has 2 GB free of 23 GB ~ Drive E: has GB free of 0 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 2s [MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368] [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] [MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920] [MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2426880] [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416] [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200] [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] [MD5.D887446F3F6051C60C26F4FD1FC8D43F] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [107520] [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] [MD5.31233271EDE50D1BBB220F78AFA60486] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [405504] [MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624] [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [120832] [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] [MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520] [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] ---\\ Processus lancés (38) - 2s [MD5.60BCE8BBD1C515007BB335ACEFBFC246] - (.HP - HP Service.) -- C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [1641768] [PID.76] [MD5.97ADEBE576474D4CEC53F8E06590FFC8] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 347.5.) -- C:\WINDOWS\system32\nvvsvc.exe [935056] [PID.380] [MD5.9DFA07BEA70D49EBE6D1255D0E37ACA6] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1249424] [PID.364] [MD5.97ADEBE576474D4CEC53F8E06590FFC8] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 347.5.) -- C:\WINDOWS\system32\nvvsvc.exe [935056] [PID.1092] [MD5.C814D4A0B7B91E936B2DC0828C69ACAB] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\system32\igfxCUIService.exe [319376] [PID.1108] [MD5.098185E9B7C417CF7480BB9F839DB652] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [323072] [PID.1260] [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1052] [MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1836] [MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.1944] [MD5.E605F35F03C881DC46902E0E2F5985B3] - (.SEIKO EPSON CORPORATION - MyEpson Portal Service.) -- C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [703984] [PID.2332] [MD5.0B9296AC65C6F3F32E3337490F4BEC67] - (.Symantec Corporation - Norton Internet Security.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\nis.exe [276336] [PID.2364] [MD5.49F2693BC3D821FA13AD6E7D5C5FEAFF] - (...) -- C:\Windows\system32\valWBFPolicyService.exe [28160] [PID.2464] [MD5.3D8A3CC74E86F8D61D418D74A0194E5F] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [146184] [PID.2920] [MD5.292C1E04626EED84C668E7714DD6DB66] - (.AuthenTec Inc. - TouchControl.) -- C:\Program Files (x86)\HP SimplePass\TouchControl.exe [3695912] [PID.3516] [MD5.D19C99CF2938AEAE39805895D160E670] - (.SEIKO EPSON CORPORATION - MyEpson Portal.) -- C:\Program Files (x86)\EPSON\MyEpson Portal\mep.exe [2387440] [PID.4960] [MD5.0B9296AC65C6F3F32E3337490F4BEC67] - (.Symantec Corporation - Norton Internet Security.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\nis.exe [276336] [PID.5016] [MD5.C38257D797C30FF898400DB50B0DDF35] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2874168] [PID.5064] [MD5.77CA17405E717CD590B6BE34B228F905] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [123192] [PID.960] [MD5.A30EB3496C758559D960B96EA51E8F06] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448016] [PID.4580] [MD5.B7F55E2AE978D3D34F7876EE5D689AAE] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.5384] [MD5.724CB7A116F7E1A67009D751BCF86586] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120] [PID.5148] [MD5.AA36B62EC778855807AAA5801C3BB204] - (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794704] [PID.5288] [MD5.F736D121FF053AF9E860B91912E4D6F1] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [504208] [PID.5628] [MD5.A923F9AA853AFB3E1C779C6696E344D2] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\system32\igfxHK.exe [246672] [PID.5636] [MD5.8EC9EF60E24E88DC5DC74D305925E2CF] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxTray.exe [448912] [PID.4884] [MD5.0737D18842CE3C65FC0D04DA0D4875B1] - (.Copyright © 2012 - IEWebSiteLogon.) -- C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe [4073768] [PID.5732] [MD5.210875E72C45D712120904128F357233] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe [1664000] [PID.2144] [MD5.A49BDAAE58D3FFFEF42886F9CDA17861] - (.CyberLink Corp. - Power2Go Desktop Burning Gadget.) -- C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [1711680] [PID.5536] [MD5.656DFDB81019B8A11EFB05D974701AFD] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [371976] [PID.5392] [MD5.A2221900B57AEC20577996744FA4A56A] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296] [PID.6712] [MD5.A9E21B140737C36D909A0AFFBE44084B] - (.Symantec Corporation - Google Chrome (Norton Identity Safe native.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\coNatHst.exe [42808] [PID.7116] [MD5.9153F2335BCDB87F41559CF066223BF9] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800] [PID.6268] [MD5.5AD5A7781BE907D6E2D75CA1DADAA97B] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2457232] [PID.4612] [MD5.30E9FAC23E2537D82F2836CB81AEE186] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896] [PID.6504] [MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.3348] [MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.4372] [MD5.8683F606E8ED253820C8D5D599883F45] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [1241472] [PID.7144] [MD5.00EAE93627CCB2BC07795A3087916A5D] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1612552] [PID.6692] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (13) - 1s G2 - GCE: Extension [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ G2 - GCE: Extension [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [iikflkcanblccfahdhdonehdalibjnif] Norton Identity Safe G2 - GCE: Extension [User Data\Default] [kanflfepiobnpjbljmngfgegijhdpljm] Website Logon G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Extension [User Data\Default] [mkfokfffehpeedafpekjeddnmnjhmcmk] Norton Security Toolbar G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (6) - 1s P2 - FPN: [HKLM] [@authentec.com/ffwloplugin] - (.HP.) -- C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll P2 - FPN: [HKLM] [@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42] - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll P2 - FPN: [HKLM] [@intel-webapi.intel.com/Intel WebAPI updater] - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.31.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.31.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer, Proxy Management (R5) (3) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 0s O2 - BHO: Norton Identity Protection [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\CoIEPlg.dll O2 - BHO: Norton Vulnerability Protection [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\ips\ipsbho.dll O2 - BHO: (no name) [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll ---\\ Internet Explorer Toolbars (O3) (1) - 0s O3 - Toolbar: Norton Toolbar - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\CoIEPlg.dll ---\\ Applications lancées au démarrage du sytème (O4) (10) - 0s O4 - HKLM\..\Run: [BtTray] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe O4 - HKLM\..\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKCU\..\Run: [Power2GoExpress8] . (.CyberLink Corp. - Power2Go Desktop Burning Gadget.) -- C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\medicho29\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKLM\..\Wow6432Node\Run: [BtTray] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKUS\S-1-5-21-2335044066-4168214741-2048080491-1004\..\Run: [Power2GoExpress8] . (.CyberLink Corp. - Power2Go Desktop Burning Gadget.) -- C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe O4 - HKUS\S-1-5-21-2335044066-4168214741-2048080491-1004\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\medicho29\AppData\Roaming\uTorrent\uTorrent.exe ---\\ Modification Domaine/Adresses DNS (O17) (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241 ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s O20 - AppInit_DLLs: . (...) - C:\Windows\system32\nvinitx.dll, C:\WINDOWS\system32\nvinitx.dll (.not file.) ---\\ Liste des services NT non Microsoft et non désactivés (O23) (24) - 1s O23 - Service: BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation - Bluetooth Application.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: TrueSuiteService (FPLService) . (.HP - HP Service.) - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Connected Remote Service (HPConnectedRemote) . (.Hewlett-Packard - HPConnectedRemoteService.) - C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe O23 - Service: @oem25.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\WINDOWS\system32\Hpservice.exe O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe O23 - Service: Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Malware\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Malware\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: MyEpson Portal Service (MyEpson Portal Service) . (.SEIKO EPSON CORPORATION - MyEpson Portal Service.) - C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Norton Internet Security.) - C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\nis.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 347.5.) - C:\WINDOWS\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @C:\WINDOWS\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: Validity WBF Policy Service (valWBFPolicyService) . (...) - C:\Windows\system32\valWBFPolicyService.exe ---\\ Tâches planifiées en automatique (O39) (15) - 1s O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1084] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1088] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\HPCeeScheduleFormedicho29.job [360] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job [264] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2780] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8 [3174] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\CLVDLauncher [3174] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3824] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4060] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\HPCeeScheduleFormedicho29 [3182] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2335044066-4168214741-2048080491-1004 [3098] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\MirageAgent [3148] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Norton WSC Integration [3234] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements [2982] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BDA1E98B-6CEE-47C3-9BDC-5C46D67F826F} [3940] ---\\ Logiciels installés (O42) (97) - 4s O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: EPSON XP-402 403 405 406 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON XP-402 403 405 406 Series O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: Validity WBF DDK - (.Validity Sensors, Inc..) [HKLM][64Bits] -- {1F91C200-8F0F-4009-A75E-DB6CE151BD4E} O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} O42 - Logiciel: Ralink Bluetooth Stack64 - (.Ralink Corporation.) [HKLM][64Bits] -- {95DF815D-BE2D-9118-F549-39794C5869CF} O42 - Logiciel: NVIDIA Pilote graphique 347.52 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: Mises à jour NVIDIA 10.4.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {C2E428EB-116E-41C0-9E84-B22DE9CCA42F} O42 - Logiciel: AuthenTec TrueAPI 64-bit - (.AuthenTec, Inc..) [HKLM][64Bits] -- {EBC0CC3F-B7A1-4FC8-8014-4C7BFD3925E8} O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {F842F8B0-6942-4930-821F-543E976B2C66} O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {F9E399CB-046F-45FD-A67F-CF399E2128E4} O42 - Logiciel: 7-Zip 9.22beta - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: MyEpson Portal - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- MyEpson Portal O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic O42 - Logiciel: System NotifierV08.03 - (.System NotifierV08.03.) [HKLM][64Bits] -- System NotifierV08.03 =>PUP.SystemNotifier O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall =>.WildTangent O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-0173ba8a-4867-41cc-afcf-862caf848263 =>.WildTangent O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-051314b4-8d44-4c1d-911a-f28cc492ae2a =>.WildTangent O42 - Logiciel: Final Drive Fury - (.WildTangent.) [HKLM][64Bits] -- WTA-0feb8894-f453-41ca-b62d-f17a5b5d2006 =>.WildTangent O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-29b93bd7-69e9-43a8-8e1d-734126b5bcb6 =>.WildTangent O42 - Logiciel: Youda Jewel Shop - (.WildTangent.) [HKLM][64Bits] -- WTA-3191fc2d-e9d3-4754-9db1-d8edfae14c12 =>.WildTangent O42 - Logiciel: Gardenscapes: Mansion Makeover - (.WildTangent.) [HKLM][64Bits] -- WTA-33797c14-3d1a-4e67-b908-655d824c69bd =>.WildTangent O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-498423d0-b75f-4b37-9918-3a8d26df7114 =>.WildTangent O42 - Logiciel: Cradle of Rome 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-4a145909-5b42-4ed7-99df-56cd118ae126 =>.WildTangent O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WTA-50fa12c8-e9de-48ae-8bf8-bd626c42091f =>.WildTangent O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-597b0d34-3616-4810-bf42-ac7557fda4f6 =>.WildTangent O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-6acf42a8-c6fb-4055-9da3-c78d6d686d3c =>.WildTangent O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-a4f35478-55fd-46c9-bdb5-a5bb02742544 =>.WildTangent O42 - Logiciel: Build-a-lot 4 - Power Source - (.WildTangent.) [HKLM][64Bits] -- WTA-aa32a17b-13c9-49ae-b6a4-ed4049660633 =>.WildTangent O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-b530cbbc-5a96-4527-8c0d-42fb55963f7c =>.WildTangent O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-b56bea71-dde5-499d-8aab-52d2509d4039 =>.WildTangent O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-c6d322df-7a58-43ce-9e92-c23b69e76171 =>.WildTangent O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-f3414064-1006-4b5b-8184-484220b381c8 =>.WildTangent O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM][64Bits] -- WTA-f3a4e055-a37a-4917-aafd-ef5826e66de5 =>.WildTangent O42 - Logiciel: Royal Envoy 2 Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-f580c2fe-cc07-4aea-b96d-22fe090b78d8 =>.WildTangent O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-f78890d7-ca02-4098-966c-319bd114ff01 =>.WildTangent O42 - Logiciel: Your Product - (.Your Company.) [HKLM][64Bits] -- Your Product1.0 O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Utility Center - (.Hewlett-Packard.) [HKLM][64Bits] -- {0C57987A-A03A-4B95-A309-D23F78F406CA} O42 - Logiciel: HP CoolSense - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {11AF9A96-6D83-4C3B-8DCB-16EA2A358E3F} O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {30B2D1D8-0A07-4B71-9553-0710C5D31E35} O42 - Logiciel: MyEpson Portal - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3361D415-BA35-4143-B301-661991BA6219} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: Connected Music powered by Universal Music Group version 1.0 - (.Snowite.) [HKLM][64Bits] -- {46037DC7-F927-46DF-935F-D6F122BDD34B}_is1 O42 - Logiciel: CyberLink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {4862344A-A39C-4897-ACD4-A1BED5163C5A} O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- {4BACA3B8-F63A-44ED-9A8D-48B4D02AD268} O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {528AB81B-D65A-4AB0-A2B6-82B51A087D01} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp =>.WildTangent O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8DBC5A0A-31C4-46C7-B252-6B593EA11A87} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} O42 - Logiciel: Ralink RT3290 802.11bgn Wi-Fi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {B7037DD6-85FD-4FF6-9059-39532F796257} O42 - Logiciel: ZXT2007 Video Converter 2.0.1.0 - (.zxt2007.com.) [HKLM][64Bits] -- {B7E909E0-56C5-495A-926A-EE7C973CEEDA}_is1 O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E35A3B13-78CD-4967-8AC8-AA9FDA693EDE} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E5823036-6F09-4D0A-B05C-E2BAA129288A} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: HP Connected Remote - (.Hewlett-Packard.) [HKLM][64Bits] -- {F243A34B-AB7F-4065-B770-B85B767C247C} O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7} O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {FE8DFDD0-A543-4A83-B7A9-C411138194D5} O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (68) - 4s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\AuthenTec HKLM\SOFTWARE\Wow6432Node\BSPACode HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\IDT HKLM\SOFTWARE\Wow6432Node\Insyde HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\IVT Corporation HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\MaxPower HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OldTimer Tools HKLM\SOFTWARE\Wow6432Node\Ralink HKLM\SOFTWARE\Wow6432Node\Ralink Corporation HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TGUID HKLM\SOFTWARE\Wow6432Node\Validity HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AuthenTec HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\EPSON Software Updater HKCU\SOFTWARE\GoBit HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mine HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Norton HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SEIKO EPSON CORPORATION HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\SystemNotifierV08.03 =>PUP.SystemNotifier HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/ (162) - 7s O43 - CFD: 2015/04/20 - 17:47:38 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 2013/01/10 - 11:08:35 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2015/07/11 - 16:08:28 - [] D -- C:\Program Files (x86)\Burger Shop 2 O43 - CFD: 2015/04/21 - 00:41:01 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2012/10/25 - 16:23:20 - [] D -- C:\Program Files (x86)\Connected Music powered by Universal Music Group O43 - CFD: 2015/03/25 - 23:05:37 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 2015/05/27 - 07:45:24 - [] D -- C:\Program Files (x86)\EPSON O43 - CFD: 2015/05/13 - 20:02:23 - [] D -- C:\Program Files (x86)\EPSON Software O43 - CFD: 2015/03/08 - 13:02:41 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/04/14 - 21:53:39 - [] D -- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 2012/10/25 - 16:32:19 - [] D -- C:\Program Files (x86)\HP Games O43 - CFD: 2015/07/12 - 12:20:08 - [] D -- C:\Program Files (x86)\HP SimplePass O43 - CFD: 2012/10/25 - 16:23:13 - [] D -- C:\Program Files (x86)\HPConnectedMusic O43 - CFD: 2015/04/14 - 21:55:53 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/03/27 - 02:16:03 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/06/11 - 07:58:54 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/03/13 - 18:46:52 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2015/03/08 - 20:22:51 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2012/10/25 - 16:19:27 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive O43 - CFD: 2012/10/25 - 16:19:56 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2015/03/27 - 02:16:03 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/03/27 - 01:27:53 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/05/03 - 10:49:26 - [] D -- C:\Program Files (x86)\Norton Internet Security O43 - CFD: 2015/05/03 - 10:55:55 - [] D -- C:\Program Files (x86)\NortonInstaller O43 - CFD: 2015/03/27 - 02:16:03 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/03/08 - 02:37:35 - [] RD -- C:\Program Files (x86)\Online Services O43 - CFD: 2013/01/10 - 11:11:13 - [] D -- C:\Program Files (x86)\Ralink Corporation O43 - CFD: 2013/01/10 - 11:06:59 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2015/03/27 - 01:27:53 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2013/01/10 - 11:34:39 - [] D -- C:\Program Files (x86)\SymSilent O43 - CFD: 2012/10/25 - 16:31:43 - [] D -- C:\Program Files (x86)\WildGames O43 - CFD: 2012/10/25 - 16:32:19 - [] D -- C:\Program Files (x86)\WildTangent Games O43 - CFD: 2015/03/27 - 01:38:39 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2012/10/25 - 16:19:55 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/03/27 - 02:16:06 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2013/08/22 - 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/03/27 - 02:16:06 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2013/08/22 - 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2015/04/20 - 18:00:21 - [] D -- C:\Program Files (x86)\Your Product O43 - CFD: 2015/07/07 - 08:59:14 - [] D -- C:\Program Files (x86)\ZHPDiag O43 - CFD: 2015/04/20 - 18:16:51 - [] D -- C:\Program Files (x86)\ZXT2007 Software O43 - CFD: 2015/04/20 - 17:47:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/03/27 - 01:37:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/31 - 22:21:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/03/27 - 02:22:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/03/27 - 02:22:16 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat O43 - CFD: 2015/05/27 - 07:45:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 2015/05/13 - 20:02:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software O43 - CFD: 2015/03/27 - 02:22:16 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/03/27 - 02:22:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/03/27 - 02:22:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2015/04/14 - 21:55:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 2015/03/27 - 02:22:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/03/27 - 02:22:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2013/08/22 - 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/11 - 15:21:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2015/03/27 - 02:22:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/03/27 - 02:22:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos O43 - CFD: 2015/05/14 - 11:24:27 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security O43 - CFD: 2015/03/27 - 02:22:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools O43 - CFD: 2015/03/27 - 02:16:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection O43 - CFD: 2015/03/27 - 02:16:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services O43 - CFD: 2013/08/22 - 17:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2014/11/21 - 00:27:29 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/04/20 - 18:16:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZXT2007 Video Converter O43 - CFD: 2013/01/10 - 11:08:35 - [] D -- C:\ProgramData\Apple O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/03/08 - 02:31:29 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/03/12 - 12:14:16 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/03/25 - 20:01:23 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 2015/05/27 - 07:45:22 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2015/04/20 - 18:01:14 - [] D -- C:\ProgramData\GoBit Games O43 - CFD: 2015/04/14 - 21:48:26 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 2013/01/10 - 11:25:38 - [] D -- C:\ProgramData\HP SimplePass 2011 O43 - CFD: 2013/01/10 - 11:24:16 - [] D -- C:\ProgramData\install_clap O43 - CFD: 2013/01/10 - 11:01:51 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/07/11 - 15:21:00 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/03/08 - 02:31:29 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/03/27 - 02:16:10 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2012/10/25 - 16:19:23 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2015/03/13 - 15:44:10 - [] D -- C:\ProgramData\Microsoft SkyDrive O43 - CFD: 2015/03/08 - 02:31:29 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/07/07 - 09:18:55 - [] D -- C:\ProgramData\Norton O43 - CFD: 2015/05/03 - 10:55:18 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2015/03/08 - 21:38:00 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2015/03/27 - 01:58:32 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/03/13 - 19:40:26 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/04/20 - 18:24:06 - [] D -- C:\ProgramData\PlayFirst O43 - CFD: 2015/03/27 - 02:16:10 - [] D -- C:\ProgramData\PRICache O43 - CFD: 2013/01/10 - 11:11:14 - [] D -- C:\ProgramData\Ralink Bluetooth Stack O43 - CFD: 2013/01/10 - 11:09:55 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 2015/06/26 - 06:55:52 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/03/13 - 19:40:40 - [] D -- C:\ProgramData\Sun O43 - CFD: 2013/01/10 - 11:15:11 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 2013/01/10 - 11:28:24 - [] D -- C:\ProgramData\Temp O43 - CFD: 2013/08/22 - 16:45:52 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/03/08 - 13:05:26 - [] D -- C:\ProgramData\TrueSuite O43 - CFD: 2013/01/10 - 11:07:50 - [0] D -- C:\ProgramData\Validity O43 - CFD: 2012/10/25 - 16:29:31 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 2015/04/14 - 21:50:32 - [] D -- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F} O43 - CFD: 2015/03/25 - 20:00:46 - [] D -- C:\Program Files (x86)\Common Files\AuthenTec O43 - CFD: 2015/03/25 - 23:08:10 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 2015/03/08 - 20:20:41 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2015/03/27 - 01:56:02 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2013/01/10 - 11:18:46 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 2015/03/13 - 19:40:37 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/03/27 - 02:16:01 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2012/10/25 - 16:13:09 - [] D -- C:\Program Files (x86)\Common Files\Nikon O43 - CFD: 2013/01/10 - 11:00:22 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2013/08/22 - 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/05/04 - 20:01:47 - [] D -- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 2014/11/21 - 07:55:33 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2012/10/25 - 16:19:18 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2015/03/08 - 02:37:39 - [] D -- C:\Users\medicho29\AppData\Roaming\Adobe O43 - CFD: 2015/03/27 - 03:06:57 - [] D -- C:\Users\medicho29\AppData\Roaming\CyberLink O43 - CFD: 2015/03/08 - 20:53:34 - [] D -- C:\Users\medicho29\AppData\Roaming\Hewlett-Packard O43 - CFD: 2015/03/24 - 19:23:40 - [] D -- C:\Users\medicho29\AppData\Roaming\hpqlog O43 - CFD: 2015/03/27 - 03:00:10 - [] D -- C:\Users\medicho29\AppData\Roaming\Identities O43 - CFD: 2015/03/08 - 13:08:58 - [] D -- C:\Users\medicho29\AppData\Roaming\Macromedia O43 - CFD: 2015/07/13 - 13:59:34 - [] SD -- C:\Users\medicho29\AppData\Roaming\Microsoft O43 - CFD: 2015/04/20 - 18:24:06 - [] D -- C:\Users\medicho29\AppData\Roaming\PlayFirst O43 - CFD: 2015/03/08 - 02:35:41 - [] D -- C:\Users\medicho29\AppData\Roaming\Synaptics O43 - CFD: 2015/06/21 - 20:24:02 - [] D -- C:\Users\medicho29\AppData\Roaming\uTorrent O43 - CFD: 2015/07/13 - 16:44:32 - [] D -- C:\Users\medicho29\AppData\Roaming\ZHP O43 - CFD: 2015/03/27 - 02:10:40 - [0] SHD -- C:\Users\medicho29\AppData\Local\Application Data O43 - CFD: 2015/03/08 - 02:35:26 - [] D -- C:\Users\medicho29\AppData\Local\AuthenTec O43 - CFD: 2015/03/08 - 02:38:23 - [] D -- C:\Users\medicho29\AppData\Local\bluesoleil O43 - CFD: 2015/07/11 - 17:09:28 - [] D -- C:\Users\medicho29\AppData\Local\CrashDumps O43 - CFD: 2015/03/12 - 12:13:46 - [] D -- C:\Users\medicho29\AppData\Local\CyberLink O43 - CFD: 2015/06/13 - 15:48:32 - [0] D -- C:\Users\medicho29\AppData\Local\Diagnostics O43 - CFD: 2015/07/09 - 22:22:19 - [0] D -- C:\Users\medicho29\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/03/08 - 13:03:55 - [] D -- C:\Users\medicho29\AppData\Local\Google O43 - CFD: 2015/06/21 - 08:14:32 - [] D -- C:\Users\medicho29\AppData\Local\GWX O43 - CFD: 2015/03/25 - 22:51:57 - [] D -- C:\Users\medicho29\AppData\Local\Hewlett-Packard O43 - CFD: 2015/03/27 - 02:10:40 - [0] SHD -- C:\Users\medicho29\AppData\Local\Historique O43 - CFD: 2015/03/08 - 19:14:45 - [] D -- C:\Users\medicho29\AppData\Local\HP O43 - CFD: 2015/07/12 - 15:28:12 - [] D -- C:\Users\medicho29\AppData\Local\Microsoft O43 - CFD: 2015/03/27 - 09:36:54 - [] D -- C:\Users\medicho29\AppData\Local\NVIDIA O43 - CFD: 2015/07/08 - 20:35:41 - [] D -- C:\Users\medicho29\AppData\Local\Packages O43 - CFD: 2015/03/08 - 02:35:16 - [] D -- C:\Users\medicho29\AppData\Local\Power2Go8 O43 - CFD: 2015/03/08 - 13:00:27 - [] D -- C:\Users\medicho29\AppData\Local\Programs O43 - CFD: 2015/07/13 - 16:44:46 - [] D -- C:\Users\medicho29\AppData\Local\Temp O43 - CFD: 2015/03/27 - 02:10:40 - [0] SHD -- C:\Users\medicho29\AppData\Local\Temporary Internet Files O43 - CFD: 2015/04/20 - 17:50:47 - [] D -- C:\Users\medicho29\AppData\Local\VirtualStore O43 - CFD: 2015/07/12 - 15:28:11 - [] D -- C:\Users\medicho29\AppData\Local\Windows Live O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2014/11/21 - 07:56:04 - [] RD -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/27 - 03:00:49 - [] RD -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/04/20 - 18:00:18 - [] D -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Burger Shop 2 O43 - CFD: 2013/08/22 - 17:36:32 - [] D -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/03/27 - 03:00:47 - [] RD -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/03/27 - 02:12:00 - [] RD -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/04/20 - 18:00:22 - [] D -- C:\Users\medicho29\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Your Product ---\\ Liste des pilotes du système (SDL) (O58) (62) - 10s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] O58 - SDL:2012/09/24 14:40:56 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\WINDOWS\System32\drivers\Accelerometer.sys [43840] O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] O58 - SDL:2012/06/15 14:52:28 A . (.Ralink Corporation. - Bluelet Audio Driver.) -- C:\WINDOWS\System32\drivers\blueletaudio.sys [34912] O58 - SDL:2012/07/10 18:28:20 A . (.Ralink Corporation - AddOn Audio SCO Driver.) -- C:\WINDOWS\System32\drivers\BlueletSCOAudio.sys [35936] O58 - SDL:2012/06/15 12:22:02 A . (.IVT Corporation - Bluetooth Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\BtAudioBus.sys [23136] O58 - SDL:2012/07/19 18:47:40 A . (.Ralink Corporation - Bluetooth L2CAP_SCO Interface Profile Drive.) -- C:\WINDOWS\System32\drivers\BtL2caScoIf.sys [56904] O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] O58 - SDL:2012/06/25 11:24:50 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [92536] O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] O58 - SDL:2012/07/03 01:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] O58 - SDL:2012/09/24 14:40:56 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\WINDOWS\System32\drivers\hpdskflt.sys [31040] O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] O58 - SDL:2012/09/28 20:37:04 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [650808] O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] O58 - SDL:2014/10/01 20:54:16 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3828152] O58 - SDL:2012/06/20 08:40:52 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] O58 - SDL:2014/08/01 22:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296] O58 - SDL:2012/10/02 11:58:14 A . (.Ralink Corporation - Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\IvtUrbBtFlt.sys [48608] O58 - SDL:2014/08/01 22:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] O58 - SDL:2015/07/13 16:23:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [113880] O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] O58 - SDL:2013/12/04 12:02:30 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2505904] O58 - SDL:2015/02/20 17:04:34 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [10284872] O58 - SDL:2015/02/20 17:04:42 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvpciflt.sys [31376] O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] O58 - SDL:2013/12/02 10:42:14 A . (.Ralink Technology, Corp. - Ralink Bluetooth Adapter.) -- C:\WINDOWS\System32\drivers\rtbth.sys [1204424] O58 - SDL:2012/08/09 05:17:50 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [273040] O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] O58 - SDL:2012/09/15 00:09:32 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [41272] O58 - SDL:2012/09/15 00:09:32 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [43832] O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] O58 - SDL:2015/03/17 00:45:06 A . (.IDT, Inc. - IDT PC Audio.) -- C:\WINDOWS\System32\drivers\stwrt64.sys [542208] O58 - SDL:2015/05/03 10:51:04 A . (.Symantec Corporation - Symantec Event Library.) -- C:\WINDOWS\System32\drivers\SYMEVENT64x86.SYS [177752] O58 - SDL:2012/09/15 00:09:34 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [457528] O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] O58 - SDL:2012/08/31 10:40:24 A . (.Hewlett-Packard Development Company, L.P. - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (7) - 26s O61 - LFC: 2015/07/07 08:16:26 A . (.OldTimer Tools.) -- C:\Users\medicho29\Downloads\OTL.exe [602112] O61 - LFC: 2015/07/07 12:00:22 A . (..) -- C:\Users\medicho29\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [4457027] O61 - LFC: 2015/07/07 22:04:16 A . (..) -- C:\Users\medicho29\AppData\Local\NVIDIA\NvBackend\Packages\000079a6\CoProc update.19741457.exe [456720] O61 - LFC: 2015/07/06 22:03:10 A . (..) -- C:\Users\medicho29\AppData\Local\NVIDIA\NvBackend\Packages\00007984\CoProc update.19722912.exe [455224] O61 - LFC: 2015/07/06 22:03:42 A . (..) -- C:\Users\medicho29\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin [1] O61 - LFC: 2015/07/13 16:42:15 A . (..) -- C:\Users\medicho29\AppData\Local\Microsoft\Windows\INetCache\IE\3AAENE2L\urlblockindex[1].bin [16] O61 - LFC: 2015/07/13 16:24:47 A . (..) -- C:\Users\medicho29\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] ---\\ Associations Shell Spawning (O67) (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI (3) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {D36FB714-82A5-48AB-AC45-A7A7796ACA4E} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/ O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ ---\\ Scan Additionnel (O88) (2) - 0s HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\System NotifierV08.03 =>PUP.SystemNotifier HKCU\SOFTWARE\SystemNotifierV08.03 =>PUP.SystemNotifier ---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s http://www.nicolascoolman.fr/blog =>PUP.SystemNotifier ~ End of the scan, 17210 items in 79 seconds (647)(0)()